controlgap.com

Posts by:

CG Blogger

This Week's [in]Security - Issue 183 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Magecart. New breaches: New Ransomware. Oracle+TikTok. Catch22. Secure Time. NIST. OCPMA. Phishing awareness. Fuzzilli. Deepfakes. Complexity. ICS and IoT. Fingerprinting exploits. Cisco. AD Backdoors. Credential Stuffing. Voter phishing. Reply-to-phishing. Account takeovers. Nation States. Legal actions. Chatbots. Remote Exams. Election Security. Outages. Environment. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. Contact Tracing. cluster-busting. Disinformation. And more.

Read More

This Week's [in]Security - Issue 182 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Draft DSS v4 RFC. Breach Reporting. New breaches: XP Source. Bing. Shopify. Spots. games. Airbnb. New Ransomware. Autonomous Indoor Drone? Facial Recognition. Taxing Tech. NIST Updates, Drafts & Workshops. YAYA and Chronicle Detect Threat Hunters. IoT. CBC Encryption. Russians hacking Russians. Arrests, Charges & Sentencings. Election Security. Phishing awareness fail. Homework fraud. Pastebin. Hurricane names. Medical AI. brain-computer interfaces. Near misses. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. And more.

Read More

This Week's [in]Security - Issue 181 | insecurity | Control Gap

Welcome to This Week’s [in]Security. PCI FAQs. Magecart surge. COVID test data. New breaches: 320M dating records. influencers. Access keys. New Ransomware. Facebook. Facial Recognition. IoT. TikTok. NIST Updates, Drafts & Workshops. Phish Scale. OneFuzz. Elections. Severe Vulnerability. MobileIron. Bluetooth. Firefox. Malicious QR. Wifi pwnage. Iranian, Chinese, and Russian hacking. @Failure to learn. IP Theft. Security Questions with Attitude. Quantum. Number Stations. Deepfake arms race. Boarding Passes. Hurricanes. Wildfires. Glaciers. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. Lockdown, Reopening, & The New Normal. More of the Good, Bad, and Ugly. And more.

Read More

This Week's [in]Security - Issue 180 | insecurity | Control Gap

Welcome to This Week’s [in]Security. VoIP skimmers? New breaches: New Ransomware. Contact tracing. Facial Recognition. Supreme Court and Security Research. CRA class-action. Link tax. Post-Quantum-Crypto. ICS. Raccoon. BLURtooth. BitCoin. Election Security. Nvidia/Arm. AI. Deepfaking. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. Lockdown, Reopening, & The New Normal. Vaccine Progress. More of the Good, Bad, and Ugly. And more.

Note: The COVID section appears later in the article.

Read More

This Week's [in]Security - Issue 179 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Magecart. Warner Music. American Payroll. New breaches: US Voter db? Norway. Experian SA. Telmate. New Ransomware. Contact tracing. Facial Recognition. Geofence warrants. CEO Liability. NSA Ruling. Algorithmic Policing. Firmware. Cyber Space? Deepfakes. Cisco 0-day. WhatsApp. Magento. Encyrption vs. Hashing. RSA keys. IoT. Supply Chain Pwnage. Tricky Phishing. DDoS. Nortel Lessons. Frosh. Election Security & Disinformation. Typo-squatting. Link rot. AI grading. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. Lockdown, Reopening, & The New Normal. More of the Good, Bad, and Ugly. And more.

Note: The COVID section appears later in the article.

Read More

This Week's [in]Security - Issue 178 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Magecart Alerts, Crime, and Defense. CNP Fraud. PIN Bypass. CC PAN shortage. New breaches: New Ransomware. Contact tracing. Canadian Privacy Law. Identification by Browser History. Surveillance Capitalism. Hidden PHI. GIFCT. SSH. myths. DiceKeys. 5G Security. Application Guard for Office. Credential Stuffing #1 Risk. MITRE Shield. Printers. Azure Sphere. NPM Package. Qbot. Bribery. Attachments. Hack-for-Hire. Blockchain. Megafires. Quantum. Election Security. Disinformation. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. Reinfection. And more.

Note: The COVID section appears later in the article.

Read More

This Week's [in]Security - Issue 177 | insecurity | Control Gap

Welcome to This Week’s [in]Security. P2PE Key Block Deadlines. PCI Case Studies. ATM Alerts. NIST. 250M+ in New breaches: Mega breach, Social Data, Experian, Freepik, Cense AI, RMC. New Ransomware. Carnival. Facial Recognition. Privacy Shield. Windows. Google. Alexa. Cisco. SpiKey. IoT. email encryption. Zip Crypto. Zip Crypto. Supply Chains. Fake Recruiters. Spear Vishing. HTML Smuggling. 2xHurricanes. Blackouts. AI Dogfight. Covid-19: Spread, Curves, Spikes & Waves. Disinformation. And more.

Read More

This Week's [in]Security - Issue 176 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Magecart. ATM Skimming. New breaches: Military, health, SANS. New Ransomware. Facial Recognition. Shame. Robocall honeypot. Disinformation. 0-days. LTE break. Adobe. Citrix. Struts. Motherboards. Wordpress. Cryptanalysis. CRA Credential Stuffing. Linux Malware. BEC. TOR. Phishing. Data Ubiquity. Security Bias. Jobs. Quantum. FireFox. Covid-19: Spread, Curves, Spikes & Waves. Vaccine Progress. And more.

Read More

This Week's [in]Security - Issue 175 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Covid-19: Spread, Curves, Spikes & Waves. Lockdown, Reopening, & The New Normal. P2PEv3. Magecart. Fallback fraud. New breaches: Intel Documents, Leaky VPNs, 7 others. New Ransomware. NSA advice on location tracking saftey. NIST Webinars. US Splinernet? AWS Tools. Open Sourcing. DNS Intel. Voting machines. Defcon & Blackhat 12+ presentations! FBI alert. Cisco alerts. Multi-Processor Side Channel Attacks. Android/Qualcomm. STUXNET Redux. IoT Smart (un)Locks. Light bulb pwnage. Lockpicking. Pivoting through medical devices! Identity theft and COVID. Weaponizing DoH. MFA low hanging fruit. Recalls. Beirut explosion. Flawed AI. And more.

Read More

This Week's [in]Security - Issue 174 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Twitter Hack Week 3 arrests. Covid-19: Spread, Curves, Spikes & Waves. Lockdown, Reopening, & The New Normal. Vaccine Progress. More of the Good, Bad, and Ugly. DSSv4. CPoC and SPoC updates. SSF Update. POS Malware Alert. Mag-stripes. New breaches: Zello, LG, Xerox, Source Code Gigaleak. Ransomware: Garmin, Pivot Tech. HIBP gets 50M+ accounts. Breach costs. Contact tracing. Facial Recognition. GDPR. Stingray Drones. War on Crypto Updates. CitizenLab. Fair use. Forensic Software. Multiple NIST Updates. Blackberry. Big-tech Scrutiny. Quantum. Black Hat. Supply Chain Attack Survey. 0-day Root Causes & detection. BootHole. Wordpress RCE. Magneto RCE. Zoom. More ICS risk. Cisco bugs. Halt and catch fire for real. Tor. Multiple FBI warnings. IoT. Deepfake scam. Malware auction. Events-based Controls. Toronto. Fake News & Disinformation. Espionage. And more.

Read More