Blog
Update: Hawaiʻi Community College Pays Ransom After Attackers Steal Personal Info of 28,000 People
The attack was claimed by the NoEscape ransomware group, a new gang that emerged in May. Despite paying the ransom, the community college is still in the process of restoring its IT infrastructure.
Cyber Attack on US: Bluenet Ransomware Group Strikes at the Heart of America’s Security and Air Transport
The world has recently witnessed a surge in cyber attacks, and the United States is no exception. A relatively new hacker collective called the Bluenet ransomware group has emerged as a prominent threat, following a pattern often associated with pro-Russian groups....
Major Security Flaw Discovered in Metabase BI Software – Urgent Update Required
"An unauthenticated attacker can run arbitrary commands with the same privileges as the Metabase server on the server you are running Metabase on," Metabase said in an advisory released last week.
Major Security Flaw Discovered in Metabase BI Software – Urgent Update Required
"An unauthenticated attacker can run arbitrary commands with the same privileges as the Metabase server on the server you are running Metabase on," Metabase said in an advisory released last week.
Major Security Flaw Discovered in Metabase BI Software – Urgent Update Required
Users of Metabase, a popular business intelligence and data visualization software package, are being advised to update to the latest version following the discovery of an "extremely severe" flaw that could result in pre-authenticated remote code execution on affected...
Cybersecurity Agencies Warn Against IDOR Bugs Exploited for Data Breaches
Cybersecurity agencies in Australia and the U.S. have published a joint cybersecurity advisory warning against security flaws in web applications that could be exploited by malicious actors to orchestrate data breach incidents and steal confidential data. This...
Microsoft Faces Scrutiny Over Chinese Intrusion as US Senator Calls for Cybersecurity Negligence Probe
The storm over the Chinese cyber attack on US officials, thanks to the Microsoft cybersecurity breach that compromised the MS cloud security and resulted in encryption key theft, refuses to die down. US Senator Ron Wyden has launched a scathing attack on Microsoft,...
Heart monitor manufacturer hit by cyberattack, takes systems offline
CardioComm, a Canadian company which provides heart-monitoring technology to hospitals and consumers, has revealed that it has been forced to take its systems offline following a cyberattack. Read more in my article on the Hot for Security blog.
S3 Ep145: Bugs With Impressive Names!
Fascinating fun (with a serious and educational side) - listen now! Full transcript available inside.
CISA Analysis Shows Most Cyberattacks on Governments, Critical Infrastructure Involve Valid Credentials
More than half of all cyberattacks on government agencies, critical infrastructure organizations, and state-level government bodies involved the use of valid accounts, according to a new report from the CISA.
FREE GUIDE