Sat.May 07, 2022

Your Phone May Soon Replace Many of Your Passwords

Krebs on Security

Apple , Google and Microsoft announced this week they will soon support an approach to authentication that avoids passwords altogether, and instead requires users to merely unlock their smartphones to sign in to websites or online services.

BPFDoor — an active Chinese global surveillance tool

DoublePulsar

Recently, PwC Threat Intelligence documented the existence of BPFDoor, a passive network implant for Linux they attribute to Red Menshen… Continue reading on DoublePulsar ». bpfdoor cybersecurity

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Malware campaign hides a shellcode into Windows event logs

Security Affairs

Experts spotted a malware campaign that is the first one using a technique of hiding a shellcode into Windows event logs. In February 2022 researchers from Kaspersky spotted a malicious campaign using a novel technique that consists of hiding the shellcode in Windows event logs.

Apple Mail Now Blocks Email Tracking. Here’s What That Means

WIRED Threat Level

If you don’t like marketers (or anyone else) knowing when and where you read your email, Apple’s feature will help you reclaim some privacy. Security Security / Privacy

How Preparation and Strategy Can Be Used to Fight and Defeat Any Ransomware Attack

Speaker: Karl Camilleri, Cloud Services Product Manager at phoenixNAP

Through a detailed analysis of major attacks and their consequences, Karl Camilleri, Cloud Services Product Manager at phoenixNAP, will discuss the state of ransomware and future predictions, as well as provide best practices for attack prevention and recovery.

Tracking Cobalt Strike Servers Used in Cyberattacks on Ukraine

Security Boulevard

On April 18, 2022, CERT-UA published alert #4490 , which describes a malicious email campaign targeting Ukraine. The email attempts to deploy a Cobalt Strike beacon on the victim's system through the use of a MS Office macro.

71

Raspberry Robin spreads via removable USB devices

Security Affairs

Researchers discovered a new Windows malware, dubbed Raspberry Robin, with worm-like capabilities that spreads via removable USB devices.

More Trending

US gov sanctions cryptocurrency mixer Blender also used by North Korea-linked Lazarus APT

Security Affairs

The U.S. Department of Treasury sanctioned cryptocurrency mixer Blender.io used by North Korea-linked Lazarus APT. The U.S. Department of Treasury sanctioned the cryptocurrency mixer Blender.io

US offers $15 million reward for info on the Conti ransomware gang

Bleeping Computer

The US Department of State is offering up to $15 million for information that helps identify and locate leadership and co-conspirators of the infamous Conti ransomware gang. [.]. Security

Joy Of Tech® ‘#2896′

Security Boulevard

via the Comic Noggins of Nitrozac and Snaggy at The Joy of Tech® ! Permalink. The post Joy Of Tech® ‘#2896′ appeared first on Security Boulevard. Security Bloggers Network Existential Humor Existential Satire Joy of Tech® Nitrozac and Snaggy

52

Trend Micro antivirus modified Windows registry by mistake — How to fix

Bleeping Computer

Trend Micro antivirus has fixed a false positive affecting its Apex One endpoint security solution that caused Microsoft Edge updates to be tagged as malware and the Windows registry to be incorrectly modified. [.]. Security Technology

Cover Your SaaS: How to Overcome Security Challenges and Risks For Your Organization

Speaker: Ronald Eddings, Cybersecurity Expert and Podcaster

In this webinar, Ronald Eddings, Cybersecurity Expert, will outline the relationship between SaaS apps and IT & security teams, along with several actionable solutions to overcome the new difficulties facing your organization.

OWASP® Global AppSec US 2021 Virtual – Kiran Kamity’s ‘OWASP ZAP & DeepFactor Continuous AppSec Observability: Made For Each Other!’

Security Boulevard

Our thanks to both the OWASP® Foundation and the OWASP Global AppSec US 2021 Virtual Conference for publishing their well-crafted application security videos on the organization’s’ YouTube channel. Permalink.

SEEQC’s Statement in Support of President Biden’s Executive Order and National Security Memorandum on Quantum Computing

CyberSecurity Insiders

ELMSFORD, N.Y.-( -( BUSINESS WIRE )- SEEQC , the digital quantum computing company, today released a statement announcing its strong support for an Executive Order and National Security Memorandum signed by President Biden on May 4, 2022 that both address quantum computing.

Your Phone May Soon Replace Many of Your Passwords

Security Boulevard

Apple, Google and Microsoft announced this week they will soon support an approach to authentication that avoids passwords altogether, and instead requires users to merely unlock their smartphones to sign in to websites or online services.

Blackpoint Cyber Announces Launch of New Podcast, The Unfair Fight, Hosted by Founder and CEO Jon Murchison

CyberSecurity Insiders

ELLICOT CITY, Md.-(

How to Avoid the Pain and Cost of PCI Compliance While Optimizing Payments

Speaker: P. Andrew Sjogren, Sr. Product Marketing Manager at Very Good Security, Matt Doka, Co-Founder and CTO of Fivestars, and Steve Andrews, President & CEO of the Western Bankers Association

In this webinar, we have a great set of panelists who will take you through how Zero Data strategies can be used as part of a well-rounded compliance and security approach, and get you to market much sooner by also allowing for payment optimization. They’ll share how to grow your business faster and minimize costs for both security and compliance

OWASP® Global AppSec US 2021 Virtual – Matt Tesauro’s ‘Are You Safe From OWASP #11?’

Security Boulevard

Our thanks to both the OWASP® Foundation and the OWASP Global AppSec US 2021 Virtual Conference for publishing their well-crafted application security videos on the organization’s’ YouTube channel. Permalink.

Appgate Achieves SOC 2 Type 2 Certification

CyberSecurity Insiders

MIAMI-( BUSINESS WIRE )- Appgate, Inc. OTC: APGT), the secure access company, today announced it has achieved SOC 2 Type 2 certification for its entire portfolio.

US offers $15 million reward for info on Conti ransomware gang

Bleeping Computer

The US Department of State is offering up to $15 million for information that helps identify and locate leadership and co-conspirators of the infamous Conti ransomware gang. [.]. Security

UK sanctions Russian microprocessor makers, banning them from ARM

Bleeping Computer

The UK government added 63 Russian entities to its sanction list on Wednesday. Among them are Baikal Electronics and MCST (Moscow Center of SPARC Technologies), the two most important chip makers in Russia. [.]. Technology Legal

Back to the Office: Privacy and Security Solutions to Compliance Issues for 2021 and Beyond

Speaker: Mike Cramer, Director of HIPAA & Data Security at The Word & Brown Companies

Now that companies are slowly allowing employees to return to work at the office, it's time to re-evaluate your company’s posture towards privacy and security. Join Mike Cramer, Director of HIPAA & Data Security at The Word & Brown Companies, for a discussion that will focus on compliance and the types of privacy and security measures your company should be aware of, as well as tips and methods for implementing these measures.

Fake crypto giveaways steal millions using Elon Musk Ark Invest video

Bleeping Computer

Fake cryptocurrency giveaways are stealing millions of dollars simply by replaying old Elon Musk and Jack Dorsey Ark Invest videos on YouTube. [.]. Security