Banning TikTok Should Be Just the Beginning

China poses a broad range of data security risks.

#computer-security, #computers-and-the-internet, #cyberwarfare-and-defense, #espionage-and-intelligence-services, #industrial-espionage, #law-and-legislation, #privacy, #tiktok-bytedance, #united-states-international-relations, #united-states-politics-and-government

A Breach at LastPass Has Password Lessons for Us All

The hacking of the password manager should make us reassess whether to trust companies to store our sensitive data in the cloud.

#computer-security, #computers-and-the-internet, #cyberattacks-and-hackers, #lastpass-com, #privacy

A Cyberattack Shuts the Met Opera’s Box Office, but the Show Goes On

After hackers knocked out the ticket-selling system of the Met, the largest performing arts organization in the United States, the company decided to sell $50 general admission seats.

#box-office-sales, #computer-network-outages, #computer-security, #cyberattacks-and-hackers, #gelb-peter, #metropolitan-opera, #opera

Brazil Counted All Its Votes in Hours. It Still Faces Fraud Claims.

A report from the military found no voter fraud — but left room for Bolsonaro’s supporters to argue maybe he’d actually won.

#bolsonaro-jair-1955, #brazil, #computer-security, #computers-and-the-internet, #da-silva-luiz-inacio-lula, #elections, #moraes-alexandre-de-1968, #voter-fraud-election-fraud, #voting-and-voters

Gaming Is Booming. That’s Catnip for Cybercriminals.

Cybersecurity experts warn that threats lurk in cheat codes, microtransactions and messages from fellow players.

#akamai-technologies-inc, #computer-and-video-games, #computer-security, #computers-and-the-internet, #cyberattacks-and-hackers, #electronic-arts-inc, #kaspersky-lab, #namco-bandai-games-inc, #roblox-corp

The Uber Hack Exposes More Than Failed Data Security

We need strong regulations that force organizations to maintain good security practices.

#computer-security, #cyberattacks-and-hackers, #regulation-and-deregulation-of-industry, #uber-technologies-inc, #zatko-peiter-c

As Ex-Uber Executive Heads to Trial, the Security Community Reels

Joe Sullivan, Uber’s former chief of security, faces criminal charges for his handling of a 2016 security breach. His trial this week has divided the security industry.

#computer-security, #computers-and-the-internet, #corporations, #cyberattacks-and-hackers, #decisions-and-verdicts, #sullivan-joe-1968, #uber-technologies-inc, #united-states

How Russia Relies on Old Tech in Weapons Aimed at Ukraine

Investigators who examined the electronics in Russia’s newest cruise missiles and attack helicopters were surprised to find decades-old technology reused from earlier models.

#arms-trade, #computer-security, #conflict-armament-research, #defense-and-military-forces, #embargoes-and-sanctions, #missiles-and-missile-defense-systems, #navigation, #russia, #russian-invasion-of-ukraine-2022, #ukraine

A Dad Took Photos of His Naked Toddler for the Doctor. Google Flagged Him as a Criminal.

Google has an automated tool to detect abusive images of children. But the system can get it wrong, and the consequences are serious.

#child-abuse-and-neglect, #child-pornography, #children-and-childhood, #computer-security, #computers-and-the-internet, #google-inc, #photography, #privacy, #search-and-seizure, #video-recordings-downloads-and-streaming

A Cyberattack Illuminates the Shaky State of Student Privacy

At a moment when education technology firms are stockpiling sensitive information on millions of school children, safeguards for student data have broken down.

#balderas-hector-h-jr, #childrens-online-privacy-protection-act, #computer-security, #computers-and-the-internet, #cyberattacks-and-hackers, #education-k-12, #education-department-nyc, #federal-trade-commission, #illuminate-education, #pearson-plc, #privacy

In a Post-Roe World, the Future of Digital Privacy Looks Even Grimmer

The sheer amount of tech tools and knowledge required to discreetly seek an abortion underlines how wide open we are to surveillance.

#abortion, #computer-security, #privacy, #reproductive-health, #roe-v-wade-supreme-court-decision, #smartphones, #surveillance-of-citizens-by-government, #virtual-private-network

Chinese Police Database Was Unsecured Long Before It Was Seized

The breach is “a big black eye” for the Chinese security apparatus, one expert says, exposing the risk of the state’s vast effort to amass citizens’ personal data.

