Recent Security News

  • Over 900k Impacted by Data Breach at Defunct Boston Ambulance Service

    January 3, 2024 at 10:39AM Over 900,000 individuals are being notified by Transformative Healthcare that their personal information was stolen in a data breach at defunct subsidiary Fallon Ambulance Service. The breach, detected four months after Fallon ceased operations, exposed various personal details. Although no evidence of misuse was found, Transformative is providing free identity…

    Read More

  • Several Infostealers Using Persistent Cookies to Hijack Google Accounts

    January 3, 2024 at 10:39AM Information stealers are exploiting a Google authentication vulnerability to regenerate cookies and maintain access to accounts, despite password changes. The exploit, involving a MultiLogin endpoint and Chrome tokens, allows attackers to gain persistent access to Google services. The technique has been adopted by multiple infostealers, raising concerns about widespread cyberattacks.…

    Read More

  • Hacker Conversations: Runa Sandvik

    January 3, 2024 at 10:39AM Cybersecurity researcher Runa Sandvik, known for her ‘situative’ approach, emphasizes the need for contextual understanding in cybersecurity. She believes curiosity, stubbornness, and an interest in the topic are vital for aspiring researchers. Sandvik discusses revenue sources for researchers, the ethics of bug bounties, responsible disclosure, and its legal implications. She…

    Read More

  • Nearly 11 million SSH servers vulnerable to new Terrapin attacks

    January 3, 2024 at 10:10AM Nearly 11 million internet-exposed SSH servers are vulnerable to the Terrapin attack, which manipulates sequence numbers during the handshake process to compromise the integrity of SSH channels. This attack affects both clients and servers and was developed by academic researchers from Ruhr University Bochum in Germany. The significance of this…

    Read More

  • 5 Steps for Preventing and Mitigating Corporate Espionage

    January 3, 2024 at 10:08AM The rise in corporate espionage underscores the need to safeguard sensitive corporate information. Implementing five key strategies can help prevent and mitigate such risks: insist on nondisclosure agreements, know and control trade secrets, perform due diligence, train employees, and promptly investigate suspected activity. This multifaceted approach enhances protection against corporate…

    Read More