controlgap.com

Posts about:

[in]security (13)

This Week's [in]Security - Issue 178 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Magecart Alerts, Crime, and Defense. CNP Fraud. PIN Bypass. CC PAN shortage. New breaches: New Ransomware. Contact tracing. Canadian Privacy Law. Identification by Browser History. Surveillance Capitalism. Hidden PHI. GIFCT. SSH. myths. DiceKeys. 5G Security. Application Guard for Office. Credential Stuffing #1 Risk. MITRE Shield. Printers. Azure Sphere. NPM Package. Qbot. Bribery. Attachments. Hack-for-Hire. Blockchain. Megafires. Quantum. Election Security. Disinformation. Covid-19: Spread, Curves, Spikes, Waves, & reinfections. Reinfection. And more.

Note: The COVID section appears later in the article.

Read More

This Week's [in]Security - Issue 177 | insecurity | Control Gap

Welcome to This Week’s [in]Security. P2PE Key Block Deadlines. PCI Case Studies. ATM Alerts. NIST. 250M+ in New breaches: Mega breach, Social Data, Experian, Freepik, Cense AI, RMC. New Ransomware. Carnival. Facial Recognition. Privacy Shield. Windows. Google. Alexa. Cisco. SpiKey. IoT. email encryption. Zip Crypto. Zip Crypto. Supply Chains. Fake Recruiters. Spear Vishing. HTML Smuggling. 2xHurricanes. Blackouts. AI Dogfight. Covid-19: Spread, Curves, Spikes & Waves. Disinformation. And more.

Read More

This Week's [in]Security - Issue 176 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Magecart. ATM Skimming. New breaches: Military, health, SANS. New Ransomware. Facial Recognition. Shame. Robocall honeypot. Disinformation. 0-days. LTE break. Adobe. Citrix. Struts. Motherboards. Wordpress. Cryptanalysis. CRA Credential Stuffing. Linux Malware. BEC. TOR. Phishing. Data Ubiquity. Security Bias. Jobs. Quantum. FireFox. Covid-19: Spread, Curves, Spikes & Waves. Vaccine Progress. And more.

Read More

This Week's [in]Security - Issue 175 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Covid-19: Spread, Curves, Spikes & Waves. Lockdown, Reopening, & The New Normal. P2PEv3. Magecart. Fallback fraud. New breaches: Intel Documents, Leaky VPNs, 7 others. New Ransomware. NSA advice on location tracking saftey. NIST Webinars. US Splinernet? AWS Tools. Open Sourcing. DNS Intel. Voting machines. Defcon & Blackhat 12+ presentations! FBI alert. Cisco alerts. Multi-Processor Side Channel Attacks. Android/Qualcomm. STUXNET Redux. IoT Smart (un)Locks. Light bulb pwnage. Lockpicking. Pivoting through medical devices! Identity theft and COVID. Weaponizing DoH. MFA low hanging fruit. Recalls. Beirut explosion. Flawed AI. And more.

Read More

This Week's [in]Security - Issue 174 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Twitter Hack Week 3 arrests. Covid-19: Spread, Curves, Spikes & Waves. Lockdown, Reopening, & The New Normal. Vaccine Progress. More of the Good, Bad, and Ugly. DSSv4. CPoC and SPoC updates. SSF Update. POS Malware Alert. Mag-stripes. New breaches: Zello, LG, Xerox, Source Code Gigaleak. Ransomware: Garmin, Pivot Tech. HIBP gets 50M+ accounts. Breach costs. Contact tracing. Facial Recognition. GDPR. Stingray Drones. War on Crypto Updates. CitizenLab. Fair use. Forensic Software. Multiple NIST Updates. Blackberry. Big-tech Scrutiny. Quantum. Black Hat. Supply Chain Attack Survey. 0-day Root Causes & detection. BootHole. Wordpress RCE. Magneto RCE. Zoom. More ICS risk. Cisco bugs. Halt and catch fire for real. Tor. Multiple FBI warnings. IoT. Deepfake scam. Malware auction. Events-based Controls. Toronto. Fake News & Disinformation. Espionage. And more.

