Changing Employee Security Behavior Takes More Than Simple Awareness

Designing a behavioral change program requires an audit of existing security practices and where the sticking points are. Continue reading Changing Employee Security Behavior Takes More Than Simple Awareness

Critical MobileIron RCE Flaw Under Active Attack

Attackers are targeting the critical remote code-execution flaw to compromise systems in the healthcare, local government, logistics and legal sectors, among others. Continue reading Critical MobileIron RCE Flaw Under Active Attack

Laser-Based Hacking from Afar Goes Beyond Amazon Alexa

The team that hacked Amazon Echo and other smart speakers using a laser pointer continue to investigate why MEMS microphones respond to sound. Continue reading Laser-Based Hacking from Afar Goes Beyond Amazon Alexa

Tesla Hacked and Stolen Again Using Key Fob

Belgian researchers demonstrate third attack on the car manufacturer’s keyless entry system, this time to break into a Model X within minutes. Continue reading Tesla Hacked and Stolen Again Using Key Fob

GoDaddy Employees Tricked into Compromising Cryptocurrency Sites

‘Vishing’ attack on GoDaddy employees gave fraudsters access to cryptocurrency service domains NiceHash, Liquid. Continue reading GoDaddy Employees Tricked into Compromising Cryptocurrency Sites

TA416 APT Rebounds With New PlugX Malware Variant

The TA416 APT has returned in spear phishing attacks against a range of victims – from the Vatican to diplomats in Africa – with a new Golang version of its PlugX malware loader. Continue reading TA416 APT Rebounds With New PlugX Malware Variant