Smashing Security podcast #190: Twitter hack arrests, email bad behaviour, and Fawkes vs facial recognition

Special guest Geoff White can’t resist using the podcast to promote his new book, “Crime Dot Com”, but other than that we also discuss the creepy (and apparently legal) way websites can find out your email and postal address even if y… Continue reading Smashing Security podcast #190: Twitter hack arrests, email bad behaviour, and Fawkes vs facial recognition

Twitter says a “phone spear phishing” attack helped hackers – what’s that?

What’s a phone spear phishing attack? Twitter shares some more details related to its serious security breach earlier this month which saw celebrity accounts tweeting a cryptocurrency scam.
Continue reading Twitter says a “phone spear phishing” attack helped hackers – what’s that?

Zoom bug meant attackers could brute force their way into password-protected meetings

Zoom has patched a security hole that could have allowed attackers to break their way into password-protected private calls. The flaw, discovered by SearchPilot’s Tom Anthony, meant that hackers and spies could have broken into private password-p… Continue reading Zoom bug meant attackers could brute force their way into password-protected meetings

Smashing Security podcast #189: DNA cock-up, Garmin hack, and virtual kidnappings

Why are students faking their own kidnappings? What’s the story behind Garmin’s ransomware attack? And a genetic genealogy website suffers a hack or two.
All this and much more is discussed in the latest edition of the award-winning “… Continue reading Smashing Security podcast #189: DNA cock-up, Garmin hack, and virtual kidnappings

Thousands of websites at risk from critical WordPress commenting plugin vulnerability

A critical vulnerability in a third-party comments plugin installed on over 70,000 websites running WordPress could allow hackers to execute malicious code remotely.
If you’re using the wpDIscuz commenting plugin, make sure you’ve kept it u… Continue reading Thousands of websites at risk from critical WordPress commenting plugin vulnerability

Bank of Ireland fined €1.66 million after being tricked by fraudster

One of Ireland’s largest banks, Bank of Ireland, has been fined almost €1.7 million after regulators discovered it had failed to inform financial regulators and the police after a fraudster tricked them into transferring funds from a client&#8217… Continue reading Bank of Ireland fined €1.66 million after being tricked by fraudster