AT&T Announces Launch of Public Bug Bounty Program

American multinational conglomerate holding company AT&T has announced the launch of its public bug bounty program on HackerOne. Revealed on 6 August, the new program will award security researchers who submit reports on eligible vulnerabilities th… Continue reading AT&T Announces Launch of Public Bug Bounty Program

Murfreesboro Discloses Security Incident Involving Water Resources Portal

The City of Murfreesboro has disclosed a security incident involving the online portal for its Water Resources Customer webpage. In early August, IT personnel for the Rutherford County municipality detected some security issues affecting the online por… Continue reading Murfreesboro Discloses Security Incident Involving Water Resources Portal

CISA Warns of Insecure CAN Bus Networks Affecting Aircraft

The Cybersecurity and Infrastructure Security Agency (CISA) has warned of insecure CAN bus network implementations affecting aircraft. On 30 July, CISA explained that attackers could target aircraft by exploiting insecure implementations of their CAN b… Continue reading CISA Warns of Insecure CAN Bus Networks Affecting Aircraft

Gadsden Independent School District Discloses Malware Attack

Gadsden Independent School District (GISD) announced that it was working to recover from a malware infection on its network. Travis L. Dempsey, superintendent of the Sunland Park school district, posted a notice about the attack on GISD’s website… Continue reading Gadsden Independent School District Discloses Malware Attack

Sephora Reveals Breach Might Have Affected Southeast Asian Customers

Sephora has revealed that a data breach might have exposed the personal information of customers based in Southeast Asia, Australia and New Zealand. On 29 July, the multinational chain of personal care and beauty stores sent out a notice announcing tha… Continue reading Sephora Reveals Breach Might Have Affected Southeast Asian Customers

Greece, Spain to Be Fined for Not Transposing EU Data Protection Law

The European Union (EU) Commission decided to refer both Greece and Spain to the EU Court for not transposing the Data Protection Law Enforcement Directive, Directive (EU) 2016/680 into national law. On 25 July, the European Commission called upon the … Continue reading Greece, Spain to Be Fined for Not Transposing EU Data Protection Law

Johannesburg Electricity Provider Falls Victim to Ransomware Attack

A company responsible for providing electricity to the South African city of Johannesburg disclosed that it fell victim to a ransomware attack. On 25 July, City Power disclosed on Twitter how the attack had affected all of its databases and application… Continue reading Johannesburg Electricity Provider Falls Victim to Ransomware Attack

Three Romanians Receive Jail Time for Perpetrating Phishing Scheme

Three Romanian individuals have received jail time for perpetuating a multi-million dollar phishing scheme in the United States. On 24 July, the U.S. Attorney’s Office for the Northern District of Georgia announced that Teodor Laurentiu Costea, R… Continue reading Three Romanians Receive Jail Time for Perpetrating Phishing Scheme

Three Adware Apps Used Clever Tactics to Hide on Android Devices

Researchers detected three apps that leverage clever tactics to hide on Android devices so that they can display adware to users. The three adware distributors (com.colors.drawing.coloring, hd4k.wallpapers.backgrounds, and launcher.call.recorder) each … Continue reading Three Adware Apps Used Clever Tactics to Hide on Android Devices

Google Raises Award Amounts for Chromium Bug Bounty Program

Google has raised the award amounts for security researchers who submit eligible vulnerability reports under its Chromium bug bounty program. On 18 July, Natasha Pabrai and Andrew Whalley of the Chrome Security Team announced that the Chromium Vulnerab… Continue reading Google Raises Award Amounts for Chromium Bug Bounty Program