Sat.Dec 30, 2023

article thumbnail

Weekly Update 380

Troy Hunt

We're in Paris! And feeling proper relaxed after several days of wine and cheese too, I might add. This was a very impromptu end of 2023 weekly update as we balanced family time with doing the final video for the year. On the cyber side, the constant them over the last week has been ransomware; big firms, little firms, Aussie firms, American firms - it's just completely indiscriminate.

article thumbnail

INC RANSOM ransomware gang claims to have breached Xerox Corp

Security Affairs

The INC RANSOM ransomware group claims to have hacked the American multinational corporation Xerox Corp. Xerox Corp provides document management solutions worldwide. The company’s Document Technology segment offers desktop monochrome and color printers, multifunction printers, copiers, digital printing presses, and light production devices; and production printing and publishing systems for the graphic communications marketplace and large enterprises.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

New Black Basta decryptor exploits ransomware flaw to recover files

Bleeping Computer

Researchers have created a decryptor that exploits a flaw in Black Basta ransomware, allowing victims to recover their files for free. [.

article thumbnail

Spotify music converter TuneFab puts users at risk

Security Affairs

TuneFab converter, used to convert copyrighted music from streaming platforms such as Spotify, Amazon’s Audible, or Apple Music, has exposed its users’ private data. Cybernews research showed that the platform has exposed more than 151 million parsed records with users’ IP addresses, userArea, userIDs, emails, and device info. The leak was caused by a misconfiguration on MongoDB, a document-oriented database platform, that left TuneFab’s data passwordless and publicly accessible.

Risk 118
article thumbnail

The Importance of User Roles and Permissions in Cybersecurity Software

How many people would you trust with your house keys? Chances are, you have a handful of trusted friends and family members who have an emergency copy, but you definitely wouldn’t hand those out too freely. You have stuff that’s worth protecting—and the more people that have access to your belongings, the higher the odds that something will go missing.

article thumbnail

tartufo: searches through git repositories for secrets, digging deep into commit history and branches

Penetration Testing

tartufo tartufo searches through git repositories for secrets, digging deep into commit history and branches. This is effective at finding secrets accidentally committed. tartufo also can be used by git pre-commit scripts to screen changes for secrets... The post tartufo: searches through git repositories for secrets, digging deep into commit history and branches appeared first on Penetration Testing.

article thumbnail

Beware: Scam-as-a-Service Aiding Cybercriminals in Crypto Wallet-Draining Attacks

The Hacker News

Cybersecurity researchers are warning about an increase in phishing attacks that are capable of draining cryptocurrency wallets.

Scams 99

More Trending

article thumbnail

2023 Year in Review: Hyperview Features and Enhancements

Security Boulevard

As we wrap up 2023, let's take a moment to look back on the amazing journey we've had together this year. We've launched eight major product releases and added a bunch of new features and improvements, all designed to make your experience with Hyperview even better. Here's a quick rundown of what we've achieved together. The post 2023 Year in Review: Hyperview Features and Enhancements appeared first on Hyperview.

57
article thumbnail

USENIX Security ’23 – Mingli Wu, Tsz Hon Yuen ‘Efficient Unbalanced Private Set Intersection Cardinality And User-Friendly Privacy-Preserving Contact Tracing’

Security Boulevard

Many thanks to USENIX for publishing their outstanding USENIX Security ’23 Presenter’s content, and the organizations strong commitment to Open Access. Originating from the conference’s events situated at the Anaheim Marriott ; and via the organizations YouTube channel. Permalink The post USENIX Security ’23 – Mingli Wu, Tsz Hon Yuen ‘Efficient Unbalanced Private Set Intersection Cardinality And User-Friendly Privacy-Preserving Contact Tracing’ appeared first on Security Boulevard.