Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 64

ISBuzz Team

ISBuzz Team
  • Website

Mobile App Data Found Exposing API’s & Data In 1,000’s Of Cloud Databases

ISBuzz TeamMarch 18, 20221 Min Read

Check Point Research found thousands of Firebase cloud databases that exposed chat messages in gaming apps, personal photos, token IDs in healthcare apps and data from cryptocurrency platforms. One app discovered was from a large Dept Store in South America application (10+ Million Downloads) that had mistakenly exposed its API gateway credentials and API keys. CPR was able to access this data without facing any kind of protective mechanism.  Other similar apps had their data exposed for all to see: Bookkeeping Application (1+ Million Downloads)Dating Application (10,000+ Downloads)Social Audio platform application (5+ Million Downloads)Running Tracker Application (100,000+ Downloads)Logo Design Application…

Read More

CISA Adds 15 Known Exploited Vulnerabilities, Expert Weighs In

ISBuzz TeamMarch 18, 20222 Mins Read

The U.S. Cybersecurity & Infrastructure Security Agency (CISA) has added fifteen additional flaws to its list of actively exploited vulnerabilities known to be used in cyberattacks. CISA is giving federal agencies a deadline of April 5, 2022, to apply the available security updates … Description Patch Deadline SonicWall SonicOS Buffer Overflow Vulnerability                                4/5/2022 Microsoft Windows UPnP Service Privilege…

Read More

New Linux Botnet Exploding Log4J, DNS Tunnelling Used To Conceal Comms Traffic

ISBuzz TeamMarch 17, 20221 Min Read

A new Linux botnet, named B1txor20 was found exploiting Log4J, targeting Linux systems and infecting dozens of vendors who are using the vulnerable Apache Log4j logging library. The botnet uses the exploit to steal sensitive information, install rootkits, create reverse shells and act as web traffic proxies. What makes this bot unique is that it was using DNS tunnelling to conceal its communication traffic – an old but reliable technique.

Read More

Expert Insight On New Features Released By Instagram To Protect Young Users

ISBuzz TeamMarch 17, 20221 Min Read

According to TechCrunch, Instagram has announced the release of new safety tools for parents to use to protect young users. A new centralised hub, called the “Family Centre” has been introduced by Meta, providing parents with new supervision and safety features, giving parents transparency into their children’s Instagram usage habits. Parents can monitor time spent on the app, followed accounts and receive notifications of any accounts they have reported. The announcement comes as Meta have been criticised for not doing enough to protect vulnerable users.

Read More

Cequence Security Report Reveals Top 3 API Attack Trends, Expert Weighs In

ISBuzz TeamMarch 17, 20222 Mins Read

Cequence Security, the industry leader in API security, today released its “API Security Threat Report: Bots and Automated Attacks Explode,” revealing that both developers and attackers have made the shift to APIs. Of the 21.1 billion transactions analyzed by Cequence Security in the last half of 2021, 14 billion (70 percent) were API transactions. Three attack trends they discuss: Attack Trend One: Fraud Comes in Many Forms – Gift Card Fraud, Loan Fraud and Payment FraudIn late July, Cequence saw retail customers get hit with a 2800% increase in ATOs averaging 700K attacks per day with the end goal of…

Read More

FTC Fines CafePress After Data Breach – Expert Reaction

ISBuzz TeamMarch 17, 20221 Min Read

The U.S. Federal Trade Commission (FTC) wants to slap the former owner of the CafePress custom t-shirt and merchandise site with a $500,000 fine for failing to secure its users’ data and attempting to cover up a significant data breach impacting millions. As the consumer protection watchdog explained, CafePress’ former owner, Residual Pumpkin Entity, stored its customers’ Social Security numbers and password reset answers in plain text, and their data longer than necessary. “As a result of its shoddy security practices, CafePress’ network was breached multiple times,” the FTC said in its announcement: FTC Takes Action Against CafePress for Data Breach…

Read More

CSO Says “New LokiLocker Ransomware Is An Identity Problem”

ISBuzz TeamMarch 17, 20221 Min Read

A new LokiLocker ransomware family has been spotted with a built-in wiper that targets English-speaking victims, capable of erasing all non-system files from infected Windows PCs. This proves ransomware is not just a malware problem.

Read More

Expert Comment: Facebook Fined $18.6M Over String Of 2018 Breaches Of EU’s GDPR

ISBuzz TeamMarch 16, 20221 Min Read

Facebook’s parent company, Meta, has been fined €17 million (~$18.6 million) by the Irish Data Protection Commission (DPC) over a string of historical data breaches.

Read More

Report: Payment Fraud Attacks Against Fintech Companies Soar By 70% In 2021

ISBuzz TeamMarch 16, 20223 Mins Read

Sift’s Q1 Digital Trust & Safety Index reveals rising fraud across fintech, company releases Trust Intelligence Center for Trust and Safety Professionals Sift, the leader in Digital Trust & Safety, today released its Q1 2022 Digital Trust & Safety Index, detailing the increasingly sophisticated—and often automated—tactics cybercriminals leverage to commit payment fraud. Derived from Sift’s global network of over 34,000 sites and apps and a survey of over 1,000 consumers, the index reveals that the payment fraud attack rate (the rate of fraudulent transactions blocked by Sift out of total transactions) across fintech ballooned 70% in 2021—making it the highest…

Read More

Israel Government Hit By Cyber Attack

ISBuzz TeamMarch 16, 20221 Min Read

Industry leaders reacted below on the news that Israel says its government websites were hit by cyber attack.

Read More
Previous 1 … 62 63 64 65 66 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}