#china, #computer-security, #computers-and-the-internet, #data-mining-and-database-marketing, #privacy, #shanghai-china, #surveillance-of-citizens-by-government

Hacker Offers to Sell Chinese Police Database in Potential Breach

For about $200,000, an unidentified person or group is offering what is described as data on a billion Chinese citizens. A sampling seemed to show the data to be genuine.

#computer-security, #computers-and-the-internet, #data-mining-and-database-marketing, #surveillance-of-citizens-by-government

Accused Capital One Hacker Stands Trial for Fraud and Identity Theft

A woman is accused of downloading data of more than 100 million Capital One customers. Her lawyers argue a conviction would criminalize legitimate research practices.

#amazon-com-inc, #capital-one-financial-corporation, #computer-security, #computers-and-the-internet, #cyberattacks-and-hackers, #justice-department, #seattle-wash, #thompson-paige-adele

‘Quantum Internet’ Inches Closer With Advance in Data Teleportation

Scientists have improved their ability to send quantum information across distant computers — and have taken another step toward the network of the future.

#computer-security, #computers-and-the-internet, #delft-netherlands, #delft-university-of-technology, #hefei-china, #nature-journal, #physics, #quantum-computing, #quantum-theory, #your-feed-science

Tina Peters, G.O.P. Colorado Secretary of State Candidate, Is Barred From Overseeing Elections

A judge ruled that Tina Peters, a pro-Trump Republican accused of tampering with voting equipment in Mesa County, had “committed a neglect of duty.”

#colorado, #computer-security, #conspiracy-theories, #elections-secretary-of-state, #ethics-and-official-misconduct, #grand-junction-colo, #griswold-jena, #mesa-county-colo, #peters-tina, #presidential-election-of-2020, #primaries-and-caucuses, #voter-fraud-election-fraud, #voting-machines

Text Spam Is on the Rise. Here’s How to Spot It and What to Do

Text spam is on the rise. The latest version involves scammers sending messages to you seemingly from your own phone number. Here’s what to do.

#att-inc, #cellular-telephones, #computer-security, #computers-and-the-internet, #content-type-service, #frauds-and-swindling, #mobile-applications, #smartphones, #spam-electronic, #t-mobile-us-inc, #telemarketing, #text-messaging, #verizon-communications-inc, #wireless-communications

Hackers’ Fake Claims of Ukrainian Surrender Aren’t Fooling Anyone. So What’s Their Goal?

Experts say the hackers’ intentions might not be to actually trick anyone, but to erode confidence in Ukrainian media outlets and institutions.

#belarus, #computer-security, #cyberwarfare-and-defense, #facebook-inc, #news-and-news-media, #rumors-and-misinformation, #russia, #russian-invasion-of-ukraine-2022, #ukraine, #war-and-armed-conflicts, #zelensky-volodymyr

U.S. Accuses 4 Russians of Hacking Infrastructure, Including Nuclear Plant

The announcement covered hackings from 2012 to 2018, but served as yet another warning from the Biden administration of Russia’s ability to conduct such operations.

#biden-joseph-r-jr, #computer-security, #computers-and-the-internet, #cyberwarfare-and-defense, #federal-bureau-of-investigation, #federal-security-service, #justice-department, #kansas, #monaco-lisa-o, #russia, #saudi-arabia

Poland Wins European Tree of the Year After Russia Is Banned

After Russia was banned from the European Tree of the Year competition, organizers reflected on how a celebration of trees became tangled up in global politics.

#belarus, #computer-security, #europe, #european-parliament, #great-britain, #poland, #politics-and-government, #russia, #russian-invasion-of-ukraine-2022, #santiago-de-compostela-spain, #spain, #trees-and-shrubs, #turgenev-ivan, #ukraine, #war-and-armed-conflicts, #world-heritage-sites

With Eye to Russia, Biden Administration Asks Companies to Report Cyberattacks

A new law requires companies to tell the federal government about hacks, but the Cybersecurity and Infrastructure Security Agency still has to work out the details of what must be reported.

#computer-security, #cyberattacks-and-hackers, #cybersecurity-and-infrastructure-security-agency, #cyberwarfare-and-defense, #easterly-jen, #law-and-legislation, #russia, #united-states-politics-and-government

Yes, You Can Make Your Tech Survive Obsolescence

Our gadgets eventually become outdated, but here are workarounds to keep them alive and secure past when manufacturers say.

#computer-security, #computers-and-the-internet, #content-type-service, #linux-operating-system, #mobile-applications, #open-source-software, #software, #web-browsers

I.R.S. Will Allow Taxpayers to Forgo Facial Recognition Amid Blowback

The agency, dealing with controversy over its decision to use facial recognition software, said it would allow taxpayers to authenticate their accounts with a live, virtual interview.

