December 2019

Data Leak Exposes 267 Million Facebook Users

Phil Muncaster

https://www.infosecurity-magazine.com/news/data-leak-exposes-267-million/

Excerpt:

“A database of 267 million Facebook user IDs, phone numbers, and names was left exposed online for a fortnight thanks to another cloud misconfiguration, according to researchers.”


Oil and gas industry risks escalate, cybersecurity should be prioritized

https://www.helpnetsecurity.com/2019/12/16/oil-gas-industry-cybersecurity/

Excerpt:

“The oil and gas industry and its supply chain face increased cybersecurity risks from advanced threat groups and others as they continue to build out digitally connected infrastructure, Trend Micro reveals.”


How to identify malware on your phone with these 7 signs

Uzair Amir

https://www.hackread.com/how-to-identify-malware-on-phone/

Excerpt:

“Malware and spyware are two security issues most commonly associated with desktop computers. While it is true that computers are prone to become infected with malware, it is important not to overlook the fact that mobile devices can also be affected. When a smartphone is infected with malware, it can cause several problems, including allowing hackers to steal private information from the victim.”


ISA warns of cyber attacks on PoS systems of fuel dispenser merchants

Pierluigi Paganini

https://securityaffairs.co/wordpress/95061/cyber-crime/pos-fuel-dispenser-merchants-attack.html

Excerpt:

“VISA is warning of ongoing targeted cyber attacks conducted by crooks on point-of-sale (POS) systems of North American fuel dispenser merchants.”


More than 460,000 payment card details offered for sale on a black market

Pierluigi Paganini

https://securityaffairs.co/wordpress/94944/cyber-crime/payment-card-details-black-markets.html

Excerpt:

“More than 455,000 Turkish payment card details are available for sale on a popular forum”


Ryuk ransomware contains a bug causing data loss for some victims

Catalin Cimpanu

https://www.zdnet.com/article/ryuk-ransomware-contains-a-bug-causing-data-loss-for-some-victims/

Excerpt:

“Antivirus maker Emsisoft said it found a bug in the decrypter app of the Ryuk ransomware. This is the app the Ryuk gang provides to victims to recover their files, after victims paid the ransom.”


Metro Atlanta city experiences data breach, FBI investigating

Jason Braverman

https://www.11alive.com/article/news/local/city-of-newnan-experiences-data-breach/85-a76aa042-9758-4403-aad9-beba3976f401

Excerpt:

“The City of Newnan recently experienced a data breach where an "unauthorized individual" was in possession of electronic files containing data maintained by the city, including personal information, the city told 11Alive.”


City of Pensacola hit by a cyberattack few days after military base shooting

Pierluigi Paganini

https://securityaffairs.co/wordpress/94889/hacking/city-pensacola-cyberattack.html

Excerpt:

“The city of Pensacola has been hit by a cyber attack over the weekend, the incident took place around 1:30 a.m. on Saturday. City IT staff has been working to restore the network, but some services are still down.”


Top 5 cybersecurity predictions for 2020

Liron Barak

https://www.helpnetsecurity.com/2019/12/09/cybersecurity-predictions-2020/

Excerpt:

“When it comes to cybersecurity, staying ahead of threats – rather than reacting to them – is critical. In a constantly evolving threat landscape, plugging holes – or designing one’s security posture for yesterday’s threats – just isn’t enough anymore. A new year is almost upon us, and with it comes new threats and trends, specifically in the world of cybersecurity. We’ve put together our top 5 cybersecurity predictions for 2020, with a view to helping ensure you stay ahead of threats.”


Compromised passwords used on 44 million Microsoft accounts

Zeljka Zorz

https://www.helpnetsecurity.com/2019/12/09/compromised-passwords-microsoft-accounts/

Excerpt:

“44 million Microsoft Azure AD and Microsoft Services accounts were vulnerable to account hijacking due to use of compromised passwords, Microsoft has shared.”


APT28 Attacks Evolution

https://marcoramilli.com/2019/12/05/apt28-attacks-evolution/

Excerpt:

“APT28 is a well known Russian cyber espionage group attributed, with a medium level of confidence, to Russian military intelligence agency GRU (by CrowdStrike). It is also known as Sofacy Group (by Kaspersky) or STRONTIUM (by Microsoft) and it’s used to target Aereospace, Defence, Governmente Agencies, International Organizations and Media.”


Top gadgets for the security and privacy conscious (or the super paranoid!)

Adrian Kingsley-Hughes

https://www.zdnet.com/article/top-gadgets-for-the-security-and-privacy-conscious-or-the-super-paranoid/

Excerpt:

“Paranoid that "they" are watching your every move? Or maybe you're just security-conscious and like to maintain a high level of privacy? No matter what your reason for being careful with your cyber life, here are gadgets to help you stay safe and secure.”


CyrusOne, one of the major US data center provider, hit by ransomware attack

Pierluigi Paganini

https://securityaffairs.co/wordpress/94750/cyber-crime/cyrusone-ransomware-attack.html

Excerpt:

“Ransomware attacks continue to threaten organizations worldwide, CyrusOne, one of the biggest data center providers in the US, is facing with an infection.”


FBI warns about snoopy smart TVs spying on you

Steven J. Vaughan-Nichols

https://www.zdnet.com/article/fbi-warns-about-snoopy-smart-tvs-spying-on-you/

Excerpt:

“A recent FBI report warned smart TV users that hackers can also take control of your unsecured TV. "At the low end of the risk spectrum, they can change channels, play with the volume, and show your kids inappropriate videos. In a worst-case scenario, they can turn on your bedroom TV's camera and microphone and silently cyberstalk you," explained the FBI.”


European cybersecurity market to exceed $65 billion by 2025

https://www.helpnetsecurity.com/2019/12/03/european-cybersecurity-market/

Excerpt:

“The European cybersecurity market is determined to exceed $65 billion by 2025, according to Graphical Research. This growth is attributed to strong government initiatives to promote data safety and hefty investments in cybersecurity solutions.”


Crooks are exploiting unpatched Android flaw to drain users’ bank accounts

Zeljka Zorz

https://www.helpnetsecurity.com/2019/12/03/strandhogg-vulnerability/

Excerpt:

“Hackers are actively exploiting StrandHogg, a newly revealed Android vulnerability, to steal users’ mobile banking credentials and empty their accounts, a Norwegian app security company has warned.”


Hacking robotic vehicles is easier than you might think

https://www.helpnetsecurity.com/2019/12/02/hacking-robotic-vehicles/

Excerpt:

“Robotic vehicles like Amazon delivery drones or Mars rovers can be hacked more easily than people may think, a research from the University of British Columbia suggests.”


5G IoT security: Opportunity comes with risks

Zeljka Zorz

https://www.helpnetsecurity.com/2019/12/02/5g-iot-security/

Excerpt:

“Slowly but surely, 5G digital cellular networks are being set up around the world.”


Data of 21 million Mixcloud users available for sale on the dark web

Pierluigi Paganini

https://securityaffairs.co/wordpress/94581/data-breach/mixcloud-data-breach.html

Excerpt:

“On Friday, the hacker that goes online with the handle “A_W_S” contacted multiple media outlets to disclose the hack, it also provided data samples as proof of the data breach.”