Sat.Jan 30, 2021

article thumbnail

UScellular data breach: attackers ported customer phone numbers

Security Affairs

US wireless carrier UScellular discloses data breach, personal information of customers may have been exposed and their phone numbers ported. US wireless carrier UScellular discloses a data breach that exposed personal information of its customers. United States Cellular Corporation, is the fourth-largest wireless carrier in the United States, with over 4.9 million customers in 426 markets in 23 states as of the second quarter of 2020.

article thumbnail

BSidesSF 2020 – Jayson Grace’s ‘MOSE: Using Configuration Management For Evil’

Security Boulevard

Many thanks to BSidesSF and Conference Speakers for publishing their outstanding presentations; of which, originally appeared at the organization's BSidesSF 2020 , and on the DEF CON YouTube channel. Additionally, the BSidesSF 2021 will take place on March 6 - 9, 2021 - with no cost to participate. Enjoy! Permalink. The post BSidesSF 2020 – Jayson Grace’s ‘MOSE: Using Configuration Management For Evil’ appeared first on Security Boulevard.

Education 103
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

UK Research and Innovation (UKRI) discloses ransomware attack

Security Affairs

A ransomware infected the systems at the UK Research and Innovation (UKRI), at leat two services were impacted. The UK Research and Innovation (UKRI) discloses a ransomware incident that impacted a number of UKRI-related web assets. Two services were impacted, a portal for our UK Research Office (UKRO) based in Brussels and an extranet used by our Councils.

article thumbnail

Apple Fixes One of the iPhone's Most Pressing Security Risks

WIRED Threat Level

By hardening iMessage in iOS 14, the company has effectively cut off what had been an increasingly popular line of attack.

Risk 113
article thumbnail

The Importance of User Roles and Permissions in Cybersecurity Software

How many people would you trust with your house keys? Chances are, you have a handful of trusted friends and family members who have an emergency copy, but you definitely wouldn’t hand those out too freely. You have stuff that’s worth protecting—and the more people that have access to your belongings, the higher the odds that something will go missing.

article thumbnail

Victims of FonixCrypter ransomware could decrypt their files for free

Security Affairs

FonixCrypter ransomware operators shut down their operations, released the master decryption key for free, and deleted malware’s source code. Good news for the victims of the FonixCrypter ransomware, the operators behind the threat shut down their operations and released the master decryption key. The FonixCrypter gang also closed its Telegram channel that was used to advertise the malware in the cybercrime underground.

article thumbnail

GnuPG crypto library can be pwned during decryption – patch now!

Naked Security

Many, if not most, Linux distros will be affected. Users of other operating systems should check for software that uses libgcrypt.

Software 111

More Trending

article thumbnail

BSidesSF 2020 – Vanessa Sauter’s ‘The Voight-Kampff Test For Discovering Vulnerabilities’

Security Boulevard

Many thanks to BSidesSF and Conference Speakers for publishing their outstanding presentations; of which, originally appeared at the organization's BSidesSF 2020 , and on the DEF CON YouTube channel. Additionally, the BSidesSF 2021 will take place on March 6 - 9, 2021 - with no cost to participate. Enjoy! Permalink. The post BSidesSF 2020 – Vanessa Sauter’s ‘The Voight-Kampff Test For Discovering Vulnerabilities’ appeared first on Security Boulevard.

article thumbnail

Parler Whack-a-Mole

Security Boulevard

(this is an unrolled Twitter thread converted to the blog since one never knows how long content will be preserved anywhere anymore) It looks like @StackPath (NetCDN[.]com redirects to them) is enabling insurrection-mongers. They’re fronting news[.]parler[.]com. It seems they (Parler) have a second domain dicecrm[.]com with the actual content, too. dicecrm[.]com is hosted in.

67
article thumbnail

XKCD ‘Metacarcinization’

Security Boulevard

via the comic delivery system monikered Randall Munroe resident at XKCD ! Permalink. The post XKCD ‘Metacarcinization’ appeared first on Security Boulevard.

67
article thumbnail

The Difference Between Apple and Facebook

Security Boulevard

People arguing that Facebook has a point (in suing Apple) are just more evidence of the problem in America. It’s like someone at Facebook packaged logical fallacies into bright colored candy and we all know how Americans do love their sugar. Stop saying slippery slope. it’s a fallacy Stop using tu quoque. it’s a fallacy … Continue reading The Difference Between Apple and Facebook ?.

57
article thumbnail

IDC Analyst Report: The Open Source Blind Spot Putting Businesses at Risk

In a recent study, IDC found that 64% of organizations said they were already using open source in software development with a further 25% planning to in the next year. Most organizations are unaware of just how much open-source code is used and underestimate their dependency on it. As enterprises grow the use of open-source software, they face a new challenge: understanding the scope of open-source software that's being used throughout the organization and the corresponding exposure.