Using memory encryption in web applications to help reduce the risk of Spectre attacks

There’s nothing quite like an actual proof-of-concept to make everyone listen. I was pleased by the PoC released by Google security engineers Stephen Röttger and Artur Janc earlier this month – in a nutshell, they showed how the Spectre vulnerabi… Continue reading Using memory encryption in web applications to help reduce the risk of Spectre attacks

Open-source tool BlobHunter helps pinpoint public Azure blobs that might contain sensitive files

CyberArk researchers have released BlobHunter, an open-source tool organizations can use to discover Azure blobs containing sensitive files they have inadvertently made public. The cloud storage misconfiguration problem The many advantages of using the… Continue reading Open-source tool BlobHunter helps pinpoint public Azure blobs that might contain sensitive files

Only 30% prepared to secure a complete shift to remote work

The biggest security concerns facing businesses are data leaking through endpoints (27%), loss of visibility of user activity (25%) and maintaining compliance with regulatory requirements (24%), DTEX Systems reveals. These concerns are followed by acce… Continue reading Only 30% prepared to secure a complete shift to remote work

Stress levels are rising, but that doesn’t have to mean more security incidents

For those working remotely during the pandemic, changes to how work is done have significantly increased stress levels – and when we’re stressed, we’re more likely to make mistakes that result in sensitive data being inadvertently put at risk. Our 2020… Continue reading Stress levels are rising, but that doesn’t have to mean more security incidents

45 Million Medical Images Left Exposed Online

A six-month investigation by CybelAngel discovered unsecured sensitive patient data available for third parties to access for blackmail, fraud or other nefarious purposes. Continue reading 45 Million Medical Images Left Exposed Online

RansomExx Ransomware Gang Dumps Stolen Embraer Data: Report

The group published files stolen from the Brazilian aircraft manufacturer in a ransomware attack last month. Continue reading RansomExx Ransomware Gang Dumps Stolen Embraer Data: Report

Brazil Govt’s Huge Leak: Health Data of 243M

Brazil’s Ministry of Health is under fire again for another massive leak of personal information.
The post Brazil Govt’s Huge Leak: Health Data of 243M appeared first on Security Boulevard.
Continue reading Brazil Govt’s Huge Leak: Health Data of 243M

Clop Gang Makes Off with 2M Credit Cards from E-Land

The ransomware group pilfered payment-card data and credentials for over a year, before ending with an attack last month that shut down many of the South Korean retailer’s stores. Continue reading Clop Gang Makes Off with 2M Credit Cards from E-Land

Cayman Islands Bank Records Exposed in Open Azure Blob

An offshore Cayman Islands bank’s backups, covering a $500 million investment portfolio, were left unsecured and leaking personal banking information, passport data and even online banking PINs. Continue reading Cayman Islands Bank Records Exposed in Open Azure Blob