How a Smart Coffee Machine Infected a PLC Monitoring System with Ransomware

Once upon a time, operational technology (OT) enjoyed little-to-no connectivity with the web. Industrial system attack surfaces were quite small, with physical access acting as the overriding attack vector in many security incidents that did occur (including Stuxnet). It was a simpler time. But all that changed with the Industrial Internet of Things (IIoT). Manufacturing […]… Read More

The post How a Smart Coffee Machine Infected a PLC Monitoring System with Ransomware appeared first on The State of Security.

Continue reading How a Smart Coffee Machine Infected a PLC Monitoring System with Ransomware

Google Blocks New Spyware Family from Android Devices

Google has blocked a new family of spyware that abused distribution channels like the Play Store to target Android users. On 26 July, the tech giant announced it had detected 20 apps infected with Lipizzan spyware. Google has since blocked those apps and their developers from the Android ecosystem. It has also notified the fewer […]… Read More

The post Google Blocks New Spyware Family from Android Devices appeared first on The State of Security.

Continue reading Google Blocks New Spyware Family from Android Devices

400K UniCredit Customers Affected by Two Data Breaches

Hackers potentially gained unauthorized access to the personal loan accounts belonging to 400,000 customers of UniCredit. On 26 July, the Italian global banking and financial services company sent out an email statement to affected customers. It says the two data breaches occurred in September and October 2016 and June and July 2017. The notice also […]… Read More

The post 400K UniCredit Customers Affected by Two Data Breaches appeared first on The State of Security.

Continue reading 400K UniCredit Customers Affected by Two Data Breaches

Hackers Stole and Then Dumped $8.4M Worth of Veritaseum Tokens

Hackers stole $8.4 million worth of Veritaseum tokens before dumping all of them just a few hours later. On 24 July, Veritaseum (VERI) founder and American entrepreneur Reggie Middleton confirmed the security incident in a post submitted to Bitcoin Forum: “We were hacked, possibly by a group. The hack seemed to be very sophisticated, but […]… Read More

The post Hackers Stole and Then Dumped $8.4M Worth of Veritaseum Tokens appeared first on The State of Security.

Continue reading Hackers Stole and Then Dumped $8.4M Worth of Veritaseum Tokens

Phishers Targeting Bank of America Customers’ Personal and Financial Data

Phishers are running a scam through a Russian hosting provider that’s designed to target Bank of America customers’ data. On 21 July, HackRead came across the ploy. Those responsible for the ruse impersonate financial representatives working for the second largest bank in the United States. Under that disguise, the scammers send out emails informing a […]… Read More

The post Phishers Targeting Bank of America Customers’ Personal and Financial Data appeared first on The State of Security.

Continue reading Phishers Targeting Bank of America Customers’ Personal and Financial Data

7 Not-to-Miss Presentations at Black Hat USA 2017

The excitement is building for Black Hat USA 2017. To help attendees get the most out of the event, I’ve assembled just a few of the presentations that will no doubt make this year’s conference a memorable one. These talks range in topic from mobile network vulnerabilities to breaking electronic door locks to new solutions […]… Read More

The post 7 Not-to-Miss Presentations at Black Hat USA 2017 appeared first on The State of Security.

Continue reading 7 Not-to-Miss Presentations at Black Hat USA 2017