Ethereum DeFi system Polygon has announced that it patched a critical vulnerability that stood to put some $24 billion of its MATIC coins at risk. The company kept the issue quiet for weeks as it worked to patch it out.
Positive Technologies found that cybercriminals can penetrate 93% of company networks, disrupt processes and services, steal funds and data, while insiders can breach 100% of networks.
Fraudsters stole at least S$8.5 million from OCBC Bank customers through fake SMS impersonating the bank. OCBC warned of increased phishing scams in December 2021.
Tiandy, one of the largest firms in the video surveillance field, has a relationship with Iran. It is known for its ethically questionable product line, which includes "smart tables" designed to accompany Chinese torture chairs.
Report contends that the pandemic was used as an excuse to normalize various elements of mass surveillance, with some of these having no real impact on Covid-19 response at all.
In general, law enforcement does not have access to E22E messages sent via secure messaging apps. However, there is a workaround: message backups sitting in cloud storage services.
Cyber attack on Norwegian media company Amedia halted the publication of printed newspapers and potentially compromised personal information of employees and subscribers.
Password Manager LastPass says no master password was compromised after multiple users received unauthorized login alerts. The company blamed credential stuffing and system errors.
Legal action may be forthcoming for organizations that do not patch Log4j. The FTC has issued an alert that references the Equifax breach (which ended in a settlement of $700 million) as a precedent.
The Office of the Attorney General of New York has recorded 1.1 million compromised accounts. The stolen logins were put to use in credential stuffing attacks against a variety of "well-known" online retail, food and delivery businesses.