#computer-security, #facial-recognition-software, #federal-taxes-us, #idme-inc, #internal-revenue-service, #privacy, #tax-preparers-and-preparation

Kazakhstan’s Internet Shutdowns Could Be a Warning for Ukraine

Control of the internet is increasingly part of any modern conflict.

#censorship, #computer-security, #computers-and-the-internet, #cyberwarfare-and-defense, #kazakhstan, #mobile-applications, #politics-and-government, #telephones-and-telecommunications, #ukraine, #war-and-armed-conflicts

2020 Election Denier Will Run for Top Elections Position in Colorado

Tina Peters, the Mesa County clerk, has been stripped of her county election oversight but is seeking to oversee her state’s elections as secretary of state.

#bannon-stephen-k, #biden-joseph-r-jr, #colorado, #computer-security, #ethics-and-official-misconduct, #griswold-jena, #mesa-county-colo, #presidential-election-of-2020, #republican-party, #search-and-seizure, #tina-peters, #trump-donald-j, #united-states-politics-and-government, #voter-fraud-election-fraud, #voting-machines

I.R.S. to End Use of Facial Recognition for Identity Verification

The tax collection agency will transition away from using a service from the authentication service ID.me amid bipartisan backlash.

#computer-security, #computer-vision, #facial-recognition-software, #internal-revenue-service, #rettig-charles-p, #senate, #united-states-politics-and-government

U.S. Sends Official to Help NATO Brace for Russian Cyberattacks

Intelligence assessments suggest that a Russian invasion of Ukraine would most likely be preceded by cyberattacks on Ukraine’s electric grid, its communications systems and its government.

#computer-security, #cyberwarfare-and-defense, #neuberger-anne, #north-atlantic-treaty-organization, #russia, #ukraine, #united-states-international-relations

China’s Olympics App for Athletes Has Security Flaws, Study Says

Researchers said the app, which will store sensitive health data on participants at the Winter Games, has serious encryption vulnerabilities.

#china, #citizen-lab, #computer-security, #coronavirus-2019-ncov, #mobile-applications, #olympic-games-2022, #surveillance-of-citizens-by-government

Ransomware Group REvil Dismantled in Raids, Russia Says

Moscow said the ransomware group REvil “ceased to exist” after raids and arrests. It is not clear if the operation will ease tensions with Washington.

#biden-joseph-r-jr, #computer-security, #cyberattacks-and-hackers, #cyberwarfare-and-defense, #extortion-and-blackmail, #federal-security-service, #putin-vladimir-v, #revil-hacking-group, #russia, #ukraine

We’re All ‘Experts’ Now. That’s Not a Good Thing.

Widespread scams and institutional failures force us to rely on only ourselves.

#computer-security, #coronavirus-2019-ncov, #frauds-and-swindling, #internal-sub-only-nl, #oz-mehmet-c, #ponzi-and-pyramid-schemes, #rumors-and-misinformation, #subprime-mortgage-crisis

Biden Administration Warns Against Spyware Targeting Dissidents

The U.S. intelligence community offered steps that would mitigate — but not stop — spyware developed by firms like the NSO Group.

#computer-security, #cyberattacks-and-hackers, #national-counterintelligence-and-security-center, #nso-group, #smartphones, #software, #surveillance-of-citizens-by-government, #united-states-politics-and-government

Someone Offered ‘Harvard’ Jobs to Known Women in India. It Was a Scam.

For over a year, prominent women in India, including journalists, were reeled into a labyrinthine online scam, offering work with Harvard University. Who targeted them, and why, is a mystery.

#anand-bharat-n, #bharatiya-janata-party, #computer-security, #computers-and-the-internet, #harvard-university, #hoaxes-and-pranks, #impostors-criminal, #news-and-news-media

Microsoft Seizes 42 Websites From a Chinese Hacking Group

The group was likely using the websites to install malware that helped it gather data from government agencies and other groups, the company said.

#china, #computer-security, #computers-and-the-internet, #cyberwarfare-and-defense, #microsoft-corp

Companies Linked to Russian Ransomware Hide in Plain Sight

Cybersecurity experts tracing money paid by American businesses to Russian ransomware gangs found it led to one of Moscow’s most prestigious addresses.

