Recent Security News

  • Companies Struggle to Recover From CrowdStrike’s Crippling Falcon Update

    July 26, 2024 at 06:59PM CrowdStrike’s update caused widespread disruption, particularly in healthcare, with over half of the Health Information Sharing and Analysis Center affected. Recovery efforts continue, with only 18% fully recovered as of July 25. Microsoft released a USB Recovery Tool, but some systems, especially in healthcare, require manual intervention. The outage may…

    Read More

  • Millions of Devices Vulnerable to ‘PKFail’ Secure Boot Bypass Issue

    July 26, 2024 at 05:24PM Millions of Intel and ARM-based computing systems are vulnerable to attackers due to a leaked cryptographic key used in the Secure Boot process. The issue, dubbed “PKFail,” allows bypassing of Secure Boot and affects devices from vendors like Lenovo, HP, and Asus. Firmware updates are needed to address this widespread…

    Read More

  • Targeted PyPi Package Steals Google Cloud Credentials from macOS Devs

    July 26, 2024 at 04:55PM Researchers discovered a Python package called “lr-utils-lib” on PyPi, designed to target specific macOS machines and steal Google Cloud Platform credentials. The package conceals malicious code in its setup, posing as a legitimate package, and uses social engineering tactics. The campaign is unique due to its highly targeted nature, posing…

    Read More

  • CrowdStrike Outage Losses Estimated at a Staggering $5.4B

    July 26, 2024 at 04:47PM The CrowdStrike Falcon outage has led to estimated $5.4 billion in losses for Fortune 500 companies, with healthcare and banking being the most impacted financially. The transportation and airlines sector experienced 100% impact, with estimated $0.86 billion in losses. The report suggests focusing on mapping, managing, and assessing cloud-based service…

    Read More

  • Crypto exchange Gemini discloses third-party data breach

    July 26, 2024 at 03:37PM Cryptocurrency exchange Gemini experienced a data breach due to a cyberattack at its ACH service provider. A third-party breached the system, affecting customers’ banking information, including full names, bank account numbers, and routing numbers used for ACH fund transfers. The incident has been contained, and an investigation is ongoing. Recipients…

    Read More