Cybercriminals Are Selling More Than 85,000 SQL Databases On Dark Web
Hackers have been breaking into SQL databases, downloading tables, deleting the originals, and leaving ransom notes behind, telling server owners to contact the attackers to get their data back.
Bijay Pokharel,
December 10, 2020
2 min read
4 Sentenced To Prison For Planting Malware On 20 Million Gionee Smartphones
The scheme involved Xu Li, the legal representative of Shenzhen Zhipu Technology, a Gionee subsidiary tasked with selling the company's phones, and the trio of Zhu Ying, Jia Zhengqiang, and Pan Qi, the deputy general manager and software engineers for software firm Beijing Baice Technology.
Bijay Pokharel,
December 9, 2020
2 min read
Here’s Everything You Need To Know About ENCRYPTION !
Encryption is the method by which information is converted into secret code that hides the information’s true meaning. The science of encrypting and decrypting information is called cryptography.
Bijay Pokharel,
December 6, 2020
4 min read
Helicopter Manufacturer Kopter Hit By Ransomware
Information from Kopter’s internal system was printed on the LockBit gang’s site, hosted on the Darknet.After Kopter denied participation with all the hackers, the ransomware gang has printed on Friday a number of the business’s documents online.
Bijay Pokharel,
December 5, 2020
1 min read
IBM : Cyber-Criminals Are Targeting The COVID-19 Vaccine Cold Chain
IBM Security X-Force uncovered a global phishing campaign targeting organizations associated with a COVID-19 cold chain. The cold chain is a component of the vaccine supply chain that ensures the safe preservation of vaccines in temperature-controlled environments during their storage and transportation.
Bijay Pokharel,
December 4, 2020
2 min read
Suspected North Korean Hackers Targeted COVID Vaccine Maker AstraZeneca : Reuters
Suspected North Korean hackers have tried to break into the systems of British drugmaker AstraZeneca in recent weeks, two people with knowledge of the matter told Reuters, as the company races to deploy its vaccine for the COVID-19 virus. The hackers posed as recruiters on...
Bijay Pokharel,
November 28, 2020
1 min read
Networking Equipment Vendor Belden Disclose Data Breach
American networking equipment vendor Belden announced that it has taken decisive measures to investigate and address a data incident involving unauthorized access and copying of some current and former employee data, as well as limited company information regarding some business partners. Belden IT professionals recently detected...
Bijay Pokharel,
November 27, 2020
1 min read
Canon Publicly Acknowledge August Ransomware Attack
Canon has confirmed that the cyberattack suffered in early August was caused by ransomware and that the hackers stole data from company servers. “We identified a security incident involving ransomware on August 4, 2020. We immediately began to investigate, a cybersecurity firm was engaged, and...
Bijay Pokharel,
November 27, 2020
1 min read
Sophos Warns Affected Customers After Security Breach
UK cyber security and hardware company Sophos has notified customers that data has potentially been leaked online due to a misconfigured database. The exposed customer data was accessible to unauthorized parties due to a misconfigured “tool” used by the company to store information by users who reached out to...
Bijay Pokharel,
November 26, 2020
1 min read
South Korean Watchdog Fines Facebook $6.1 Million For Sharing User Info Without Consent
A South Korean agency for protecting personal information on Wednesday fined$6.06 million and sought a criminal investigation for providing users’ personal information to other operators without consent, Reuters reports The country’s Personal Information Protection Commission, launched in August this year, said in a statement it...
Bijay Pokharel,
November 26, 2020
1 min read
2FA Bypass Flaw Could Affect Over 70 Million Sites
Digital Defense, Inc., a leader in vulnerability and threat management solutions, announced that its Vulnerability Research Team (VRT) uncovered a previously undisclosed vulnerability affecting the cPanel & WebHost Manager (WHM) web hosting platform. cPanel & WHM version 11.90.0.5 (90.0 Build 5) exhibits a two-factor authentication bypass flaw, vulnerable...
Bijay Pokharel,
November 25, 2020
1 min read
NCSC: Multiple Actors Are Attempting To Exploit MobileIron Vulnerability CVE 2020-15505
The UK National Cyber Security Centre (NCSC) issued an alert prompting all organizations to patch the critical CVE-2020-15505 remote code execution (RCE) vulnerability in MobileIron mobile device management (MDM) systems. MobileIron remote code execution vulnerability is a target for APT nation state groups and cyber criminals to...
Bijay Pokharel,
November 25, 2020
1 min read
What Is A Dictionary Attack ? Here’s How Can You Can Prevent It
A dictionary attack is based on trying all the strings in a pre-arranged listing. Such attacks originally used words one would find in a dictionary. However, now there are much larger lists available on the open Internet that contain hundreds of millions of passwords recovered...
Bijay Pokharel,
November 25, 2020
4 min read
Over 300K Spotify Accounts Hacked In Credential Stuffing Attack
VPNMentor’s research team has discovered a possible credential stuffing operation whose origins are unknown, but that affected some online users who also have Spotify accounts. Credential stuffing is a hacking technique that takes advantage of weak passwords that consumers use — and often re-use — online....
Bijay Pokharel,
November 24, 2020
2 min read
TikTok Patches Reflected XSS Bug, One-Click Account Takeover Exploit
TikTok has patched a reflected XSS security flaw and a bug leading to account takeover impacting the firm’s web domain. Reported via the bug bounty platform HackerOne by researcher Muhammed “milly” Taskiran, the first vulnerability relates to a URL parameter on the tiktok.com domain which was not...
Bijay Pokharel,
November 23, 2020
1 min read
Manchester United Football Club Discloses Cyber Security Breach
European football club Manchester United disclosed on late Friday a cyber-security incident that impacted its internal systems. The football club said it’s still investigating the incident and couldn’t say if the breach allowed the intruders to access data associated with fans or store customers. While...
Bijay Pokharel,
November 22, 2020
1 min read
Top 4 Best Anonymous Email Providers
There are many email providers that offer secure email services. However, not all of them shield your identity. Some will only encrypt the content of your emails, so be sure to check whether it hides your IP address, whether it asks for your personal information...
Bijay Pokharel,
November 18, 2020
4 min read
Microsoft : Cybercriminals Are Targeting Covid-19 Vaccine Makers
Microsoft has detected cyberattacks from three nation-state actors targeting seven prominent companies directly involved in researching vaccines and treatments for Covid-19. The targets include leading pharmaceutical companies and vaccine researchers in Canada, France, India, South Korea and the United States. The attacks came from Strontium,...
Bijay Pokharel,
November 14, 2020
1 min read
Stock Photo Site 123RF Has Suffered A Massive Data Breach | 8.3 Million User Records Exposed !
Popular stock photo site 123RF has suffered a massive data breach. Cybercriminal began selling database containing 8.3 million user records on a Darkweb. The stolen data includes a 123RF members’ full name, email address, MD5 hashed passwords, company name, phone number, address, PayPal email if...
Bijay Pokharel,
November 13, 2020
1 min read
Ransomware Group Turns To Facebook Ads
A ransomware group has started using hacked Facebook accounts to run ads publicly pressuring their ransomware victims into paying up, krebsonsecurity reports. On the evening of Monday, Nov. 9, an ad campaign apparently taken out by the Ragnar Locker Team began appearing on Facebook. The ad was designed to...
Bijay Pokharel,
November 11, 2020
3 min read
Recent Posts
Subscribe
Cybersecurity Newsletter
You have Successfully Subscribed!
Sign up for cybersecurity newsletter and get latest news updates delivered straight to your inbox. You are also consenting to our Privacy Policy and Terms of Use.