Information

Cyber Madness Bracket Challenge – Register to Play

As bracket-mania sweeps across the country for the 2023 NCAA Men’s Basketball Tournament, commonly referred to as “March Madness,” SecurityWeek will host its own “Cyber Madness” bracket challenge for those in the cybersecurity community to compete for a chance to win great prizes, earn bragging rights, and have some fun!  SecurityWeek’s Cyber Madness Bracket Challenge is a contest designed to bring the community together in a fun, competitive way through one of America’s top sporting…

Read More

Common WhatsApp scams and how to avoid them

Here’s a roundup of some of the most common tricks that fraudsters use to dupe their victims on WhatsApp – and what you can do to protect yourself against them. With more than two billion users, WhatsApp offers a vast pool of potential targets for scammers. To make things more complicated, fraudsters aren’t known for resting on their laurels – instead, they’re learning new and sophisticated social engineering skills to entrap us in their trickery.…

Read More

APT hackers set a honeytrap to ensnare victims – Week in security with Tony Anscombe

A request to move an online conversation to a supposedly more secure platform may not be as well-meaning as it sounds Have you ever been asked to move an online conversation to another – and supposedly more secure – platform? This technique, often used by romance scammers, was recently used against a number of Indian and Pakistani netizens, possibly with a military or political background. The targeted campaign – courtesy of the Transparent Tribe APT…

Read More

SHEIN shopping app goes rogue, grabs price and URL data from your clipboard

by Paul Ducklin Chinese “fast fashion” brand SHEIN is no stranger to controversy, not least because of a 2018 data breach that its then-parent company Zoetop failed to spot, let alone to stop, and then handled dishonestly. As Letitia James, Attorney General of the State of New York, said in a statement at the end of 2022: SHEIN and [sister brand] ROMWE’s weak digital security measures made it easy for hackers to shoplift consumers’ personal…

Read More

Silicon Valley Bank Seized by FDIC as Depositors Pull Cash

The Federal Deposit Insurance Corporation seized the assets of Silicon Valley Bank on Friday, marking the largest bank failure since Washington Mutual during the height of the 2008 financial crisis. The bank failed after depositors — mostly technology workers and venture capital-backed companies — began withdrawing their money creating a run on the bank. Silicon Valley was heavily exposed to tech industry and there is little chance of contagion in the banking sector as there…

Read More

S3 Ep125: When security hardware has security holes [Audio + Text]

by Paul Ducklin YOU MUST HAVE THIS CHIP! EVEN IF IT HAS BUGS! Memories of Michelangelo (the virus, not the artist). Data leakage bugs in TPM 2.0. Ransomware bust, ransomware warning, and anti-ransomware advice. No audio player below? Listen directly on Soundcloud. With Doug Aamoth and Paul Ducklin. Intro and outro music by Edith Mudge. You can listen to us on Soundcloud, Apple Podcasts, Google Podcasts, Spotify, Stitcher and anywhere that good podcasts are found.…

Read More

White House Budget Plan Seeks to Boost Cybersecurity Spending

The White House on Thursday published its $6.9 trillion budget proposal for fiscal year 2024 and the administration wants to increase cybersecurity spending. Several sections of President Biden’s budget plan mention cybersecurity-related spending.  The administration has proposed an additional $145 million for the Cybersecurity and Infrastructure Security Agency (CISA), which will receive a total of $3.1 billion. This amount includes $425 million to improve the agency’s internal cybersecurity and analytical capabilities, and $98 million for…

Read More

Who’s Behind the NetWire Remote Access Trojan?

A Croatian national has been arrested for allegedly operating NetWire, a Remote Access Trojan (RAT) marketed on cybercrime forums since 2012 as a stealthy way to spy on infected systems and siphon passwords. The arrest coincided with a seizure of the NetWire sales website by the U.S. Federal Bureau of Investigation (FBI). While the defendant in this case hasn’t yet been named publicly, the NetWire website has been leaking information about the likely true identity…

Read More

‘A woman from Mars’: Life in the pursuit of space exploration

An astrobiologist, analog astronaut, author and speaker, Dr. Michaela Musilova shares her experience as a woman at the forefront of space exploration and from her quest for scientific and personal excellence When we talk about space adventures, our minds are likely to wander to famed astronauts. However, we often forget that there is a lot more to space exploration than “just” space shuttles and the crews of people clad in special space suits and bouncing…

Read More

Revelstoke Security Raises $20 Million for SOAR Platform

Revelstoke Security on Wednesday announced that it has raised $20 million in a Series B funding round that brings the total investment in the company to $38 million. The new funding round was co-led by ClearSky Security and SYN Ventures, with additional investment from Crosslink Capital and Rally Ventures. Founded in 2020, the San Jose, California-based company provides a security orchestration, automation, and response (SOAR) platform built using a common data language that integrates disparate…

Read More