Dan Goodin - Page 9

118 Posts
0 Comments

Developers can’t seem to stop exposing credentials in publicly accessible code

EnlargeVictor De Schwanberg/Science Photo Library via Getty Images Despite more than a decade of reminding, prodding, and downright nagging, a surprising number...

Critical vulnerability in Atlassian Confluence server is under “mass exploitation”

Enlarge A critical vulnerability in Atlassian’s Confluence enterprise server app that allows for malicious commands and reset servers is under active exploitation...

Microsoft profiles new threat group with unusual but effective practices

Enlarge / This is not what a hacker looks like. Except on hacker cosplay night.Getty Images | Bill Hinton Microsoft has been...

iPhones have been exposing your unique MAC despite Apple’s promises otherwise

Enlarge / Private Wi-Fi address setting on an iPhone.Apple Three years ago, Apple introduced a privacy-enhancing feature that hid the Wi-Fi address...

Pro-Russia hackers target inboxes with 0-day in webmail app used by millions

EnlargeGetty Images A relentless team of pro-Russia hackers has been exploiting a zero-day vulnerability in widely used webmail software in attacks targeting...

Feel-good story of the week: 2 ransomware gangs meet their demise

EnlargeGetty Images From the warm-and-fuzzy files comes this feel-good Friday post, chronicling this week’s takedown of two hated ransomware groups. One vanished...

Okta says hackers breached its support system and viewed customer files

EnlargeGetty Images Identity and authentication management provider Okta said hackers managed to view private customer information after gaining access to credentials to...

Google-hosted malvertising leads to fake Keepass site that looks genuine

EnlargeMiragec/Getty Images Google has been caught hosting a malicious ad so convincing that there’s a decent chance it has managed to trick...

23andMe says private user data is up for sale after being scraped

Enlarge / The 23andMe logo displayed on a smartphone screen. Genetic profiling service 23andMe has confirmed that private user data is circulating...

Vulnerabilities in Supermicro BMCs could allow for unkillable server rootkits

EnlargeGetty Images If your organization uses servers that are equipped with baseboard management controllers from Supermicro, it may be time, once again,...

Latest articles