Private photos leaked by PhotoSquared’s unsecured cloud storage

Credit to Author: Lisa Vaas| Date: Wed, 19 Feb 2020 11:49:20 +0000

With no password required and no encryption in place, a burglar or ID thief could have seen your photos, your address and more.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/v6L-VwD68-Y” height=”1″ width=”1″ alt=””/>

Read more

WordPress plugin hole could have allowed attackers to wipe websites

Credit to Author: Danny Bradbury| Date: Wed, 19 Feb 2020 11:21:03 +0000

A WordPress plugin with over 100,000 active installations had a bug that could have allowed unauthorised attackers to wipe its users’ blogs clean, it emerged this week.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/GCOxf6ngpvk” height=”1″ width=”1″ alt=””/>

Read more

Council returns to using pen and paper after cyberattack

Credit to Author: John E Dunn| Date: Tue, 18 Feb 2020 11:44:46 +0000

Ten days after a suspected ransomware attack, residents of the English borough of Redcar and Cleveland must be starting to wonder when their Council’s IT systems will return.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/OeNzmMzg6c4″ height=”1″ width=”1″ alt=””/>

Read more

Sensitive plastic surgery images exposed online

Credit to Author: Danny Bradbury| Date: Tue, 18 Feb 2020 11:04:56 +0000

Researchers at VPN advisory company vpnMentor have found yet another online data exposure caused by a misconfigured cloud database.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/3bHx9OL42rQ” height=”1″ width=”1″ alt=””/>

Read more

Google pulls 500 malicious Chrome extensions after researcher tip-off

Credit to Author: John E Dunn| Date: Mon, 17 Feb 2020 12:07:48 +0000

Google has abruptly pulled over 500 Chrome extensions from its Web Store that researchers discovered were stealing browsing data and executing click fraud and malvertising.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/izP6lapUPOU” height=”1″ width=”1″ alt=””/>

Read more

Cookie-nabbing app could have served users side helping of XSS

Credit to Author: Danny Bradbury| Date: Fri, 14 Feb 2020 12:29:39 +0000

A popular GDPR compliance WordPress plugin vendor has patched a flaw that rendered both site visitors and admins vulnerable to XSS attacks.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/uCTRH0KiVPg” height=”1″ width=”1″ alt=””/>

Read more

Corp.com is up for sale – check your Active Directory settings!

Credit to Author: Danny Bradbury| Date: Fri, 14 Feb 2020 10:51:44 +0000

An old, dormant domain is going on sale – and the results could be catastrophic for enterprises with common Active Directory misconfigurations.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/eNE2lUuM6GI” height=”1″ width=”1″ alt=””/>

Read more

Dell fixes privilege elevation bug in support software

Credit to Author: Danny Bradbury| Date: Thu, 13 Feb 2020 13:43:39 +0000

Users of Dell SupportAssist should patch their software immediately to fix a software bug that could lead to arbitrary code execution.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/qWZIGKgr3WU” height=”1″ width=”1″ alt=””/>

Read more

FBI: Cybercrime tore a $3.5b hole in victims’ pockets last year

Credit to Author: Lisa Vaas| Date: Thu, 13 Feb 2020 12:45:23 +0000

The FBI’s Internet Crime Report shows that business email comprise is the biggest money-maker for cybercriminals.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/z_YNbnD3_LU” height=”1″ width=”1″ alt=””/>

Read more

US charges four Chinese military members with Equifax hack

Credit to Author: Lisa Vaas| Date: Wed, 12 Feb 2020 11:48:41 +0000

The indictment suggests the hack was part of a series of major data thefts organized by Chinese military and intelligence agencies.<img src=”http://feeds.feedburner.com/~r/nakedsecurity/~4/2euIheG1QVA” height=”1″ width=”1″ alt=””/>

Read more