Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 812

ISBuzz Team

ISBuzz Team
  • Website

SQL Injection Exposes 2 Million Ubuntu Forum Users

ISBuzz TeamJuly 20, 20162 Mins Read

Ubuntu Linux developer Canonical has admitted that the data of 2 million of its forum users has been compromised, following the exploitation of a known SQL vulnerability. The flaw was found in the ‘Forumrunner’ add-on, which was left unpatched. User passwords have not been breached, but the attacker had access to the usernames, email addresses and IPs for the 2 million affected. Ryan O’Leary, VP Threat Research Centre at WhiteHat Security commented below. Ryan O’Leary, VP Threat Research Centre at WhiteHat Security: “SQL injection continues to be an easy avenue for hackers to cause harm or steal information from a database.…

Read More

New Ransomware Study Explores “Customer Journey” Of Getting Your Files Back

ISBuzz TeamJuly 20, 20162 Mins Read

In F-Secure’s evaluation, three out of four ransomware criminal gangs were willing to negotiate the ransom fee. Berkshire, UK. Ransomware criminals actually care about your convenience. That’s according to a recent experiment detailed in a new F-Secure report, Evaluating the Customer Journey of Crypto-Ransomware and the Paradox Behind It. The experiment involved evaluating the “customer experience” of five current crypto-ransomware variants, beginning with the initial ransom screen all the way to interacting with the ransomware criminals behind each of those variants. The report’s findings include: Those families with the most professional user interfaces are not necessarily also those with the best…

Read More

Massive DDoS Attck Brings Down Pokemon Go

ISBuzz TeamJuly 20, 20161 Min Read

Following the news that hacking group PoodleCorp has taken responsibility for taking down Pokemon Go in the US and Europe using a DDoS attack, Stephanie Weagle, Senior Director at Corero Network Security commented below. Stephanie Weagle, Senior Director at Corero Network Security: “The online gaming industry is highly susceptible to DDoS attacks due to the competitive nature of the games themselves, monetary gains or the notion that organized cyber crime syndicates can grab headlines with their successful attacks. “DDoS attack tools are easily procured and at low cost allowing any creative attacker the ability to cause service disruptions at a click…

Read More

The Clock Is Ticking For UK Businesses Still Not Prepared For The EU General Data Regulation

ISBuzz TeamJuly 19, 20164 Mins Read

Across the globe, an alarming number of widely-known businesses are falling victim to data breaches. Public concern over the safety of private data is becoming increasingly prevalent, due to the large amount of media coverage surrounding prolific scandals like last year’s incident at TalkTalk. Those concerned about these events are right to be; the breach at TalkTalk alone resulted in the addresses, credit card details and account information of four million customers being put at risk. The good news for consumers is that their concern is shared by legislators in the European Union. In fact, for many years the EU…

Read More

Check Point Research Shows Surge In Active Malware Families During First Half of 2016

ISBuzz TeamJuly 18, 20163 Mins Read

New Threat Index shows number of malware families targeting business networks has grown 61 percent from January to June 2016, while mobile threats continue to increase rapidly   Check Point Software Technologies Ltd. today published its latest Threat Index, revealing the number of active malware families increased by nearly two-thirds in the first half of 2016, led by the number of threats to business networks and mobile devices. During June, Check Point detected 2,420 unique and active malware families attacking business networks, a 61 percent increase compared with January 2016 and a 21 percent increase since April.  The continued rise in the number…

Read More

Hackers Steal Millions From ATMS Using Connected Device

ISBuzz TeamJuly 18, 20162 Mins Read

Taiwan is trying to figure out how hackers managed to trick a network of bank ATMs into spitting out millions. Police said several people wearing masks attacked dozens of ATMs operated by Taiwan’s First Bank on Sunday. They spent a few minutes at each of the machines before making off with the equivalent of $2 million stashed in a backpack. They didn’t use bank cards but rather appeared to gain control of the machines with a “connected device,” possibly a smartphone, the police said in a statementThursday. Craig Young, Security Researcher at Tripwire commented below. Craig Young, Security Researcher at Tripwire:…

Read More

CuteRansomware Using Google Docs As A Launch Platform

ISBuzz TeamJuly 18, 20161 Min Read

A new strain of malware called cuteRansomware has been uncovered that uses a Google Doc generated by cybercriminals to host the decryption key and command-and-control functionality. Travis Smith, Senior Security Research Engineer at Tripwire commented below. Travis Smith, Senior Security Research Engineer at Tripwire: “What makes cuteRansomware interesting is the usage of a well-known cloud service provider to as the command and control server.  This instance is using Google Docs to maintain the encryption and decryption keys for each victim.  While unique, hosting the keys on Google Docs is a short term solution.  Once Google is notified, it’s likely the form controlling…

Read More

DDoS Attacks On Philippine Government Websites

ISBuzz TeamJuly 18, 20162 Mins Read

It is being reported that there was a spike in cyber attacks on Philippine government web sites, including a key Malaccañang agency, following the United Nations International Arbitration court’s ruling in favour of the Philippines on the West Philippine Sea territorial dispute. However, it was not clear if the attacks were carried out by parties associated with China itself, as they apparently emanated from multiple countries. So far, the government has not been able to pinpoint the origin of the attacks. All were categorised as DDoS, or Distributed Denial of Service actions. Stephen Gates, chief research intelligence analyst at NSFOCUS, provider of advanced security…

Read More

$50 Ransomware For Sale On Dark Web

ISBuzz TeamJuly 18, 20163 Mins Read

A new strain of malware has been spotted on the dark web that is up for sale for less than $50 for a lifetime licence. The ransomware, named Stampado, gives victims 96 hours to pay the ransom before it starts randomly deleting files from their PC. Security experts provide an insight on this ransomware below.  Wieland Alge, VP and GM EMEA at Barracuda Networks: “The rise of cheap and accessible ransomware like the Stampado variant is an indication of an accelerating evolution of the threat landscape. It is the direct result of the digital transformation of crime. However, being successful at spreading ransomware does require a…

Read More

Fiat Chrysler Offering A Bug Bounty Program

ISBuzz TeamJuly 16, 20161 Min Read

Following the news about the Fiat Chrysler offering a bug bounty program. Art Dahnert, Consultant at Cigital commented below on this bounty program. Art Dahnert, Consultant at Cigital: “I’ve looked at the BugCrowd profile for the FCA bug bounty and it looks like they are just dipping their toe in the water. They are specifically staying away from the automotive platforms, meaning the cars themselves.  The domains in scope are ancillary integration services for some of the vehicle components. They gave a well-defined list of what types of vulnerabilities are important, which helps with keeping the “signal to noise” ratio low. The…

Read More
Previous 1 … 810 811 812 813 814 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}