After the breach of Kaseya and thousands of clients downstream from it by REvil ransomware, the perpetrators disappeared abruptly but Kaseya appears to have received a decryption key nearly three weeks into the attack.
New iPhone vulnerability in default iOS mail application can be triggered even without the victim clicking on an attachment or following a link on the email.
The patch comes as attempts to exploit the zero-day vulnerability began to ramp up worldwide, and was badly needed as there were no other viable remediation techniques to stop remote code execution.
There's a need to secure offline, rather than online, microfinancing solutions. The future rests in the power of embeddable microchips and the power of process isolation by inserting a Linux-powered computer into the architecture of an non-secure IoT device to create a hardware Root of Trust.
The announcement of a new digital ID that will be mandatory for employment is raising major privacy concerns in the UK, even as the nation grapples with mass unrest about the illegal immigration the scheme was designed to reduce.
Octo Tempest has gradually stepped up from data theft, to data extortion, and now to ransomware as of this summer (becoming an affiliate of the ALPHV/BlackCat group). The cybercriminals are entirely financially motivated and nearly always leads with either a phishing email/message or a social engineering call. It also looks to execute SIM swap attacks.
Volvo disclosed a security breach that resulted in a R&D data theft by Snatch cyber threat actors. The company added that customers’ car safety and private information were not affected.
A data breach affecting Madison Square Garden Sports and the New York Knicks has leaked the personal information of customers, celebrities, athletes, and their representatives.
The FBI warned higher education institutions that cyber criminals were selling their login credentials on publicly-accessible and dark web Russian hacker forums.
Popular "fast fashion" app Shein has landed in some regulatory trouble in the EU, as France's data regulator CNIL has issued a €150 million GDPR fine due to failure to obtain cookie consent.










