The U.S. government agency in charge of improving the nation's cybersecurity posture is ordering all federal civilian agencies to take new measures to restrict access to Internet-exposed networking equipment....
Read moreMany Public Salesforce Sites are Leaking Private Data
April 28 2023A shocking number of organizations -- including banks and healthcare providers -- are leaking private and sensitive information from their public Salesforce Community websites, KrebsOnSecurity has learned. The data...
Read more3CX Breach Was a Double Supply Chain Compromise
April 21 2023We learned some remarkable new details this week about the recent supply-chain attack on VoIP software provider 3CX, a complex, lengthy intrusion that has the makings of a cyberpunk...
Read moreMicrosoft (& Apple) Patch Tuesday, April 2023 Edition
April 12 2023Microsoft today released software updates to plug 100 security holes in its Windows operating systems and other software, including a zero-day vulnerability that is already being used in active...
Read moreMicrosoft Patch Tuesday, March 2023 Edition
March 15 2023Microsoft on Tuesday released updates to quash at least 74 security bugs in its Windows operating systems and software. Two of those flaws are already being actively attacked, including...
Read moreHighlights from the New U.S. Cybersecurity Strategy
March 3 2023The Biden administration today issued its vision for beefing up the nation's collective cybersecurity posture, including calls for legislation establishing liability for software products and services that are sold...
Read moreNew Protections for Food Benefits Stolen by Skimmers
February 18 2023Millions of Americans receiving food assistance benefits just earned a new right that they can't yet enforce: The right to be reimbursed if funds on their Electronic Benefit Transfer...
Read moreNew T-Mobile Breach Affects 37 Million Accounts
January 20 2023T-Mobile today disclosed a data breach affecting tens of millions of customer accounts, its second major data exposure in as many years. In a filing with federal regulators, T-Mobile...
Read moreNew Ransom Payment Schemes Target Executives, Telemedicine
December 9 2022Ransomware groups are constantly devising new methods for infecting victims and convincing them to pay up, but a couple of strategies tested recently seem especially devious. The first centers...
Read moreConnectWise Quietly Patches Flaw That Helps Phishers
December 2 2022ConnectWise, a self-hosted, remote desktop software application that is widely used by Managed Service Providers (MSPs), is warning about an unusually sophisticated phishing attack that can let attackers take...
Read more
Recent Comments