Recent Comments

    Blogroll

    Search

    Archive for Security Breeches

    Security Mailer (2021 #16)

    April 25th, 2021 by

    Security Mailer Volume 21 Number 16

    • Mozilla updates
      • Firefox
      • Firefox ESR
      • Thunderbird,
    • Google
      • Releases Chrome 90
      • Announces new release cycle
    • Cisco Security Advisories
    • Linux
      • Mint has new update notifications
      • Synopsis
      • Updates and patches
    • Microsoft Security Update for EDGE
    • General Security reviews last week
    • Wireshark updates

    Posted in Newsletters, Patches, Security Breeches, Updates | No Comments »

    Ever use ParkMobile app? You may have been compromised!

    April 13th, 2021 by

    ParkMobile Breach Exposes License Plate Data, Mobile Numbers of 21M Users

    “Someone is selling account information for 21 million customers of ParkMobile, a mobile parking app that’s popular in North America. The stolen data includes customer email addresses, dates of birth, phone numbers, license plate numbers, hashed passwords and mailing addresses.”

    Posted in Malware, Newsletters, Security Breeches | No Comments »

    Security Mailer (2021 #13)

    April 5th, 2021 by

    Security mailer Volume 21 Number 13

    • Cisco security advisories
    • Open Source
      • Apache
      • Python
      • Samba
    • Linux updates & patches
    • Microsoft Security Updates
    • General Security reviews last week
    • Exchange Server requirement from CISA to run Safety Scanner

    Posted in Newsletters, Patches, Security Breeches, Updates | No Comments »

    Your Exchange Server Hacked? Not by Brian Krebs!!

    March 29th, 2021 by

    No, I Did Not Hack Your MS Exchange Server

    “New data suggests someone has compromised more than 21,000 Microsoft Exchange Server email systems worldwide and infected them with malware that invokes both KrebsOnSecurity and Yours Truly by name.”

    Posted in Identity Theft, Malware, Security Breeches | No Comments »

    New Chrome Zero Day Flaw

    March 16th, 2021 by

    Google Warns Mac, Windows Users of Chrome Zero-Day Flaw

    “The use-after-free vulnerability is the third Google Chrome zero-day flaw to be disclosed in three months.

    Google is hurrying out a fix for a vulnerability in its Chrome browser that’s under active attack – its third zero-day flaw so far this year. If exploited, the flaw could allow remote code-execution and denial-of-service attacks on affected systems.

    The vulnerability exists in Blink, the browser engine for Chrome developed as part of the Chromium project. Browser engines convert HTML documents and other web page resources into the visual representations viewable to end users.”

    Posted in Identity Theft, Malware, Patches, Security Breeches | No Comments »

    Multiple Security Updates Released for Exchange Server

    March 6th, 2021 by

    Multiple Security Updates Released for Exchange Server – updated March 5, 2021
    (Updated March 5, 2021)

    “Today we are releasing several security updates for Microsoft Exchange Server to address vulnerabilities that have been used in limited targeted attacks. Due to the critical nature of these vulnerabilities, we recommend that customers apply the updates to affected systems immediately to protect against these exploits and to prevent future abuse across the ecosystem. “

    Posted in Identity Theft, Malware, Security Breeches | No Comments »

    3.2 billion unique pairs of cleartext emails and passwords have just been leaked

    February 8th, 2021 by

    Largest compilation of emails and passwords leaked for free on public forum

    “More than 3.2 billion unique pairs of cleartext emails and passwords have just been leaked on a popular hacking forum, aggregating past leaks from Netflix, LinkedIn, Exploit.in, Bitcoin and more. This leak is comparable to the Breach Compilation of 2017, in which 1.4 billion credentials were leaked.

    However, the current breach, known as “Compilation of Many Breaches” (COMB), contains more than double the unique email and password pairs. The data is currently archived and put in an encrypted, password-protected container.”

    Posted in Identity Theft, Security Breeches | No Comments »

    Wind River Security Incident

    February 3rd, 2021 by

    Wind River Security Incident Affects SSNs, Passport Numbers

    “Wind River Systems, which develops embedded system software, on Friday warned of a “security incident” that had exposed personnel records.

    One or more files were downloaded from the company’s network on or around September 29, it said. Affected data included information maintained within the company’s personnel records – including critical data like Social-Security numbers, driver’s license numbers and passport numbers.

    “We have been working with law enforcement and outside experts to investigate a security incident that occurred toward the end of September,” according to the security-incident notice, filed with California’s Attorney General as part of the state’s data-breach notification requirements. “We have no indication that any information in these files has been misused.””

    Posted in Identity Theft, Security Breeches | No Comments »

    SonicWall Breach

    January 28th, 2021 by

    SonicWall Breach Stems from ‘Probable’ Zero-Days

    Posted January 25, 2021:

    “SonicWall is investigating “probable” zero-day flaws in its remote access security products that have been targeted by “highly-sophisticated” attackers. The company says it is investigating the attack and will update customers within 24 hours.”

    Posted in Identity Theft, Malware, Security Breeches | No Comments »

    IObit forums hacked

    January 21st, 2021 by

    IObit forums hacked to spread ransomware to its members

    “Windows utility developer IObit was hacked over the weekend to perform a widespread attack to distribute the strange DeroHE ransomware to its forum members.”

    Posted in Security Breeches | No Comments »

    « Previous Entries