Bitwarden’s new auto-fill option adds phishing resistance

February 22, 2024 at 02:19PM Bitwarden introduces new inline auto-fill menu to prevent credential theft through malicious forms and iframes. Features include visible warning prompts, restricted auto-fill to trusted sites, password protection, and extensive third-party testing. Users can customize settings for enhanced security and user experience, keeping auto-fill menu on top, allowing keyboard navigation, and … Read more

Stop social engineering at the IT help desk

November 23, 2023 at 04:12AM MGM Resorts International recently fell victim to a costly ransomware attack. Hackers used social engineering tactics to convince an employee to reveal sensitive user credentials, enabling them to bypass cyber security defenses and launch the attack. Similar incidents have occurred, highlighting the challenge of verifying the identity of requesters for … Read more

APTs Swarm Zimbra Zero-Day to Steal Government Info Worldwide

November 16, 2023 at 11:52AM Four separate cyberattack groups have exploited a former zero-day vulnerability in the Zimbra Collaboration Suite (ZCS) to steal email data, user credentials, and authentication tokens from government organizations worldwide. The bug, which was patched on July 25, enabled the attackers to set up auto-forwarding rules to an attacker-controlled email address. … Read more