Data-Wiping Attacks Hit Outdated Western Digital Devices

Data-Wiping Attacks Hit Outdated Western Digital Devices

Breach Notification , Cybercrime , Endpoint Security Manufacturer Stopped Supporting Targeted Network-Attached Storage Devices in 2015 Mathew J. Schwartz (euroinfosec) • June 28, 2021     Screen grab posted by the owner of a LAN-connected Western Digital My Book Live after it was apparently hit by a data-wiping attack that also changed the device’s admin…

LinkedIn denies data breach exposing data of over 700 million users

LinkedIn denies data breach exposing data of over 700 million users

LinkedIn has denied allegations of data breach after LinkedIn data of over 700 million users was reported exposed on the dark web. According to a report by Restore Privacy, an unknown hacker has obtained a new dataset of over 700 million LinkedIn users containing details including phone numbers, physical addresses, geolocation data, and inferred salaries….

Microsoft admits it signed malicious Netfilter driver targeting gamers in China

Microsoft admits it signed malicious Netfilter driver targeting gamers in China

Microsoft is investigating an incident involving a driver signed by the company that turned out to be a malicious Windows rootkit distributed within gaming environment in China. The tech giant was alerted about the issue by G DATA Software security analyst Karsten Hahn, who said his company received a false-positive alert from a driver named…

HHS Defined Roles and Responsibilities, but Can Further Improve Collaboration

HHS Defined Roles and Responsibilities, but Can Further Improve Collaboration

What GAO Found The Department of Health and Human Services’ (HHS) Office of Information Security is responsible for managing department-wide cybersecurity. HHS clearly defined responsibilities for the divisions within that office to, among other things, document and implement a cybersecurity program, as required by the Federal Information Security Modernization Act of 2014. For healthcare and…

Microsoft Edge Vulnerabilities Let Hackers Steal Data

Microsoft Edge Vulnerabilities Let Hackers Steal Data

Endpoint Protection Platforms (EPP) , Endpoint Security Automatic Translation Bypasses Security Restrictions Prajeet Nair (@prajeetspeaks) • June 29, 2021     Microsoft recently released updates for the Edge browser, including a fix for a bypass vulnerability that could allow a remote attacker to bypass implemented security restrictions. See Also: Live Panel | Zero Trusts Given-…

CVE-2021-1134 – Alert Detail – Security Database

CVE-2021-1134 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-1134 First vendor Publication 2021-06-29 Vendor Cve Last vendor Modification 2021-06-29 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…