Read More

This Week's [in]Security - Issue 173 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Twitter Hack Week 2. Fallout from US Unrest. Covid-19: Spread, Curves, Spikes & Waves. Lockdown, Reopening, & The New Normal. Vaccine Progress. More of the Good, Bad, and Ugly. Inside a Carding Forum. New ATM Jackpotting Attack. New breaches: CouchSurfing 17M. Promo.com 14M, Dave.com 3M, Universities/Blackbaud, Instacart. Family Tree Maker. GEDmatch DNA. 407 ETR. Ransomware: Garamin. Contact tracing app problems. Plaid Class Action. PACT At. Post-quantum Crypto Update. ML & the CFAA. MS TLS sunset. Ontario. Code Freezer. Quantum Internet. Cyber-skills. Anti-Facial Recognition. BadPower attack. PDF Shadow Attack. Alexa Naughtiness. Adobe patches. Inecure apps. Botnet Vigilante. Twilio and DeepSource Code Compromised. Meow DB Attack. Unexpected Packages. FBI and NSA warnings. Biases & Risk. Supply Chain Risk. AI Parody. And more.

Read More

This Week's [in]Security - Issue 172 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Twitter Hack/Breach. Facebook Ad boycott. Covid-19: Spread, Curves, Spikes & Waves. Lockdown, Reopening, & The New Normal. More of the Good, Bad, and Ugly. Key Block Implementation Delay. Those lying No-logging VPN services. CCPA lawsuit. Data Exfiltration vs. Data at Rest Controls? Confidential Computing. Mozilla VPN. Anti-voice-assistant snooping tech. Free anti-ransomware tool. Stopping web-trackers. DNS. SAP Recon. Smartphone Knock Codes (Patterns) CIA hackers. Mandated malware? Iran oops. Counterfeit Network Gear. Enigma. Step inside someone else's YouTube bubble if you dare. And more.

Read More

This Week's [in]Security - Issue 171 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Fallout from US Unrest. Facebook Ad boycott. Covid-19: Spread & Curve. Lockdown, Reopening, & The New Normal. Herd Immunity? Airborne? More of the Good, Bad, and Ugly. CPoC Listing. Even more Magecart. Card Testing. Not an EMV Clone. BlueLeaks Updates. Billions of passwords. Contact tracing app problems. Facial Recognition. TikTok privacy. Anti-Tracking. Body Cam Blues. Tech, China, and Hong Kong. Right to repair. CFAA. Stalkerware. Secure Outsourcing paper. Accelerating vulnerabilities? Citrix. F5 Backdoor implants. IoT Backdoors. Security Cameras. eHealth. 100K WordPress sites. Zoom Zero-Day. Self-inflicted Crypto Injuries. OAuth attacks. Security Awareness ROI. Sharks. And more.

Read More

This Week's [in]Security - Issue 170 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Fallout from US Unrest. Facebook Ad boycott. Covid-19: Spread & Curve. Lockdown, Reopening, & The New Normal. More of the Good, Bad, and Ugly. Mostly Magento. COVID Breach Bubble. Darkweb trove on 14M exposed. 132M records from 14 sites. More Blueleaks? Evolution of ransomware. Mac ransomware. A privacy friendly search? SSN lock fail. Naughty FB apps. Crypto-wars. Geofencing Warrants. SIM swap lawsuit. Ad blocker benefits. HTTP/3. Securing IoT. Palo Alto severity 10 bug. F5 Compromise. Massive password study. Kill 2G. Netgear routers. Too many tools. EncroChat. Nortel hack? Bossware. Unemployment. Security through inefficiency! Facial False Positives. AI bias. Fake Social Media Accounts. H1N1 (G4). Wiki-washing. And more.

Read More

This Week's [in]Security - Issue 169 | insecurity | Control Gap

Welcome to This Week’s [in]Security. Fallout from US Unrest. Covid-19: Spread & Curve. Lockdown, Reopening, & The New Normal. More of the Good, Bad, and Ugly. PCI SPOC v1.1. POS ransomware. Smile and say Magecart. e-Skimmers and IFRAMES. Breaches: BlueLeaks, Twitter, e-learning, Brazil, Preen.me, Contact tracing app problems. Tim's Privacy Violation. New nosier Edge. Tech Fines. More crypto-wars. Taxing Links? One year certificates. Crims lock in with MFA. Insecurity included. PDF Safety. Banking backdoor. All your base printer are belong to us? Denial. AI is gullible, biased, misunderstood, and misapplied. Unintended Cyber-consequences. And more.

Read More