#computer-security, #cyberwarfare-and-defense, #darkside-hacking-group, #evil-corp-russian-hacking-group, #extortion-and-blackmail, #federation-towers-moscow-russia, #moscow-russia, #politics-and-government, #recorded-future-inc, #virtual-currency

Israeli Company’s Spyware Is Used to Target U.S. Embassy Employees in Africa

The hack is the first known case of the spyware, known as Pegasus, being used against American officials.

#computer-security, #cyberattacks-and-hackers, #diplomatic-service-embassies-and-consulates, #israel, #nso-group, #smartphones, #uganda, #united-states-international-relations

Israel and Iran Broaden Cyberwar to Attack Civilian Targets

Iranians couldn’t buy gas. Israelis found their intimate dating details posted online. The Iran-Israel shadow war is now hitting ordinary citizens.

#automobile-service-and-charging-stations, #check-point-software-technologies-ltd, #computer-security, #computers-and-the-internet, #cyberwarfare-and-defense, #defense-and-military-forces, #embargoes-and-sanctions, #international-relations, #iran, #isfahan-iran, #israel, #khamenei-ali, #oil-petroleum-and-gasoline, #online-dating, #politics-and-government, #tehran-iran, #telegram-llc

Apple Sues Israeli Spyware Maker NSO Group

Apple accused NSO Group, the Israeli surveillance company, of “flagrant” violations of its software, as well as federal and state laws.

#apple-inc, #citizen-lab, #cloud-computing, #computer-security, #computers-and-the-internet, #espionage-and-intelligence-services, #facebook-inc, #icloud, #industrial-espionage, #lookout-inc, #nso-group, #software, #suits-and-litigation-civil, #surveillance-of-citizens-by-government

Alan Paller, a Mover on Cybersecurity Threat, Is Dead at 76

He made it his mission to find, recruit and develop the next generation of digital warriors to defend the nation against an onslaught of cyberattacks.

#computer-security, #cyberwarfare-and-defense, #deaths-obituaries, #paller-alan-1945-2021, #sans-institute, #united-states-defense-and-military-forces

Palestinian Diplomats Targeted by Israeli Spyware, Official Says

The accusation, which has not been independently verified, raises new questions over whether Israel is using software made by NSO Group to spy on Palestinians.

#computer-security, #computers-and-the-internet, #cyberattacks-and-hackers, #cyberwarfare-and-defense, #espionage-and-intelligence-services, #israel, #jerusalem-israel, #nso-group, #palestinians, #politics-and-government, #shin-bet, #surveillance-of-citizens-by-government, #united-states

I Was Hacked. The Spyware Used Against Me Makes Us All Vulnerable.

Invasive hacking software sold to countries to fight terrorism is easily abused. Researchers say my phone was hacked twice, probably by Saudi Arabia.

#al-jazeera, #cellular-telephones, #citizen-lab, #computer-security, #computers-and-the-internet, #israel, #mohammed-bin-salman-1985, #nso-group, #privacy, #saudi-arabia, #signal-open-whisper-systems, #surveillance-of-citizens-by-government, #text-messaging

A Rare Win in the Cat-and-Mouse Game of Ransomware

A team of private security sleuths, in their first public detailing of their efforts, discuss how they used cybercriminals’ mistakes to quietly help victims recover their data.

#blackmatter, #computer-security, #cyberattacks-and-hackers, #cybersecurity-and-infrastructure-security-agency, #emsisoft-ltd, #extortion-and-blackmail

The Sheikh, the Businessman and a Hacking Mystery on 3 Continents

A case that began with a feud in the United Arab Emirates, stretched from the U.S. to India and is now playing out in the British courts offers a rare glimpse into the anatomy of a hack-and-leak operation.

#al-qasimi-saud-bin-saqr-1956, #azima-farhad-1942, #belltrox-infotech-services-pvt-ltd, #computer-security, #cyberattacks-and-hackers, #cyberroot-risk-advisory-pvt-ltd, #great-britain, #massaad-khater, #news-sources-confidential-status-of, #politics-and-government, #ras-al-khaimah-united-arab-emirates, #suits-and-litigation-civil

Submarine Spy Case: Couple Stewed Over Money and Politics

Jonathan and Diana Toebbe, charged with trying to sell classified nuclear secrets to a foreign power, struggled with finances, family and the state of America.

#computer-security, #content-type-personal-profile, #espionage-and-intelligence-services, #federal-bureau-of-investigation, #laboratories-and-scientific-equipment, #nuclear-energy, #submarines-and-submersibles, #toebbe-diana, #toebbe-jonathan, #united-states-defense-and-military-forces, #washington-navy-yard-washington-dc

Couple in Submarine Spy Case Stewed Over Money and Politics

Jonathan and Diana Toebbe, charged with trying to sell classified nuclear secrets to a foreign power, struggled with finances, family and the state of America.

