Justice Department adds fellowship program to boost legal efforts against cybercrime

Justice Department adds fellowship program to boost legal efforts against cybercrime

Written by Tonya Riley Aug 27, 2021 | CYBERSCOOP The Justice Department is launching a fellowship program designed to develop legal talent to deal with the increasing cyber threats to national security. “As we have witnessed this past year, cyber threats pose a significant and increasing risk to our national security, our economic security, and…

Bangkok Airways Execs Apologize for Data Breach

Bangkok Airways Execs Apologize for Data Breach

Cybercrime , Cybercrime as-a-service , Endpoint Security LockBit Ransomware Gang Takes Credit, Threatens to Release Data Doug Olenick (DougOlenick) • August 30, 2021     Bangkok Airways issued an apology late last week for a data breach that apparently compromised the personally identifiable information for an unstated number of its passengers. The LockBit ransomware gang…

Details on Microsoft’s Azure Cosmos DB vulnerability – Security

Details on Microsoft’s Azure Cosmos DB vulnerability – Security

Microsoft’s Azure Cosmos DB vulnerability, reported yesterday, may leave users vulnerable to a misconfiguration that allows hackers to download or edit data and the architecture of the database service, according to a report by cybersecurity company Wiz. The Microsoft Security Response Center published an article on the vulnerability on Friday, saying that Microsoft was contacted…

Microsoft fixes cloud platform vulnerability after warning, IT News, ET CIO

Microsoft fixes cloud platform vulnerability after warning, IT News, ET CIO

REDMOND: Microsoft says it has fixed a flaw in its cloud computing platform that cybersecurity researchers warned could have enabled hackers to take over a cloud-based database product used by many big companies. The company said Friday there’s no evidence the potential opening was exploited by malicious actors or that any customer data was exposed….

Google to train 100,000 Americans, invest $10 billion to boost cybersecurity in the US, Telecom News, ET Telecom

Google to train 100,000 Americans, invest $10 billion to boost cybersecurity in the US, Telecom News, ET Telecom

San Francisco: Google which has announced to invest $10 billion over the next five years to strengthen cybersecurity in the US, said that the governments and businesses are at a watershed moment in addressing cybersecurity. The company has also pledged, through the Google Career Certificate programme, to train 100,000 Americans in fields like IT support…

Hacker brute-forced his way through our network

Hacker brute-forced his way through our network

Today, T-Mobile’s CEO Mike Sievert said that the hacker behind the carrier’s latest massive data breach brute forced his way through T-Mobile’s network after gaining access to testing environments. The attacker could not exfiltrate customer financial information, credit card information, debit or other payment information during the incident. However, T-Mobile says that he stole records belonging to 54.6 million…

Senator Seeks Input on Securing Crypto, Blockchain

Senator Seeks Input on Securing Crypto, Blockchain

Blockchain & Cryptocurrency , Cryptocurrency Fraud , Fraud Management & Cybercrime Security Experts Praise Desire to Regulate Market, Cite Complexity Dan Gunderman (dangun127) • August 30, 2021     Sen. Pat Toomey, ranking member of the Senate Banking Committee (Photo: Gage Skidmore via Flickr) Sen. Pat Toomey, R-Pa., the ranking member of the U.S. Senate…

CVE-2021-26084 – Alert Detail – Security Database

CVE-2021-26084 – Alert Detail – Security Database

Executive Summary Informations Name CVE-2021-26084 First vendor Publication 2021-08-30 Vendor Cve Last vendor Modification 2021-08-30 Security-Database Scoring CVSS v3 Cvss vector : N/A Overall CVSS Score NA Base Score NA Environmental Score NA impact SubScore NA Temporal Score NA Exploitabality Sub Score NA   Calculate full CVSS 3.0 Vectors scores Security-Database Scoring CVSS v2 Cvss…

Critical Vulnerability in Cosmos DB Affects Microsoft Azure Customers

Critical Vulnerability in Cosmos DB Affects Microsoft Azure Customers

Microsoft Azure customers have been informed of a newly found critical bug in Cosmos DB that enables intruders to remotely take control over databases by giving them complete admin access with no authorization requested. Anyone can read, change, or delete databases as they please, according to Microsoft. What Happened? This month, cybersecurity researchers at the…