Google Prepares Security Team to Investigate Third-Party Apps

Google is preparing a new security initiative and building a new team with a single purpose — to investigate sensitive applications available through the Google Play Store. Google scans all Android apps for malware before uploading them to the Play Sto… Continue reading Google Prepares Security Team to Investigate Third-Party Apps

Fake npm Packages Found in GitHub Repository

Security researchers discovered four vulnerable npm packages uploaded to GitHub that were capable of collecting the user’s IP address, geolocation and device hardware data. Not all attacks have a high-visibility profile. Some threat actors use much mor… Continue reading Fake npm Packages Found in GitHub Repository

NCSC Warns Admins Not to Disable Updates to Keep Flash Alive in 2021

A dire warning came from UK’s National Cyber Security Centre (NCSC), advising IT administrators not to disable the update mechanism to keep Adobe Flash past its end-of-life date, set for the end of 2020. It’s been a long time coming. Adobe Flash is fin… Continue reading NCSC Warns Admins Not to Disable Updates to Keep Flash Alive in 2021

Linux and macOS Versions of Commercial ‘Malware’ FinSpy Found Online by Amnesty International

Amnesty International revealed the existence of Linux and macOS variants of FinSpy, a commercially available spy suite used extensively by threat actors, as well as law enforcement agencies and government from around the world. Criminals are not respon… Continue reading Linux and macOS Versions of Commercial ‘Malware’ FinSpy Found Online by Amnesty International

Hacker Steals $7.5 Million from Maryland Non-Profit by Compromising Employee’s Personal Computer

A hacker stole $7.5 million from the endowment funds of The Jewish Federation of Greater Washington, a non-profit from Maryland in the US. Such security incidents perfectly illustrate the dangers of working from home, as the hacker compromised the pers… Continue reading Hacker Steals $7.5 Million from Maryland Non-Profit by Compromising Employee’s Personal Computer

Data Breach at Roper St. Francis Hospital Affects 6,000 Patients

Roper St. Francis Hospital (RSFH) has reported that 6,000 patients are directly affected by a data breach that allowed attackers to steal their medical records and other personal information. Healthcare private data is one of the most valuable commodit… Continue reading Data Breach at Roper St. Francis Hospital Affects 6,000 Patients