CVE-2021-34392
Trusty TLK contains a vulnerability in the NVIDIA TLK kernel where an integer overflow in the tz_map_shared_mem function can bypass boundary checks, which might lead to denial of service.
Cybercrime , Fraud Management & Cybercrime , Fraud Risk Management Darknet Market Only Accepts Monero, Promotes Malware and Botnets, Bans Ransomware Mathew J. Schwartz (euroinfosec) • August 12, 2021 The new AlphaBay darknet market’s homepage (Source: Elliptic) The notorious AlphaBay darknet marketplace appears to be getting rebooted. See Also: Live Webinar | Password…
3rd Party Risk Management , Endpoint Security , Governance & Risk Management KPN Disputes Reported Surveillance Risk to Users, Who Included Dutch Prime Minister Mathew J. Schwartz (euroinfosec) • April 20, 2021 KPN Telecom offices in Amersfoort, the Netherlands (Photo: Vysotsky via Wikimedia Commons) A bombshell news report suggests that Dutch mobile network…
Following the release of a security-focused point update to iOS in July, Apple on Monday ceased signing code for iOS 14.7. Apple pushed out iOS 14.7.1 just over a week ago to patch a security vulnerability that may have been exploited in the wild. The release also included a fix for a bug that prevented…
On August 16, 2021, the United States Securities and Exchange Commission (SEC) issued an Order announcing that it had imposed a civil penalty of $1 million on Pearson plc, a London-based multinational educational publishing and services company, for misleading investors about a 2018 data breach that involved the theft of millions of student records. Compromised…
In an apparent industry first, the global insurance company AXA said Thursday it will stop writing cyber-insurance policies in France that reimburse customers for extortion payments made to ransomware criminals. AXA, among Europe’s top five insurers, said it was suspending the option in response to concerns aired by French justice and cybersecurity officials during a…
DES MOINES, Iowa (AP) — Those entrusted with securing the nation’s voting systems must remain nonpartisan as a myriad of complex and growing risks continue to threaten U.S. elections, one of the nation’s top cybersecurity officials said Saturday. Jen Easterly, director of the Cybersecurity and Infrastructure Security Agency, said in an interview with The Associated…