Don’t get scammed when buying tickets onlineWith hot-ticket events firmly back on the agenda, scammers selling fake tickets online have also come out in force The...
Author: admin
Smashing Security podcast #294: The Virgin trains swindler, cyber clowns, and AirTag election debacle
Smashing Security podcast #294: The Virgin trains swindler, cyber clowns, and AirTag election debacleSomeone's election-fiddling is uncovered with an Apple AirTag, a cyber scandal rocks Germany,...
Tracking Earth Aughisky’s Malware and Changes
Tracking Earth Aughisky’s Malware and ChangesFor over 10 years, security researchers have been observing and keeping tabs of APT group Earth Aughisky’s malware families and the...
Domestic Kitten campaign spying on Iranian citizens with new FurBall malware
Domestic Kitten campaign spying on Iranian citizens with new FurBall malwareAPT-C-50’s Domestic Kitten campaign continues, targeting Iranian citizens with a new version of the FurBall malware...
APT‑C‑50 updates FurBall Android malware – Week in security with Tony Anscombe
APT‑C‑50 updates FurBall Android malware – Week in security with Tony AnscombeESET Research spots a new version of Android malware known as FurBall that APT-C-50 is...
Akamai to boost network-layer DDoS protection with new scrubbing centers
Akamai to boost network-layer DDoS protection with new scrubbing centersContent delivery network (CDN) provider Akamai said Tuesday that its Prolexic DDoS protection service will become able...
Microsoft “BlueBleed” data breach: customer details and email content exposed
Microsoft “BlueBleed” data breach: customer details and email content exposedMicrosoft says that it accidentally exposed sensitive customer data after failing to configure a server securely. But...
Australia’s Data Breach Wave: Workaday Cybercrime
Australia's Data Breach Wave: Workaday CybercrimeNation-State Actors Aren't Going to Be as Obnoxious and PublicIs Australia's data breach wave a coincidence, bad luck or intentional targeting?...
WhatsApp Down: Users Can’t Send or Receive Messages
WhatsApp Down: Users Can’t Send or Receive MessagesToday, October 25th, WhatsApp, the biggest messaging app in the world, suffered from an outage that shut down its...
5 reasons to keep your software and devices up to date
5 reasons to keep your software and devices up to dateNext time you're tempted to hold off on installing software updates, remember why these updates are...
The Interpol Metaverse Was Launched to Help the Fight against Cybercrime
The Interpol Metaverse Was Launched to Help the Fight against CybercrimeLast week, at the 90th Interpol General Assembly in New Delhi, The International Criminal Police Organization...
How Water Labbu Exploits Electron-Based Applications
How Water Labbu Exploits Electron-Based ApplicationsIn the second part of our Water Labbu blog series, we explore how the threat actor exploits Electron-based applications using Cobalt...
Ex-cop abused police tool in Snapshot sextortion plot that stole sexually explicit photos and videos
Ex-cop abused police tool in Snapshot sextortion plot that stole sexually explicit photos and videosA former officer at Louisville Metro Police has admitted his part in...
The Battle Against Phishing Attacks and Similar Scams
The Battle Against Phishing Attacks and Similar ScamsMany entities fight an uphill battle against increasingly clever phishing and related scams that lead to serious data compromises,...
Regulating DAOs
Regulating DAOsIn August, the US Treasury’s Office of Foreign Assets Control (OFAC) sanctioned the cryptocurrency platform Tornado Cash, a virtual currency “mixer” designed to make it...
Car dealer group Pendragon refuses to pay $60 million to ransomware extortionists
Car dealer group Pendragon refuses to pay $60 million to ransomware extortionistsPendragon - the car dealership group which owns Evans Halshaw, CarStore, and Stratstone, and operates...
Using Identity for Access Is a Huge Cybersecurity Risk
Using Identity for Access Is a Huge Cybersecurity RiskWhy FIDO’s proposal to use identification for cyber access opens more security vulnerabilities for threat actors to exploit...
Upcoming Speaking Engagements
Upcoming Speaking EngagementsThis is a current list of where and when I am scheduled to speak: I’m speaking at the World Ethical Data Forum, online, October...
Friday Squid Blogging: On Squid Ink
Friday Squid Blogging: On Squid InkIt’s aimed at children, but it’s a good primer. As usual, you can also use this squid post to talk about...
Seven months after it found out, FamilySearch tells users their personal data has been breached
Seven months after it found out, FamilySearch tells users their personal data has been breachedShouldn't affected users have been told sooner?Leer másGraham CluleyShouldn't affected users have...
Hacking Automobile Keyless Entry Systems
Hacking Automobile Keyless Entry SystemsSuspected members of a European car-theft ring have been arrested: The criminals targeted vehicles with keyless entry and start systems, exploiting the...
Automotive Retailer Pendragon Refuses to Pay $60 Million Ransom
Automotive Retailer Pendragon Refuses to Pay $60 Million RansomLockBit ransomware allegedly breached Pendragon Group, a U.K.-based auto dealer group with over 200 locations, and demanded $60...
Black Basta Ransomware Gang Infiltrates Networks via QAKBOT, Brute Ratel, and Cobalt Strike
Black Basta Ransomware Gang Infiltrates Networks via QAKBOT, Brute Ratel, and Cobalt StrikeWe analyzed a QAKBOT-related case leading to a Brute Ratel C4 and Cobalt Strike...
Qatar Spyware
Qatar SpywareEveryone visiting Qatar for the World Cup needs to install spyware on their phone. Everyone travelling to Qatar during the football World Cup will be...
RomCom Backdoor Detection: Cyber Attack on Ukrainian State Bodies Attributed to Cuba Ransomware Operators aka Tropical Scorpius (UNC2596) Group
RomCom Backdoor Detection: Cyber Attack on Ukrainian State Bodies Attributed to Cuba Ransomware Operators aka Tropical Scorpius (UNC2596) Group In May 2022, Cuba ransomware maintainers resurfaced...
Museum Security
Museum SecurityInteresting interview: Banks don’t take millions of dollars and put them in plastic bags and hang them on the wall so everybody can walk right...
Online Tracking Tools Provoke Patient Privacy Concerns
Online Tracking Tools Provoke Patient Privacy ConcernsA study by data privacy firm Lokker found thousands of healthcare providers deploying Facebook Pixel and other similar tracking tools....
Oil and Gas Cybersecurity: Trends & Response to Survey
Oil and Gas Cybersecurity: Trends & Response to SurveyBased on our survey of over 900 ICS security leaders in the United States, Germany, and Japan, we...
Interview with Signal’s New President
Interview with Signal’s New PresidentLong and interesting interview with Signal’s new president, Meredith Whittaker: WhatsApp uses the Signal encryption protocol to provide encryption for its messages....
Cybersecurity event cancelled after scammers disrupt LinkedIn live chat
Cybersecurity event cancelled after scammers disrupt LinkedIn live chatIt was all going so well. At first. Read more in my article on the Hot for Security...




















