Category: welivesecurity

Bluetooth bugs could allow attackers to impersonate devices

This article has been indexed from WeLiveSecurity Patches to remedy the vulnerabilities should be released over the coming weeks The post Bluetooth bugs could allow attackers to impersonate devices appeared first on WeLiveSecurity Read the original article: Bluetooth bugs could…

Week in security with Tony Anscombe

This article has been indexed from WeLiveSecurity How stalkerware puts the stalkers’ own data at risk – Watch out for FluBot – Building security into critical infrastructure The post Week in security with Tony Anscombe appeared first on WeLiveSecurity Read…

Colonial Pipeline attack: Hacking the physical world

This article has been indexed from WeLiveSecurity The attack is a reminder of growing cyberthreats to critical infrastructure while also showing why providers of essential services are ripe targets for cybercriminals The post Colonial Pipeline attack: Hacking the physical world…

Scams target families of missing persons, FBI warns

This article has been indexed from WeLiveSecurity Con artists use social media to find and target victims for various nefarious ends, including to extort relatives of missing persons The post Scams target families of missing persons, FBI warns appeared first…

Week in security with Tony Anscombe

This article has been indexed from WeLiveSecurity Join ESET Research at RSA Conference 2021 – WhatsApp to restrict features for some users – 1 million apps rejected from the App Store last year The post Week in security with Tony…

European police bust major online investment fraud ring

This article has been indexed from WeLiveSecurity The operation was carried out against an organized group that used online trading platforms to swindle victims out of US$36 million The post European police bust major online investment fraud ring appeared first…

Week in security with Tony Anscombe

Ousaban banking trojan targeting Brazil – How to help your kids use safe passwords – DDoS attack takes Belgian government websites offline The post Week in security with Tony Anscombe appeared first on WeLiveSecurity Read the original article: Week in…

Fantastic passwords and where your children can find them

How witches, wizards and superheroes can help your kids stay safe from cyber-villains, plus other parenting hacks to encourage your children to use secure passwords The post Fantastic passwords and where your children can find them appeared first on WeLiveSecurity…

Popular routers found vulnerable to hacker attacks

Millions of Brits could be at risk of cyberattacks due to poor default passwords and a lack of firmware updates The post Popular routers found vulnerable to hacker attacks appeared first on WeLiveSecurity Read the original article: Popular routers found…

Ousaban: Private photo collection hidden in a CABinet

Another in our occasional series demystifying Latin American banking trojans The post Ousaban: Private photo collection hidden in a CABinet appeared first on WeLiveSecurity Read the original article: Ousaban: Private photo collection hidden in a CABinet

DDoS attack knocks Belgian government websites offline

The attack overwhelmed the systems of a Belgian ISP, leading to widespread service outages and disruptions The post DDoS attack knocks Belgian government websites offline appeared first on WeLiveSecurity Read the original article: DDoS attack knocks Belgian government websites offline

INTERPOL aims to deal a blow to digital piracy

Read the original article: INTERPOL aims to deal a blow to digital piracy The agency’s new initiative will also warn about the high cost of the free lunch – the increased risk of malware exposure The post INTERPOL aims to…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe Governments as cyber-targets – FBI and Have I Been Pwned team up to notify Emotet victims – Mac users urged to plug a serious security hole The post Week in…

Apple patches severe macOS security flaw

Read the original article: Apple patches severe macOS security flaw Mac users are being urged to update to macOS Big Sur 11.3 as at least one threat group is exploiting the zero-day bug to sneak past the operating system’s built-in…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe WhatsApp Pink is not an update – Security holes in Apple’s AirDrop – New zero-day plugged in Chrome The post Week in security with Tony Anscombe appeared first on WeLiveSecurity…

WhatsApp Pink: Watch out for this fake update

Read the original article: WhatsApp Pink: Watch out for this fake update The malware sends automated replies to messages on WhatsApp and other major chat apps The post WhatsApp Pink: Watch out for this fake update appeared first on WeLiveSecurity…

WhatsApp in pink? Watch out for this fake update

Read the original article: WhatsApp in pink? Watch out for this fake update The malware sends automated replies to messages on WhatsApp and other major chat apps The post WhatsApp in pink? Watch out for this fake update appeared first…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe FBI cleans up compromised Exchange servers – Data of Clubhouse users scraped and posted online – WhatsApp bug alert The post Week in security with Tony Anscombe appeared first on…

One in six people use pet’s name as password

Read the original article: One in six people use pet’s name as password Other common and easily hackable password choices include the names of relatives and sports teams, a UK study reveals The post One in six people use pet’s…

