Posts

VirusTotal Releases Ransomware Report Based on Analysis of 80 Million Samples

Image
As many as 130 different ransomware families have been found to be active in 2020 and the first half of 2021, with Israel, South Korea, Vietnam, China, Singapore, India, Kazakhstan, Philippines, Iran, and the U.K. emerging as the most affected territories, a comprehensive analysis of 80 million ransomware-related samples has revealed. Google's cybersecurity arm VirusTotal attributed a from The Hacker News https://ift.tt/3mNKhoa via IFTTT

Experts Warn of Unprotected Prometheus Endpoints Exposing Sensitive Information

Image
A large-scale unauthenticated scraping of publicly available and non-secured endpoints from older versions of Prometheus event monitoring and alerting solution could be leveraged to inadvertently leak sensitive information, according to the latest research. "Due to the fact that authentication and encryption support is relatively new, many organizations that use Prometheus haven't yet enabled from The Hacker News https://ift.tt/2YOciDA via IFTTT

The Ultimate SaaS Security Posture Management (SSPM) Checklist

Image
Cloud security is the umbrella that holds within it: IaaS, PaaS and SaaS. Gartner created the SaaS Security Posture Management (SSPM) category for solutions that continuously assess security risk and manage the SaaS applications’ security posture. With enterprises having 1,000 or more employees relying on dozens to hundreds of apps, the need for deep visibility and remediation for SaaS security from The Hacker News https://ift.tt/3p66Vea via IFTTT

Apple silently fixes iOS zero-day, asks bug reporter to keep quiet

Apple silently fixes iOS zero-day, asks bug reporter to keep quiet 567 by DemiGuru | 208 comments on Hacker News.

Android phones are sending significant amount of user data with no opt-out [pdf]

Android phones are sending significant amount of user data with no opt-out [pdf] 552 by giuliomagnifico | 301 comments on Hacker News.

Critical Flaw in OpenSea Could Have Let Hackers Steal Cryptocurrency From Wallets

Image
A now-patched critical vulnerability in OpenSea, the world's largest non-fungible token (NFT) marketplace, could've been abused by malicious actors to drain cryptocurrency funds from a victim by sending a specially-crafted token, opening a new attack vector for exploitation. The findings come from cybersecurity firm Check Point Research, which began an investigation into the platform following from The Hacker News https://ift.tt/3BDqw9d via IFTTT

[eBook] The Guide for Reducing SaaS Applications Risk for Lean IT Security Teams

Image
The Software-as-a-service (SaaS) industry has gone from novelty to an integral part of today’s business world in just a few years. While the benefits to most organizations are clear – more efficiency, greater productivity, and accessibility – the risks that the SaaS model poses are starting to become visible. It’s not an overstatement to say that most companies today run on SaaS. This poses an from The Hacker News https://ift.tt/3DwQueS via IFTTT