NSO Group was found to not only have exceeded its legal level of access to the WhatsApp servers and broken the terms of service with its Pegasus spyware, but to also have violated the US Computer Fraud and Abuse Act as well as California state law.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A compromise of the popular GitHub Actions tool turned into a massive supply chain attack, at this point thought to be responsible for the follow-on exposure of over 23,000 GitHub repositories.
Dartmouth College has reported a data breach from Oracle’s E-Business Suite applications, leaking the sensitive personal information of approximately 35,000 people.
Hewlett Packard Enterprise (HPE) Security Breach Granted IntelBroker Access to Company’s Source Code
Hewlett Packard Enterprise (HPE) has launched an investigation into a potential security breach after IntelBroker claims to have stolen the company’s source code.
How do we prevent AI from being used as a tool for cyberattacks? We need to come up with ways to keep AI under control and stop hackers from manipulating automated computer systems and cause them to take actions they were never intended to take.
Security researchers believe that Chinese hackers are to blame for the attack in part because of the "selective" nature of the targets that were chosen for follow-on compromise via malicious software updates. Notepad++ is a free and broadly popular piece of software that is thought to have tens of millions of users worldwide.
Only 55% of the organizations surveyed are carrying any cyber insurance at all. And of those that are insured, just under 20% have more than $600,000 in coverage; not enough to meet the usual ransomware payment, let alone the potential cleanup costs.
Market for hack-for-hire services could be expanding significantly with recent unmasking of a Dark Basin group that has been operating in the shadows for years.
The Scattered Spider ransomware gang has been grabbing headlines with a string of bold and high-profile cyber attacks. But researchers with Google's Threat Intelligence Group (GTIG) now believe that some of these attacks may have been misattributed, and that the similarly long-tenured ShinyHunters group may have instead been the culprits.
Survey on consumer sentiments towards 5G technology acceptance shows Baby Boomers are most concerned about data privacy while Millennials worry more about environmental and health impacts.