FBI removes web shells from compromised Exchange servers

Read the original article: FBI removes web shells from compromised Exchange servers Authorities step in to thwart attacks leveraging the recently-disclosed Microsoft Exchange Server vulnerabilities The post FBI removes web shells from compromised Exchange servers appeared first on WeLiveSecurity Read…

Data from 500 million LinkedIn accounts put up for sale

Read the original article: Data from 500 million LinkedIn accounts put up for sale The treasure trove of data reportedly includes users’ LinkedIn IDs, full names, email addresses, phone numbers and workplace information The post Data from 500 million LinkedIn…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe Janeleiro banking trojan takes aim at Brazil – Lazarus deploys Vyveva backdoor in South Africa – The long shelf life of leaked data The post Week in security with Tony…

Does data stolen in a data breach expire?

Read the original article: Does data stolen in a data breach expire? Some personal information just doesn’t age – here’s what the Facebook data leak may mean for you The post Does data stolen in a data breach expire? appeared…

Supply‑chain attacks: When trust goes wrong, try hope?

Read the original article: Supply‑chain attacks: When trust goes wrong, try hope? How can organizations tackle the growing menace of attacks that shake trust in software? The post Supply‑chain attacks: When trust goes wrong, try hope? appeared first on WeLiveSecurity…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe PHP source code briefly backdoored – Prevent data loss before it’s too late – The perils of owning a smart dishwasher The post Week in security with Tony Anscombe appeared…

Is your dishwasher trying to kill you?

Read the original article: Is your dishwasher trying to kill you? Does every device in your home really need to be connected to the internet? And could your smart appliance be turned against you? The post Is your dishwasher trying…

Are you prepared to prevent data loss?

Read the original article: Are you prepared to prevent data loss? From losing cherished memories to missing deadlines, the impact of not having backups when a data disaster strikes can hardly be overstated The post Are you prepared to prevent…

Apple rushes to patch zero‑day flaw in iOS, iPadOS

Read the original article: Apple rushes to patch zero‑day flaw in iOS, iPadOS The bug is under active exploitation by unknown attackers and affects a wide range of devices, including iPhones, iPads and Apple Watches The post Apple rushes to…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe Security and your right to repair – Scams offer fake COVID-19 vaccines and ask for Bitcoin – Jail time for a disgruntled IT contractor The post Week in security with…

Almost $2 billion lost to BEC scams in 2020

Read the original article: Almost $2 billion lost to BEC scams in 2020 Nearly half of reported cybercrime losses in 2020 were the result of BEC fraud, according to an FBI report The post Almost $2 billion lost to BEC…

7 steps to staying safe and secure on Twitter

Read the original article: 7 steps to staying safe and secure on Twitter Follow these easy steps to prevent your Twitter account from being hacked and to remain safe while tweeting The post 7 steps to staying safe and secure…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe A banking trojan masquerades as Clubhouse for Android – The implications of the Verkada breach – A zero-day patched in Chrome The post Week in security with Tony Anscombe appeared…

Beware Android trojan posing as Clubhouse app

Read the original article: Beware Android trojan posing as Clubhouse app The malware can grab login credentials for more than 450 apps and bypass SMS-based two-factor authentication The post Beware Android trojan posing as Clubhouse app appeared first on WeLiveSecurity…

FBI: Cybercrime losses topped US$4.2 billion in 2020

Read the original article: FBI: Cybercrime losses topped US$4.2 billion in 2020 The Bureau received over 28,000 reports of COVID-19-themed scams last year The post FBI: Cybercrime losses topped US$4.2 billion in 2020 appeared first on WeLiveSecurity   Become a…

Google fixes Chrome zero‑day bug exploited in the wild

Read the original article: Google fixes Chrome zero‑day bug exploited in the wild The latest update patches a total of five vulnerabilities affecting the browser’s desktop versions The post Google fixes Chrome zero‑day bug exploited in the wild appeared first…

PayPal fraud: What merchants should know

Read the original article: PayPal fraud: What merchants should know From overpayment to shipping scams, what are some of the most common threats that merchants using PayPal should watch out for? The post PayPal fraud: What merchants should know appeared…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe ESET research into exploitation of Microsoft Exchange flaws – How smart sex toys may expose your privacy – E-health versus your personal data The post Week in security with Tony…

Exchange servers under siege from at least 10 APT groups

Read the original article: Exchange servers under siege from at least 10 APT groups ESET Research has found LuckyMouse, Tick, Winnti Group, and Calypso, among others, are likely using the recent Microsoft Exchange vulnerabilities to compromise email servers all around…

