Flaw in Iomega, LenovoEMC NAS devices exposes millions of files on the Internet

A vulnerability in legacy Iomega and LenovoEMC network-attached storage (NAS) devices has led to many terabytes of potentially sensitive data being accessible to anyone via the Internet. About Iomega and LenovoEMC Iomega Corporation was acquired in 200… Continue reading Flaw in Iomega, LenovoEMC NAS devices exposes millions of files on the Internet

LenovoEMC Storage Gear Leaks Sensitive Financial Data

Lenovo patches enterprise and SMB network attached storage devices for a vulnerability that leaked data to the public internet. Continue reading LenovoEMC Storage Gear Leaks Sensitive Financial Data

July 16, 2019 – Hack Naked News #227

    Zoom RCE flaw affecting RingCentral and Zhumu, a researcher releases PoC code for critical Atlassian Crowd RCE flaw, thousands of legacy Lenovo storage devices exposed millions of files, unusual Linux ransomware targets NAS servers, and how hacked … Continue reading July 16, 2019 – Hack Naked News #227

5 Essentials to Consider When Backing up Your Data

Data backup is very crucial for any business. It’s been said that a company is as good as the quality of its data backup plan. In a perfect world, if you have the best backup solution, your need for insurance is significantly reduced—a reliable … Continue reading 5 Essentials to Consider When Backing up Your Data

Windows® Domain Controller and Zero Trust Security

There’s a new security model being adopted in the IT world these days. It is known as Zero Trust Security, and you can see its instantiation in models such as Google® BeyondCorp. But, from a more practical standpoint, many IT admins are wond… Continue reading Windows® Domain Controller and Zero Trust Security

Researcher finds trove of political fundraising, old voter data on open internet

A consulting firm that works with Democratic campaigns unknowingly left sensitive fundraiser information and credentials to old voter record databases open on the internet, according to a report published on Wednesday. Cybersecurity company Hacken says it discovered an unprotected Network Attached Storage (NAS) device managed by Rice Consulting, a Maryland firm that provides fundraising and mass communication to Democratic clients. Authentication was reportedly disabled on the NAS, and Hacken says that it was indexed by Shodan, an Internet-of-Things search engine. With its contents publicly accessible, the NAS revealed details about Rice Consulting’s clients as well as details about “thousands of fundraisers,” Hacken says. Those details include names, phone numbers, emails, addresses and companies. There were apparently also contracts, meeting notes, desktop backups and employee details. Rice Consulting did not respond to an email request for comment on the Hacken report. When CyberScoop called the firm, the person who answered said […]

The post Researcher finds trove of political fundraising, old voter data on open internet appeared first on Cyberscoop.

Continue reading Researcher finds trove of political fundraising, old voter data on open internet

Robocallers, Netsparker, and LenovoEMC – Hack Naked News #191

This week, Robocallers get huge fines for spoofing phone numbers, 100,000 home routers used for Brazilian hacking scam, 85 reasons to update your Adobe PDF software, 9 NAS bugs open LenovoEMC, 5 major Security updates for Chrome extensions, and Twitter… Continue reading Robocallers, Netsparker, and LenovoEMC – Hack Naked News #191