Posts

Even with cloud providers implementing defenses, glaring weaknesses remain

Image
A new report from RedLock offers a look at the threats and vulnerabilities that continue to mount in public cloud computing environments. Account compromises keep rising Poor user and API access hygiene, combined with ineffective visibility and user activity monitoring, are causing organizations to be more vulnerable to breaches. For example, 73% of organizations allow the root user account to be used to perform activities – behavior that goes against security best practices. Furthermore, 16% of organizations have user accounts that have potentially been compromised. The cryptocurrency effect In many hacks, the goal is to steal data; now, the thieves also hijack compute resources in order to mine cryptocurrencies . The research reveals that 8% of organizations suffer from this strain of criminality, which mostly goes unnoticed because of ineffective network monitoring. Still a long way from compliance General Data Protection Regulation ( GDPR ) goes int...

Five smart TVs tested for security, privacy issues

Image
As more and more smart TVs are sold worldwide, consumers should be aware of the risks associated with this technology. Consumer Union, a US-based nonprofit organization dedicated to unbiased product testing, has conducted a privacy and security evaluation of five smart TVs from the most widely sold TV brands in the US: Samsung UN49MU8000, running the company’s Tizen OS LG 49UJ7700, which uses LG’s webOS TCL 55P605, which uses the Roku streaming platform Sony XBR-49X800E, running Google’s Android TV OS Vizio P55-E1 SmartCast TV, which uses Google’s Chromecast platform. Security issues The testers found that remote attackers can take control of the Samsung and TCL TVs by exploiting flaws in the setups, allowing them to change channels, change volume levels, open disturbing content, and so on. Samsung smart TVs attempt to ensure that only authorized applications can control the television, but the mechanism they use to ensure that application...

Is ICEMAN behind the malware-based attack on Crystal Finance Millennium؟

Image
Exclusive – The Iceman gang taking responsibility for infecting Crystal Finance Millennium , the journalist  Marc Miller  interviewd one of the members of the crew. Iceman gang member confirms that they are behind the introduction and spreading of malware that infected the systems at  Crystal Finance Millennium . In Septemeber security experts at TrendMicro reported that the Ukraine based Account Firm, Crystal Finance Millennium (CFM), has been hacked and is found to be distributing malware. The incident caused the firm to take down its website to stop spreading the threat. Crystal Finance Millennium attack (Source Trend Micro) Marc Miller had a chance to speak to one of the gang members on XMMP and he confirmed that the Iceman group is behind this attack. They started with a simple web attack (SQLI which lead to web shell upload, no privilege escalation was needed) in order to gain access to the web servers o...

Old Bitcoin transactions can come back to haunt you

Image
A group of researchers from Qatar University and Hamad Bin Khalifa University have demonstrated how years-old Bitcoin transactions can be used to retroactively deanonymize users of Tor hidden services. It seems that Bitcoin users’ past transactions – and especially if they used the cryptocurrency for illegal deals on the dark web and didn’t think to launder their payments – may come back to haunt them. Researchers’ findings “We crawled 1.5K hidden service pages and created a dataset of 88 Bitcoin addresses operated by those hidden services, including two ransomware addresses. We also crawled online social networks for public Bitcoin addresses, namely, Twitter and the BitcoinTalk forum. Out of 5B tweets and 1M forum pages, we created two datasets of 4.1K and 41K Bitcoin addresses, respectively. Each address in these user datasets is associated with an online identity and its corresponding public profile information,” the researchers explained . ...

!Security in the enterprise: Things are looking up

Image
Cybersecurity is quickly becoming the number one business priority, says identity and access management company Okta. Based on the results of an analysis of authentication and verification events made through the company’s enterprise offerings between November 1, 2016 to October 31, 2017, security tools by Jamf, KnowBe4, DigiCert, Cisco, Mimecast, Sophos, and CloudFlare all ranked in the top 15 fastest growing apps for the first time. “Jamf, which provides software for managing and securing Apple devices, is a notable newcomer to the list and the fastest growing app in our network with 389% year-over-year growth. Security awareness training company, KnowBe4 grew 290% in the past year, indicating organizations’ increased focus on training employees around security best practices and ways to combat social engineering attacks,” the company noted. These results definitely point to companies having increased security spending .   Identity attacks originate ...

Big predictions for sensors in the global security and surveillance market

Image
The Internet of Things (IoT) is bringing about a new era of connectivity in the digital age, connecting critical business sectors through a network of secure data flow, analytics, and management. IoT is also bringing numerous opportunities for sensor participants through security technologies required for remote services and enhanced accessibility of devices. The total sensors market in security and surveillance applications was worth $6,267.9 million in 2016, with image sensors holding the largest market share at 23 percent. The market is expected to reach $12,012.1 million by 2023.   Who dominates the market North America and EMEA dominate the market, driven by aging infrastructures, but APAC is the fastest growing due to rapid infrastructure development, strong economic growth, and favorable government regulations. Challenges for sensor manufacturers and suppliers include...

Apple updates iOS security guide

Image
Apple has published an updated version of its iOS security guide , in which it details features introduced in iOS 11.2 (released on December 4, 2017) and iOS 11.1 (October 31, 2017). The company first released the first version of the document in June 2012, and has been updating it periodically ever since. New information in the iOS security guide This latest iteration contains more and updated details about Apple Pay Cash, security certifications and programs, Touch ID and Face ID, Shared Notes, CloudKit end-to-end encryption, TLS, Apple Pay, Paying with Apple Pay on the web, Siri Suggestions, and the Shared iPad feature. For example, the updated document notes that, as of iOS 11 and macOS High Sierra, SHA-1 certificates are no longer allowed for TLS connections unless trusted by the user and certificates with RSA keys shorter than 2048 bits are disallowed. It also explains, in detail, about the security of Apple Pay Cash, a peer-to-peer ...