WhatsApp may soon roll out encrypted chat backups

Read the original article: WhatsApp may soon roll out encrypted chat backups While chats are end-to-end encrypted, their backups are not – this may change soon The post WhatsApp may soon roll out encrypted chat backups appeared first on WeLiveSecurity…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe Four zero-days patched in Microsoft Exchange Server – A tale about an unsophisticated criminal – Web trackers in a password manager app The post Week in security with Tony Anscombe…

Not all cybercriminals are sophisticated

Read the original article: Not all cybercriminals are sophisticated Some perpetrators of online crime and fraud don’t use advanced methods to profit at the expense of unsuspecting victims and to avoid getting caught The post Not all cybercriminals are sophisticated…

Oxford University COVID‑19 lab hacked

Read the original article: Oxford University COVID‑19 lab hacked Neither clinical research into the coronavirus nor any patient data were affected by the incident The post Oxford University COVID‑19 lab hacked appeared first on WeLiveSecurity   Become a supporter of…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe Privacy bug in Brave browser – Clubhouse audio streamed to external website – Protecting children from cyberbullying in COVID-19 era The post Week in security with Tony Anscombe appeared first…

Facebook ramps up fight against child abuse content

Read the original article: Facebook ramps up fight against child abuse content Two new tools will warn users about the risks of searching for and sharing content that exploits children, including the potential legal consequences of doing so The post…

Clubhouse chats streamed to third‑party website

Read the original article: Clubhouse chats streamed to third‑party website The incident raises concerns about the privacy and security of conversations taking place on the platform The post Clubhouse chats streamed to third‑party website appeared first on WeLiveSecurity   Become…

TDoS attacks could cost lives, warns FBI

Read the original article: TDoS attacks could cost lives, warns FBI Both hacktivists and extortionists have used telephony denial-of-service attacks as a way to further their goals The post TDoS attacks could cost lives, warns FBI appeared first on WeLiveSecurity…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe Avoid COVID-19 vaccine fraud and hoaxes – Romance scams cause record-high losses – Exaramel in the spotlight after attacks in France The post Week in security with Tony Anscombe appeared…

Malware authors already taking aim at Apple M1 Macs

Read the original article: Malware authors already taking aim at Apple M1 Macs The first instance of malicious code native to Apple Silicon M1 Macs emerged a month after the release of devices equipped with the company’s in-house CPUs The…

Record‑high number of vulnerabilities reported in 2020

Read the original article: Record‑high number of vulnerabilities reported in 2020 High-severity and critical bugs disclosed in 2020 outnumber the sum total of vulnerabilities reported 10 years prior The post Record‑high number of vulnerabilities reported in 2020 appeared first on…

Beware of COVID‑19 vaccine scams and misinformation

Read the original article: Beware of COVID‑19 vaccine scams and misinformation The vaccination push provides a vital shot in the arm for the world’s battle against the pandemic, but it’s also a topic ripe for exploitation by fraudsters and purveyors…

Attacks targeting IT firms stir concern, controversy

Read the original article: Attacks targeting IT firms stir concern, controversy The Exaramel backdoor, discovered by ESET in 2018, resurfaces in a campaign hitting companies that use an outdated version of a popular IT monitoring tool The post Attacks targeting…

Record‑breaking number of vulnerabilities reported in 2020

Read the original article: Record‑breaking number of vulnerabilities reported in 2020 High-severity and critical bugs disclosed in 2020 outnumber the sum total of vulnerabilities reported 10 years prior The post Record‑breaking number of vulnerabilities reported in 2020 appeared first on…

Week in security with Tony Anscombe

Read the original article: Week in security with Tony Anscombe ESET’s Q4 2020 threat report is out – How smart sex toys can ruin your privacy – Protecting water supply systems The post Week in security with Tony Anscombe appeared…

Protecting the water supply – hacker edition

Read the original article: Protecting the water supply – hacker edition What can municipalities do to better protect their water supply systems? The post Protecting the water supply – hacker edition appeared first on WeLiveSecurity   Become a supporter of…

Microsoft patches actively exploited Windows kernel flaw

Read the original article: Microsoft patches actively exploited Windows kernel flaw This month’s relatively humble bundle of security updates fixes 56 vulnerabilities, including a zero-day bug and 11 flaws rated as critical The post Microsoft patches actively exploited Windows kernel…

Hacker attempts to poison Florida city’s water supply

Read the original article: Hacker attempts to poison Florida city’s water supply While the incursion was thwarted in time, cyberattacks targeting critical infrastructure are a major cause for concern The post Hacker attempts to poison Florida city’s water supply appeared…