Malicious Devices Can Capture Keystrokes, Other Sensitive Data from Leaky USB Hubs

Digital security common sense says you should never plug an unauthorized device like an unknown Universal Serial Bus (USB) into your computer. Of course, logic doesn’t always reign supreme when it comes to using a computer. We saw this on display at Black Hat USA 2016 when Google’s anti-abuse research team shared an experiment for […]… Read More

The post Malicious Devices Can Capture Keystrokes, Other Sensitive Data from Leaky USB Hubs appeared first on The State of Security.

Continue reading Malicious Devices Can Capture Keystrokes, Other Sensitive Data from Leaky USB Hubs

Acute Care Center Notifies Patients of Medical Records Security Incident

An acute care center has begun notifying patients of a security incident that might have compromised their medical records. In the late spring of 2017, UC Health first learned about a security event affecting the Daniel Drake Center for Post-Acute Care (DDC), one of its health system members. Between 29 July 2015 and 2 June […]… Read More

The post Acute Care Center Notifies Patients of Medical Records Security Incident appeared first on The State of Security.

Continue reading Acute Care Center Notifies Patients of Medical Records Security Incident

Facebook Password Stealer Pilfers Data from Wannabe Attackers

A “Facebook password stealer” is capable of covertly pilfering sensitive information from any wannabe attacker who uses it. On 3 August, a security researcher by the name of MalwareHunterTeam tweeted about the credential-collecting tool’s hidden nature. This “Facebook Password Stealer” not only will send your credentials to an actor instead of hacking your target, but […]… Read More

The post Facebook Password Stealer Pilfers Data from Wannabe Attackers appeared first on The State of Security.

Continue reading Facebook Password Stealer Pilfers Data from Wannabe Attackers

High Schooler Receives $10K Award for Reporting Bug to Google

A high school student has received a $10,000 bug bounty award for reporting a security vulnerability in Google’s App Engine. Back in July, 17-year-old Ezequiel Pereira decided to use the Burp Suite graphical tool to test the web application security of Google’s App Engine. He wanted to see if he could access pages protected by […]… Read More

The post High Schooler Receives $10K Award for Reporting Bug to Google appeared first on The State of Security.

Continue reading High Schooler Receives $10K Award for Reporting Bug to Google

Nationwide and Subsidiary Agree to $5.5M Settlement for 2012 Data Breach

Nationwide and one of its wholly owned subsidiaries have agreed to a $5.5 million settlement for a data breach that occurred in 2012. On 9 August, the Ohio-based insurance corporation along with Allied Property & Casualty Insurance Company agreed to the “Assurance of Voluntary Compliance” (PDF) with 33 Attorneys General of Alaska, Arizona, Arkansas, Connecticut, […]… Read More

The post Nationwide and Subsidiary Agree to $5.5M Settlement for 2012 Data Breach appeared first on The State of Security.

Continue reading Nationwide and Subsidiary Agree to $5.5M Settlement for 2012 Data Breach