#computer-security, #content-type-personal-profile, #espionage-and-intelligence-services, #federal-bureau-of-investigation, #laboratories-and-scientific-equipment, #nuclear-energy, #submarines-and-submersibles, #toebbe-diana, #toebbe-jonathan, #united-states-defense-and-military-forces, #washington-navy-yard-washington-dc

Governor Accuses Reporter of Hacking After Flaws in State Website Are Revealed

Gov. Mike Parson of Missouri has asked for a criminal investigation of a St. Louis Post-Dispatch reporter who told the state that a website revealed teachers’ Social Security numbers.

#computer-security, #cyberattacks-and-hackers, #missouri, #news-and-news-media, #newspapers, #parson-michael-l, #renaud-josh-journalist, #st-louis-post-dispatch, #teachers-and-school-employees

Cybersecurity Experts Sound Alarm on Apple and E.U. Phone Scanning Plans

A group of researchers said the “dangerous technology” was invasive and not effective at detecting images of child sexual abuse.

#apple-inc, #child-pornography, #cloud-computing, #computer-security, #european-union, #icloud, #privacy, #research, #surveillance-of-citizens-by-government

It’s Time to Stop Paying for a VPN

Many virtual private network services that were meant to protect your web browsing can no longer be trusted. Here are other ways.

#cloud-computing, #computer-security, #computers-and-the-internet, #content-type-service, #mergers-acquisitions-and-divestitures, #news-sources-confidential-status-of, #privacy, #wireless-communications

How to Find ‘Stalkerware’ on Your Devices

These spyware apps record your conversations, location and everything you type, all while camouflaged as a calculator or calendar.

#android-operating-system, #apple-inc, #calculators, #computer-security, #computers-and-the-internet, #content-type-service, #data-mining-and-database-marketing, #domestic-violence, #google-inc, #iphone, #mobile-applications, #privacy, #smartphones, #software, #stalking-crime

Stairwell secures $20M Series A to help organizations outsmart attackers

Back when Stairwell emerged from stealth in 2020, the startup was shrouded in secrecy. Now with $20 million in Series A funding, its founder and CEO Mike Wiacek — who previously served as chief security officer at Chronicle, Google’s moonshot cybersecurity company — is ready to talk.

As well as raising $20M, an investment round co-led by Sequoia Capital and Accel, Stairwell is launching Inception, a threat hunting platform that aims to help organizations determine if they were compromised now or in the past. Unlike other threat detection platforms, Inception takes an “inside out” approach to cybersecurity, which starts by looking inwards at a company’s data.

“This helps you study what’s in your environment first before you start thinking about what’s happening in the outside world,” Wiacek tells TechCrunch. “The beautiful thing about that approach is that’s not information that outside parties, a.k.a. the bad guys, are privy to.”

This data, all of which is treated as suspicious, is continuously evaluated in light of new indicators and new threat intelligence. Stairwell claims this enables organizations to detect anomalies within just days, rather than the industry average of 280 days, as well as to “bootstrap” future detections.

“If you go and buy a threat intelligence feed from Vendor X, do you really think that someone who’s spending hundreds of thousands, or even millions of dollars to conduct an offensive campaign isn’t going to make sure that whatever they’re using isn’t in that field?,” said Wiacek. “They know what McAfee knows and they know other antivirus engines know, but they don’t know what you know and that’s a very powerful advantage that you have there.”

Stairwell’s $20 million in Series A funding, which comes less than 12 months after it secured $4.5 million in seed funding, will be used to further advance the Inception platform and to increase the startup’s headcount; the Palo Alto-based firm currently has a modest headcount of 21.

The Inception platform, which the startup claims finally enables enterprises to “outsmart the bad guys”, is launching in early release for a limited number of customers, with full general availability scheduled for 2022.

“I just wish we had a product to market when SolarWinds happened,” Wiacek added.

#accel, #anomali, #ceo, #computer-security, #computing, #google-cloud, #inception, #information-technology, #mcafee, #palo-alto, #security, #sequoia-capital, #solarwinds, #stairwell, #system-administration

America Is Being Held for Ransom. It Needs to Fight Back.

Businesses attacked. Data stolen. Miles of pipeline shut down. The scourge of ransomware is worse than ever.

#biden-joseph-r-jr, #computer-security, #cyberattacks-and-hackers, #putin-vladimir-v, #revil-hacking-group, #russia