Smashing Security podcast #334: Acoustic attacks, and the tears of a crypto rapper

Razzlekhan, the self-proclaimed Crocodile of Wall Street, pleads guilty to the biggest crypto laundering scheme in history, and just how safe are you typing while on a Zoom call?

Meanwhile, Graham rants about public EV chargers.

All this and more… Continue reading Smashing Security podcast #334: Acoustic attacks, and the tears of a crypto rapper

Ransomware attacks cost manufacturing sector $46 billion in downtime since 2018, report claims

Newly-released research reveals the eye-watering costs that the manufacturing sector has suffered in recent years at the hands of ransomware.

Read more in my article on the Tripwire State of Security blog. Continue reading Ransomware attacks cost manufacturing sector $46 billion in downtime since 2018, report claims

Smashing Security podcast #333: Barbie and the stalking spouse

Carole takes us into the sinister side of Barbie, while Graham describes a stalkerware operation that has been spilling its secrets.

All this and more is discussed in the latest edition of the “Smashing Security” podcast by cybersecurity veterans Gr… Continue reading Smashing Security podcast #333: Barbie and the stalking spouse

Flaw in Ninja Forms WordPress plugin allows hackers to steal submitted data

Critical security vulnerabilities in a WordPress plugin used on around 900,000 websites, allow malicious hackers to steal sensitive information entered on forms.

Read more in my article on the Hot for Security blog. Continue reading Flaw in Ninja Forms WordPress plugin allows hackers to steal submitted data

Heart monitor manufacturer hit by cyberattack, takes systems offline

CardioComm, a Canadian company which provides heart-monitoring technology to hospitals and consumers, has revealed that it has been forced to take its systems offline following a cyberattack.

Read more in my article on the Hot for Security blog. Continue reading Heart monitor manufacturer hit by cyberattack, takes systems offline

SEC requires firms to report cyberattacks within 4 days, but not everyone may like it

New rules requiring publicly-listed firms to disclose serious cybersecurity incidents within four days have been adopted by the US Securities and Exchange Commission (SEC).

The tough new rules, although undoubtedly well-intentioned, are likely to le… Continue reading SEC requires firms to report cyberattacks within 4 days, but not everyone may like it

Smashing Security podcast #332: Nudes leak at the plastic surgery, Mali mail mix-up, and WormGPT

Dr 90210 finds himself in a sticky situation after his patients’ plastic surgery photos AND more end up in the hands of hackers, emails to the US military end up in the wrong hands, and script kiddies salivate at the thought of Business Email Compromis… Continue reading Smashing Security podcast #332: Nudes leak at the plastic surgery, Mali mail mix-up, and WormGPT