Recent Security News

  • Beirut Airport Cyberattack Targets Hezbollah

    January 8, 2024 at 01:22PM Hackers defaced flight information displays at Rafic Hariri International Airport, Lebanon, criticizing Hezbollah and Iran. The messages also disrupted the baggage handling system. The Christian Lebanese group, Soldiers of God, denied any involvement. Security experts noted the vulnerability of flight display systems to hacking. A cybersecurity firm highlighted potential chaos…

    Read More

  • Twilio will ditch its Authy desktop 2FA app in August, goes mobile only

    January 8, 2024 at 01:11PM The Authy desktop apps for Windows, macOS, and Linux will be discontinued in August 2024. Users are advised to switch to the mobile version for two-factor authentication. Twilio, the vendor, plans to focus on higher demand areas. Current users should switch to iOS or Google apps. Other options include 1Password,…

    Read More

  • Apache OFBiz zero-day pummeled by exploit attempts after disclosure

    January 8, 2024 at 12:50PM SonicWall has observed thousands of daily exploitation attempts targeting the Apache OFBiz zero-day vulnerability. The severity is near-maximum, with a 9.8 rating, allowing attackers to bypass authentication and execute arbitrary code. They urge immediate upgrading to OFBiz version 18.12.11 to address this and another equally serious vulnerability. Apache OFBiz has…

    Read More

  • US mortgage lender loanDepot confirms ransomware attack

    January 8, 2024 at 12:41PM Leading U.S. mortgage lender loanDepot confirmed a ransomware attack that encrypted data, affecting customer payment portals and prompting system shutdowns. An investigation is underway with external experts’ assistance, including notifications to law enforcement. Although the impact is being assessed, concerns arise over potential data exposure. Previously, loanDepot reported a 2022…

    Read More

  • Securing helpdesks from hackers: What we can learn from the MGM breach

    January 8, 2024 at 10:51AM Organizations must rethink helpdesk security in light of the MGM Resorts hack. Attackers used social engineering to impersonate an employee, bypassed verification systems, and executed a ransomware attack. Helpdesk training, multi-factor authentication, and secure communication channels are crucial for preventing such incidents. Specops Secure Service Desk offers advanced employee verification.…

    Read More