Ransomware Attack Takes Down Airport’s Flight Information Screens

A ransomware attack prevented an English airport from using its flight information screens to assist passengers in their travels. On 13 September, Bristol Airport tweeted out that its flight information systems were experiencing technical difficulties…. Continue reading Ransomware Attack Takes Down Airport’s Flight Information Screens

ICO Receiving 500 Breach-Related Calls a Week Since GDPR Took Effect

The United Kingdom’s Information Commissioner’s Office (ICO) has been receiving 500 calls pertaining to data breaches since the European Union’s General Data Protection Regulation (GDPR) took effect. Speaking before hundreds of senior… Continue reading ICO Receiving 500 Breach-Related Calls a Week Since GDPR Took Effect

OilRig Launching Attack Campaigns With Updated BONDUPDATER Trojan

The OilRig group conducted at least one attack campaign containing an updated variant of the BONDUPDATER trojan as its final payload. In August 2018, Palo Alto Networks’ Unit 42 threat research team detected an OilRig campaign targeting a high-ra… Continue reading OilRig Launching Attack Campaigns With Updated BONDUPDATER Trojan

Beware the Homeless Homebuyer Real Estate Scam!

Security professionals are warning users who are or soon will be engaged in real estate transactions to watch out for the “homeless homebuyer” scam. On 10 September, Verdict built upon its coverage of account takeover attacks found in its t… Continue reading Beware the Homeless Homebuyer Real Estate Scam!

Tesla Encouraging “Good Faith” Security Research in Bug Bounty Program

Electric vehicle manufacturer Tesla is encouraging what it calls “good faith” security research in its bug bounty program. In its vulnerability disclosure program, Tesla says it welcomes “the community to participate in our responsibl… Continue reading Tesla Encouraging “Good Faith” Security Research in Bug Bounty Program

Compromised Chrome Extension Snooped on Users’ Credentials, Cryptocurrency Private Keys

Someone compromised a Google Chrome extension with malicious code designed to snoop on users’ account credentials and cryptocurrency private keys. On 4 September, a security researcher who goes by the name “SerHack” tweeted out a warn… Continue reading Compromised Chrome Extension Snooped on Users’ Credentials, Cryptocurrency Private Keys

Police Investigating Data Breach at Chinese Hotel Group

Local authorities are currently investigating a data breach at a Chinese hotel group that could have exposed customers’ personal information. According to the Xinhua state news agency, Shanghai police launched an investigation into a data securit… Continue reading Police Investigating Data Breach at Chinese Hotel Group

Air Canada Alerts Customers of Mobile App Breach, 20,000 Users Affected

Air Canada announced on Wednesday that approximately 20,000 customers may have had their personal information compromised after a data breach in its mobile app. As a result, the airline says it locked down all 1.7 million accounts until users upda… Continue reading Air Canada Alerts Customers of Mobile App Breach, 20,000 Users Affected

Instagram to Support Authenticator Apps for Improved 2FA Feature

Instagram announced its plan to support third-party authenticator apps as part of an improved two-factor authentication (2FA) feature. On 28 August, Instagram co-founder and CTO Mike Krieger unveiled the photo- and video-sharing social networking servi… Continue reading Instagram to Support Authenticator Apps for Improved 2FA Feature

Bank of Spain Reveals Its Website Suffered a DoS Attack

The Bank of Spain revealed that bad actors used a denial-of-service (DoS) attack to temporarily disrupt access to its website. On 27 August, a spokesperson for Spain’s central bank disclosed the attack. They clarified that that incident didn&#821… Continue reading Bank of Spain Reveals Its Website Suffered a DoS Attack