Author Archives: CSIRT

33% Surge in Financial Fraud Attempts During #COVID19 Lockdown

from www.infosecurity-magazine.com Financial fraud attempts rose by 33% in April as the UK entered lockdown due to the COVID-19 pandemic, new analysis from Experian and the National Hunter Fraud Prevention Service has revealed. Fraudsters targeted a myriad of financial products, including current and savings accounts, as they sought to take advantage of the disruption to […]

Most malware in Q1 2020 was delivered via encrypted HTTPS connections

from www.helpnetsecurity.com 67% of all malware in Q1 2020 was delivered via encrypted HTTPS connections and 72% of encrypted malware was classified as zero day, so would have evaded signature-based antivirus protection, according to WatchGuard. These findings show that without HTTPS inspection of encrypted traffic and advanced behavior-based threat detection and response, organizations are missing […]

OneClass unsecured S3 bucket exposes PII on more than one million students, instructors

from www.scmagazine.com An unsecured database belonging remote learning platform OneClass has exposed information associated with more than a million students in North America who use the platform to access study guides and educational assistance. “By not securing its users’ data, OneClass has created a goldmine for criminal hackers, jeopardizing the privacy and security of over […]

Critical Bugs and Backdoor Found in GeoVision’s Fingerprint and Card Scanners

from thehackernews.com GeoVision, a Taiwanese manufacturer of video surveillance systems and IP cameras, recently patched three of the four critical flaws impacting its card and fingerprint scanners that could’ve potentially allowed attackers to intercept network traffic and stage man-in-the-middle attacks. In a report shared exclusively with The Hacker News, enterprise security firm Acronis said it […]