As the Internet approaches its fourth decade, it’s worth remembering that in that short amount of time, we’ve seen monumental, global change — both in the real world and, of course, in the digital one. With that in mind, the fifteenth Internet Governance Forum debates featured more than 200 sessions with show more ...
focuses on data, the environment, inclusion, and trust. Because of COVID-19 concerns, it took place digitally this year, and this year’s roundtable discussion on Internet security included Eugene Kaspersky. In addition to Eugene talking about cybersecurity and transparency, the event included plenty of excellent debates. Some of the Kaspersky team, including Felix Aimé from the Global Research and Analysis Team (GReAT), discussed stalkerware, potential ways to address it, and how researcher teams (including ours) can raise awareness about the problem. To learn more about stalkerware, including what it is and how it works, check out the brilliant Coalition Against Stalkerware. Moving on from that, we have the hugely thorny issue of trust in the supply chain — and specifically, tackling the difficult task of ensuring trust in a worldwide supply chain. Throughout the event, the dedication of everybody involved — private entities, governments, and individual citizens — really stood out. They’re all working tirelessly toward a safer and more open Internet. We also held our Global Transparency Initiative event, examining trust, transparency, and the future — not to mention the idea that trust can be earned through openness and transparency; that the erosion of trust isn’t a given. Sadly, we’ve seen time and again stories about the fracturing Internet and what a balkanized Internet would mean for people and businesses around the world. The future doesn’t have to be that way.
French IT services giant Sopra Steria said today in an official statement that the October Ryuk ransomware attack will lead to a loss of between ~$47.7 million and ~$60 million.
A new form of ransomware is becoming increasingly prolific as cybercriminals turn to it as a preferred means of encrypting vulnerable networks in an effort to exploit bitcoin from victims.
With most of the workforce working from home, corporate resources are being made available via VPN and RDP connections. This has offered cybercriminals a plethora of opportunities for phishing attacks.
The zero-day vulnerability resides in two misconfigured Windows registry keys for the RPC Endpoint Mapper and DNSCache services that are part of all Windows installations.
Various threat actors are on the lookout for exposed Environment (ENV) files that have been accidentally uploaded, and it is suspected that botnets are scanning these files for stored credentials.
The healthcare sector underwent major ransomware attacks this year. Ryuk itself accounted for 67.3 million attacks, with the most attacks on organizations in the healthcare sector.
The Chinese embassy's rebuke came after India earlier this week expanded its ban to include another 43 Chinese apps, including AliExpress, DingTalk, MangoTV, and Taobao Live.
A Sophos spokesperson confirmed the emails earlier today and told ZDNet that only a "small subset" of the company's customers were affected but did not provide an approximate number.
The finding was included in "The Great Cyber Surrender" report by Clario and Demos, created from the results of a survey of 2,000 people in the UK and the US about cybercrime and its impact.
Spotify initiated an automated reset of passwords for all users affected. So if your credentials were in that database you should have received a notice about this password reset.
The malware author claims to be doing these infections for ‘research purposes’, or in his words to test which servers would stay active with infection unnoticed for the longest period.
On top of the agency's own IT department, Ritzau has hired an external security company that specializes in cleaning up after hacker attacks, and its insurance company was assisting with specialists.
“5G networks introduce new modes of cyberattack and expand the potential points of attack,” the GAO report reads, also noting that “5G networks will exacerbate existing privacy concerns.”
Three Nigerians suspected of being part of a cybercrime group that has made tens of thousands of victims around the world have been arrested today in Lagos, Nigeria, Interpol reported.
Since its grand debut in August 2018, the Ryuk ransomware has raked approximately $10 million by targeting organizations in various sectors and there’re no indications that it will stop any time soon.
A Group-IB report examines key shifts in the cybercrime world internationally between H2 2019 and H1 2020 and gives forecasts for the coming year, with ransomware causing most financial damage.
