UPS warns customers of phishing attempts after data accessed

Categories: Personal

Tags: UPS

Tags: delivery

Tags: scam

Tags: phish

Tags: phishing

Tags: smishing

Tags: SMS

Tags: text

Tags: fake

Tags: data

UPS is warning Canadian customers of potential phishing attempts after data was left accessible via look-up tool.

(Read more…)

The post UPS warns customers of phishing attempts after data accessed appeared first on Malwarebytes Labs.

Read more

Update now! Apple fixes three actively exploited vulnerabilities

Categories: Apple

Categories: Exploits and vulnerabilities

Categories: News

Tags: Apple

Tags: kernel webkit

Tags: CVE-2023-32434

Tags: CVE-2023-32435

Tags: CVE-2023-32439

Tags: type confusion

Tags: integer overflow

Tags: operation triangulation

Apple has released security updates for several products to address a set of flaws it said were being actively exploited.

(Read more…)

The post Update now! Apple fixes three actively exploited vulnerabilities appeared first on Malwarebytes Labs.

Read more

Reducing your attack surface is more effective than playing patch-a-mole

Categories: News

Tags: CISA

Tags: BOD 23-02

Tags: Internet exposed

Tags: management interfaces

Tags: vulnerabilities

Tags: CVE-2023-27992

Tags: CVE-2023-20887

There is a lot to be said for the strategy of shielding management interfaces from public internet access

(Read more…)

The post Reducing your attack surface is more effective than playing patch-a-mole appeared first on Malwarebytes Labs.

Read more

How to Write a Cybersecurity Policy for Generative AI

Credit to Author: Greg Young| Date: Thu, 22 Jun 2023 00:00:00 +0000

Just months after hitting the scene, generative AI already seems like it will become a permanent addition to the enterprise IT toolbox. For CISOs, the pressure is on to roll out AI security policies and technologies that can mitigate very real and present risks.

Read more

SMS Phishers Harvested Phone Numbers, Shipment Data from UPS Tracking Tool

Credit to Author: BrianKrebs| Date: Thu, 22 Jun 2023 19:11:33 +0000

The United Parcel Service (UPS) says fraudsters have been harvesting phone numbers and other information from its online shipment tracking tool in Canada to send highly targeted SMS phishing (a.k.a. “smishing”) messages that spoofed UPS and other top brands. The missives addressed recipients by name, included details about recent orders, and warned that those orders wouldn’t be shipped unless the customer paid an added delivery fee.

Read more