Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISB Editorial Staff - Page 3

ISB Editorial Staff

ISB Editorial Staff
  • Website

Mercedes-Benz “smart car” source code leaked – expert commentary

ISB Editorial StaffMay 19, 20201 Min Read

A security researcher discovered a misconfiguration in a Git web portal belonging to Daimler AG, the German automotive company behind the Mercedes-Benz brand. The researcher was able to access, download and leak over 580 Git repositories containing the source code for “smart car” components installed in Mercedes vans. The leaked projects also included Raspberry Pi images, server images, internal Daimler components for managing remote OLUs, internal documentation, code samples, and passwords and API tokens to Daimler’s systems.

Read More

Industry Experts On Verizon DBiR 2020

ISB Editorial StaffMay 19, 20201 Min Read

Verizon has today published its yearly report on business data breach investigations. Key stats included: 86 percent of data breaches for financial gain – up from 71 percent in 2019 Cloud-based data under attack – web application attacks double to 43 percent 67 percent of breaches caused by credential theft, errors and social attacks Clearly identified cyber-breach pathways enable a “Defender Advantage” in the fight against cyber-crime On-going patching successful – fewer than 1 in 20 breaches exploit vulnerabilities Report analyzes 32,002 security incidents and 3,950 confirmed breaches from 81 global contributors from 81 countries https://twitter.com/cjbeckner/status/1262596977080090624

Read More

Expert Insight On Elexon cyber attack

ISB Editorial StaffMay 18, 20201 Min Read

Elexon, an organisation that is central to the balancing and settlement of the UK electricity market, has been hit by a cyber-attack. Following security experts provide their insight below: https://twitter.com/aglongo/status/1262364070382010370

Read More

Expert On New research: surge in API attacks during Lockdown

ISB Editorial StaffMay 18, 20201 Min Read

Researchers at Cequence Security today published new information about a recent surge in API attacks, a major source of vulnerability that Cequence believes businesses aren’t sufficiently protecting against.  “Tales from the Front Line”  offers an insider’s analysis of one customer’s data (anonymized) from specific API attacks over the last four weeks.  CQ Prime researchers found: up to an 85% week over week increase in malicious traffic since the pandemic lockdown the Android Login API is a significant target attackers continuously vary the attack fingerprint to gain success – one campaign showed almost 1.5 million IP addresses using over 4 million different user agents attackers often…

Read More

Expert Reaction On Supercomputers Across Europe Infected with Cryptomining Malware

ISB Editorial StaffMay 18, 20201 Min Read

Multiple supercomputers across Europe have been infected with cryptocurrency mining malware and have shut down to investigate the intrusions, according to ZDNet. Security incidents have been reported in the UK, Germany, and Switzerland, while a similar intrusion is rumoured to have also happened at a high-performance computing centre located in Spain.  The first report of an attack came to light last Monday from the University of Edinburgh, which runs the ARCHER supercomputer. The organization reported “security exploitation on the ARCHER login nodes,” shut down the ARCHER system to investigate, and reset SSH passwords to prevent further intrusions.

Read More

Expert Reaction On News: Members of the public are using a bogus version of the UK contact-tracing app

ISB Editorial StaffMay 15, 20201 Min Read

According to the Guardian members of the public have been alerted to a scam in which fraudsters use a bogus version of the UK contact-tracing app being trialed on the Isle of Wight. The Chartered Trading Standards Institute (CTSI) said it had evidence of a phishing scam that uses a text message to try to fool people into believing they have been in contact with someone who has tested positive for coronavirus. The bogus text messages the CTSI has seen appear to have been sent by an official source associated with the app, directing recipients to a website that asks for…

Read More

Expert commentary: Black Hat SEO in Danger for Utilization of the Google WordPress Plugin Bug

ISB Editorial StaffMay 15, 20201 Min Read

Following reports from Bleeping Computer, a 300, 000 active installation of dangerous bug has been found in Google’s official WordPress plugin. Attributed to the disclosure of the proxySetupURL within the HTML source code of admin pages, this enables hackers to have owner access to the site’s Google Search Console. Not only that, but “the verification request used to verify a site’s ownership was a registered admin action” fails to have any capability checks. Thus,  such requests can come from any authenticated WordPress user.

Read More

Expert Insight On Ramsay Malware Targets Air-Gapped Networks

ISB Editorial StaffMay 15, 20201 Min Read

In response to new research from ESET on the discovery of the Ramsay malware toolkit targeting air-gapped networks, Cybersecurity experts commented below.

Read More

MagBo cybercrime store now selling access to 43K+ hacked servers

ISB Editorial StaffMay 15, 20201 Min Read

Shadowy online marketplace, MagBo,is selling access to more than 43,000 hacked servers, some of which belong to local and state government, hospitals, and financial organizations. MagBo is a portal where hackers sell and buy hacked servers, is doing better than ever and has soared in popularity to become the largest criminal marketplace of its kind since its launch in the summer of 2018.

Read More

Expert Reaction On UK urgently needs cybersecurity centre to protect autonomous cars from hackers

ISB Editorial StaffMay 15, 20201 Min Read

It has been reported that the UK “urgently needs” a transport cybersecurity program if it hopes to safely introduce connected and autonomous vehicles (CAVs) to the roads, according to the leaders of a pioneering project. The ResiCAV project investigated how CAVs and their associated infrastructure can develop “real-time responsiveness” to cybersecurity threats. Potential threats include cyber attacks against cars’ perception sensors, which could trick vehicles into ‘seeing’ something that is not there – or not seeing something that is. Hackers might also try to manipulate vehicles through data connections and ‘shared information protocols’, such as vehicle-to-vehicle, or vehicle-to-everything.

Read More
Previous 1 2 3 4 5 … 41 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}