U.S., allies warn of rising recent and future attacks on managed service providers

The internationally coordinated notice offers specific best practices for MSPs and customers amid warnings of increasing threats.

The post U.S., allies warn of rising recent and future attacks on managed service providers appeared first on CyberScoop.

Continue reading U.S., allies warn of rising recent and future attacks on managed service providers

U.S., allies warn of rising recent and future attacks on managed service providers

The internationally coordinated notice offers specific best practices for MSPs and customers amid warnings of increasing threats.

The post U.S., allies warn of rising recent and future attacks on managed service providers appeared first on CyberScoop.

Continue reading U.S., allies warn of rising recent and future attacks on managed service providers

CISA warns ‘most serious’ Log4j vulnerability likely to affect hundreds of millions of devices

Cybersecurity and Infrastructure Security Agency Director Jen Easterly told industry leaders in a phone briefing Monday that a vulnerability in a widely-used logging library “is one of the most serious I’ve seen in my entire career, if not the most serious.” “We expect the vulnerability to be widely exploited by sophisticated actors and we have limited time to take necessary steps in order to reduce the likelihood of damage,” she said of the Apache Log4j flaw. The issue is an unauthenticated remote execution vulnerability that could allow an intruder to take over an affected device.  Hundreds of millions of devices are likely to be affected, said Jay Gazlay of CISA’s vulnerability management office in the call with critical infrastructure owners and operators.   CISA, a component of the Department of Homeland Security, is setting up a dedicated website as soon as Tuesday to provide information and counter “active disinformation,” said Eric […]

The post CISA warns ‘most serious’ Log4j vulnerability likely to affect hundreds of millions of devices appeared first on CyberScoop.

Continue reading CISA warns ‘most serious’ Log4j vulnerability likely to affect hundreds of millions of devices

Traditional Samoan plant rivals anti-inflammatory effects of ibuprofen

Researchers have identified the anti-inflammatory mechanism behind a plant used for centuries in traditional Samoan medicine. The new study found the plant, known as matalafi, is as effective at reducing inflammation as ibuprofen.Continue ReadingCatego… Continue reading Traditional Samoan plant rivals anti-inflammatory effects of ibuprofen

White House set to lead 30 nations in ransomware discussions, sans Russia

The White House on Wednesday and Thursday will convene meetings with representatives from more than 30 countries to discuss how to counter ransomware, leaving out the country the president most frequently criticizes for hosting gangs of hackers: Russia. “Participants will cover everything from efforts to improve national resilience, to experiences addressing the misuse of virtual currency to launder ransom payments, our respective efforts to disrupt and prosecute ransomware criminals and diplomacy as a tool to counter ransomware,” a senior administration official told reporters on Tuesday. The official didn’t specify why Russia didn’t get an invitation beyond unnamed “constraints.” The lack of an invitation this time “doesn’t preclude future opportunities for them to participate.” The U.S. also has other avenues for discussing ransomware with the Kremlin, the official said. The lack of an invitation for Russia exemplifies the tensions over when the U.S. might involve more adversarial nations in discussions over […]

The post White House set to lead 30 nations in ransomware discussions, sans Russia appeared first on CyberScoop.

Continue reading White House set to lead 30 nations in ransomware discussions, sans Russia

Android flubot malware installs itself by faking security update

By Deeba Ahmed
The warning is obviously phony but looks authentic that can deceive users into installing Flubot malware on their devices.
This is a post from HackRead.com Read the original post: Android flubot malware installs itself by faking security… Continue reading Android flubot malware installs itself by faking security update

Tyk raises $35M for its open-source, open-ended approach to enterprise API management

APIs are the grease turning the gears and wheels for many organizations’ IT systems today, but as APIs grow in number and use, tracking how they work (or don’t work) together can become complex and potentially critical if something goes awry. Now, a startup that has built an innovative way to help with this is […] Continue reading Tyk raises $35M for its open-source, open-ended approach to enterprise API management

Operation Overlord, June 6, 1944

“… these men came here – British and our Allies, and Americans – to storm these beaches for one purpose only, not to gain anything for ourselves, not to fulfill any ambitions that America had for conquest, but just to preserve freedom. . . . Many thou… Continue reading Operation Overlord, June 6, 1944

‘Cybersecurity incident’ hampers non-urgent care at hospitals in New Zealand

Health officials in New Zealand have for multiple days been dealing with a “cybersecurity incident” that has hindered non-urgent care at multiple hospitals south of the capital of Auckland. Local media are reporting that ransomware is the cause. The IT systems of Waikato District Health Board, which oversees health services for 425,000 people on New Zealand’s North Island, have been offline as government cyber officials investigate the cause of the incident.  The investigation is ongoing, “but [we] are working on the theory that the initial incursion was via an email attachment,” the health board said in statement Wednesday. Emergency care continues, but the disruption has caused some elective surgeries to be postponed at one of the health board’s facilities, Waikato Hospital, “while a number of outpatient clinics have been reduced,” the board said. Some of the outpatient clinics that have been affected include those dealing with respiratory illness and infectious […]

The post ‘Cybersecurity incident’ hampers non-urgent care at hospitals in New Zealand appeared first on CyberScoop.

Continue reading ‘Cybersecurity incident’ hampers non-urgent care at hospitals in New Zealand

The Week in Breach News: 02/24/21 – 03/02/21

Bombardier and Steris get caught up in a third-party data breach, Cryptopia gets hacked again and see what huge percentage of data breaches are caused by email!
The post The Week in Breach News: 02/24/21 – 03/02/21 appeared first on Security Boulevard.
Continue reading The Week in Breach News: 02/24/21 – 03/02/21