Security news that informs and inspires

All Articles

2237 articles:

Email Attackers Target Victims Based on Demographics

Criminals pay attention to user demographics to target specific types of users when crafting email-based attacks, a joint study from Google and Stanford found.

Phishing

Microsoft Fixes Critical TCP/IP Flaws and Actively Exploited Windows Bug

Microsoft has patched three flaws in the Windows TCP/IP implementation and a separate bug in Windows that is under active attack.

Microsoft

Attacker Accessed Florida Town’s Water Treatment System

An intruder gained access to a system that controls the water treatment plant in Oldsmar, Fla., and tried to add excessive amounts of sodium hydroxide to it.

SCADA, ICS Security

FDA Names New Head of Medical Devices Security

The Food & Drug Administration has appointed University of Michigan computer science researcher Kevin Fu to serve as the agency's Acting Director of Medical Device Cybersecurity.

Government, Medical Devices

Microsoft Investigating Reported IE Zero Day

Microsoft is looking into a report of a zero day in Internet Explorer that a group of Korean researchers say used to target them.

Microsoft, Vulnerability

SolarWinds Patches Two New Flaws in Orion

SolarWinds has fixed two newly discovered bug in Orion, one of which can lead to remote code execution.

Solarwinds, Vulnerability

Virginia Passes Consumer Data Protection Law

Virginia joins California in enacting a comprehensive data privacy law with the Virginia Consumer Data Protection Act, becoming the second state to have legislation giving consumers the right to access data organizations have collected about them.

Government, Data Protection

Making 0-Day Hard is Still Hard

The difficulty of detecting zero days in the wild and incomplete patches for the ones that are found is making life easier for attackers.

Google, Vulnerability

Privacy Rules Not Strictly Enforced for iOS, Android

New privacy-focused rules banning location trackers and requiring disclosing data collection rules for privacy are not consistently enforced on the App Store and Google Play.

Privacy, Mobile Apps

Political Campaigns Face Tough Security Challenges

The short lifespans and limited budgets of political campaigns adds to the security challenges they face as advanced adversaries target them.

Government, 2fa

FBI Director Urges More Cooperation, Relationships

The Federal Bureau of Investigation has been beating the public-private sector cooperation drum for several years now, and FBI director Christopher Wray stuck to that theme during his talk at Fordham University’s International Conference on Cyber Security.

Fbi, Information Sharing, Threat Intelligence

Severe Bug in Libgcrypt Fixed

Developers have patched a serious heap buffer overflow in Libgcrypt that could be triggered easily when data is decrypted.

Vulnerability

Google Promises Advertises Can Test No-Cookie Tech

Google said tests show that the new technology to replace third-party cookies doesn't impact ad revenue, but didn't provide more details on how it would enhance user privacy.

Privacy, Google

Authorities Take Down Emotet Botnet

Police in the US and Europe have disrupted the Emotet botnet, taking over its servers and cutting off communications with infected computers.

Emotet

Firefox Moves to Cut Off Supercookie Tracking

In Firefox 85, Mozilla is partitioning several caches in the browser in order to prevent trackers from abusing them.

Mozilla, Privacy