PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Insurance Firm CNA Financial Reportedly Paid Hackers $40 Million in Ransom

vendredi 21 mai 2021 à 17:16
U.S. insurance giant CNA Financial reportedly paid $40 million to a ransomware gang to recover access to its systems following an attack in March, making it one the most expensive ransoms paid to date. The development was first reported by Bloomberg, citing "people with knowledge of the attack." The adversary that staged the intrusion is said to have allegedly demanded $60 million a week after

Microsoft Warns of Data Stealing Malware That Pretends to Be Ransomware

vendredi 21 mai 2021 à 10:46
Microsoft on Thursday warned of a "massive email campaign" that's pushing a Java-based STRRAT malware to steal confidential data from infected systems while disguising itself as a ransomware infection. "This RAT is infamous for its ransomware-like behavior of appending the file name extension .crimson to files without actually encrypting them," the Microsoft Security Intelligence team said in a

23 Android Apps Expose Over 100,000,000 Users' Personal Data

jeudi 20 mai 2021 à 12:42
Misconfigurations in multiple Android apps leaked sensitive data of more than 100 million users, potentially making them a lucrative target for malicious actors. "By not following best-practices when configuring and integrating third-party cloud-services into applications, millions of users' private data was exposed," Check Point researchers said in an analysis published today and shared with

Is Single Sign-On Enough to Secure Your SaaS Applications?

jeudi 20 mai 2021 à 12:20
If there's one thing all great SaaS platforms share in common, it's their focus on simplifying the lives of their end-users. Removing friction for users in a safe way is the mission of single sign-on (SSO) providers. With SSO at the helm, users don't have to remember separate passwords for each app or hide the digital copies of the credentials in plain sight. SSO also frees up the IT's bandwidth

Watering Hole Attack Was Used to Target Florida Water Utilities

jeudi 20 mai 2021 à 11:34
An investigation undertaken in the aftermath of the Oldsmar water plant hack earlier this year has revealed that an infrastructure contractor in the U.S. state of Florida hosted malicious code on its website in what's known as a watering hole attack. "This malicious code seemingly targeted water utilities, particularly in Florida, and more importantly, was visited by a browser from the city of