Don't ignore cyber operations outside U.S. and European interests, researcher says. We can learn a lot from methods used by attackers that aren't among the usual suspects.
Cybercriminals enjoy exploiting popular brands and names. It's the FBI's turn now, which has issued a PSA to warn people of lookalike web domains that imitate the FBI's official website.
Australia’s intelligence agencies have been caught “incidentally” collecting data from the COVIDSafe contact-tracing app during the first six months of its launch, a government watchdog has found.
According to new research from the app protection firm Promon and its partner Wultra, more than 60 fake apps masquerading as the popular online multiplayer game have been discovered online.
Security specialists at Trend Micro found camouflaged malicious files named under legitimate software such as Notepad to evade detection in security solutions deployed on target systems and networks.
Researchers say hackers are tricking the employees of GoDaddy into transferring the ownership and control of different cryptocurrency business domain names hosted on the platform.
The latest variant of TrickBot relies on the fileless method from the MemoryModule library to map its core DLL from memory without relying on filesystem DLL loading.
As a cybersecurity expert for the Biden 2020 campaign, Jackie Singh was tasked with preventing hacks like the disastrous email leak that struck Hillary Clinton's 2016 campaign.
Parler CEO John Matze confirmed to Business Insider that an email vendor for the social network exposed user data, but denied any user data was affected. However, researchers claim otherwise.
According to the findings from a survey by Generali Global Assistance, 30% of Americans avoided online shopping due to the potential security risks prior to the COVID-19 pandemic.
And as society continues to grapple with the impact of COVID-19, it is likely that these automated spear-phishing attacks will prey on fears around the pandemic, politics, and the economy.
Scammers have made off with hundreds of millions of dollars meant for unemployed Californians using the names of jail and prison inmates, according to district attorneys across the state.
Cyber-protection firm Acronis has announced that it is collaborating with the World Economic Forum (WEF) Center for Cybersecurity to address rising cybercrime around the globe.
Indian edtech startup WhiteHat Jr, which has found itself in a potboiler of controversies recently, had a bug in its system, which made its data of over 280,000 students vulnerable.
A survey of 2,200 senior IT decision-makers and IT security professionals across all global industry sectors, with 200 UK respondents, found that 39% of organizations fell victim to ransomware.
The nature of the data that has been leaked is sensitive, as it includes the names, phone numbers, email addresses, exact location of users, their industry of work, and LinkedIn profiles.
According to the security vendor Digital Shadows, a plurality of Egregor victims come from the industrial goods and services sector (38%), and the vast majority so far (83%) have been US-based.
“He clearly understood [cybersecurity] issues and why they were important and was a good advocate for DHS’s part in that,” said Christopher Painter, who served as Obama’s top diplomat on cyberspace.
Many of us here would love to turn hacking into a full-time career. To make that dream come true, you need to master your subject and earn some key certifications. To speed up this process, you might want to take a little guidance from the experts. Featuring 98 hours of content from top instructors, The Ultimate 2020 White Hat Hacker Certification Bundle is the ultimate launchpad for your career
Three Nigerian citizens suspected of being members of an organized cybercrime group behind distributing malware, carrying out phishing campaigns, and extensive Business Email Compromise (BEC) scams have been arrested in the city of Lagos, Interpol reported yesterday. The investigation, dubbed "Operation Falcon," was jointly undertaken by the international police organization along with
Three men have been arrested in Nigeria, suspected of being members of an organised cybercrime gang that has targeted over 500,000 government agencies and private sector companies around the world. Read more in my article on the Tripwire State of Security blog.
Author and broadcaster Tim Harford joins us as we discuss the merits of robotic canine security guards, deepfakes, and the curious tale of an art forgery. All this and much more is discussed in the latest edition of the award-winning "Smashing Security" podcast by computer security veterans Graham Cluley and Carole Theriault. And don't miss our special featured interview with James Moore from CultureAI.