White House: Salt Typhoon hacked telcos in dozens of countries

December 4, 2024 at 06:05PM Chinese state hackers, identified as Salt Typhoon, have compromised telecommunications firms in multiple countries, including eight in the U.S., with possible breaches lasting one to two years. Although classified communications remain secure, federal agencies recommend using encrypted messaging to protect against future intrusions. CISA and FBI released guidance for enhanced … Read more

FTC scolds two data brokers for allegedly selling your location to the metre

December 3, 2024 at 09:37PM The FTC has settled with data brokers Gravy Analytics and Mobilewalla for selling sensitive location data without consent. Both companies will delete improperly obtained data and enhance privacy measures, as well as refrain from distributing information about visits to sensitive locations. This bipartisan ruling highlights ongoing privacy concerns among regulators. … Read more

BigID Releases Data Activity Monitoring to Extend DDR, Detect Malicious Actors, and Strengthen Data Security Posture

December 3, 2024 at 05:39PM BigID has launched Data Activity Monitoring, enhancing data security by proactively managing risks, identifying insider threats, and ensuring compliance. Unlike traditional tools, it tracks data access activity for improved decision-making and faster investigations. BigID continues to receive accolades for its innovative approaches in data security and compliance management. **Meeting Takeaways … Read more

FTC bans data brokers from selling Americans’ sensitive location data

December 3, 2024 at 11:08AM The FTC has banned data brokers Mobilewalla and Gravy Analytics from collecting and selling Americans’ sensitive location data, including visits to churches and healthcare facilities. They must erase historical data, establish sensitive location programs, and are prohibited from future sales of such data, following earlier actions against similar companies. ### … Read more

‘White FAANG’ Data Export Attack: A Gold Mine for PII Threats

December 3, 2024 at 08:39AM Researchers warn that the GDPR’s data portability regulations, while promoting privacy, pose significant risks. Users can now easily export sensitive data, making it vulnerable to hackers. The risk extends to companies, as compromised personal accounts can lead to cyberattacks. Employees must separate personal and professional online activities to enhance security. … Read more

8 Million Android Users Hit by SpyLoan Malware in Loan Apps on Google Play

December 2, 2024 at 05:45AM A report from McAfee Labs identifies over a dozen malicious Android apps on the Google Play Store, collectively downloaded over 8 million times, which contain SpyLoan malware. These apps deceive users into sharing sensitive information under the guise of providing quick loans, leading to financial exploitation and privacy violations. ### … Read more

SpyLoan Android malware on Google play installed 8 million times

November 30, 2024 at 02:01PM McAfee identified 15 malicious SpyLoan apps targeting users in South America, Southeast Asia, and Africa, accumulating over 8 million downloads on Google Play. Deceptively marketed as loan services, these apps extort sensitive data and harass users post-installation. Despite removal efforts, SpyLoan risks persist, highlighting ongoing security challenges for app stores. … Read more

T-Mobile US takes a victory lap after stopping cyberattacks: ‘Other providers may be seeing different outcomes’

November 27, 2024 at 04:05PM Chinese cyber-espionage group “Salt Typhoon” allegedly compromised a wireline provider’s network to access T-Mobile US systems. T-Mobile thwarted these attempts, ensuring no sensitive customer data was accessed. The company, which has faced breaches previously, is seeing positive results from enhanced cybersecurity measures following a significant investment. **Meeting Notes Takeaways:** 1. … Read more

Microsoft says it’s not using your Word, Excel data for AI training

November 27, 2024 at 01:57PM Microsoft has denied allegations that it collects user data from Microsoft 365 applications, such as Word, Excel, and PowerPoint, for training its artificial intelligence models. **Meeting Takeaways:** – Microsoft has refuted allegations regarding the use of data from Microsoft 365 applications (Word, Excel, PowerPoint) for training its AI models. – … Read more

Get 50% off Malwarebytes during Black Friday 2024

November 26, 2024 at 05:21PM Malwarebytes’ Black Friday 2024 deals offer 50% off annual subscriptions for its anti-malware, VPN, and Personal Data Remover services. Discounts apply until December 8th, with products including Malwarebytes Standard, Plus, and Ultimate. New offerings include Identity Protection and Personal Data Remover. Visit their site for more details. ### Meeting Notes … Read more