Learning from the Big Data Breaches of 2018

Guest article by Cybersecurity ProfessionalsWhat can we learn from the major data breaches of 2018?2018 was a major year for cybersecurity. With the introduction of GDPR, the public’s awareness of their cyber identities has vastly increased &#821… Continue reading Learning from the Big Data Breaches of 2018

Hackers Love Companies that Don’t Use Multifactor Authentication

It’s remarkable just how many significant security breaches could have been prevented if only multifactor authentication technology had been deployed. A lack of strong authentication is the reason behind the recent breach of the popular mobile a… Continue reading Hackers Love Companies that Don’t Use Multifactor Authentication

Smashing Security #086: Elon Musk submarine scams and 2FA bypass

Crypto scamming Thai cave scoundrels! $25 million to make anti-fake news videos! TimeHop data breach! Phone number port out scams!
All this and much much more is discussed in the latest edition of the award-winning “Smashing Security” podcast by comput… Continue reading Smashing Security #086: Elon Musk submarine scams and 2FA bypass

Data on 21 million users compromised in Timehop hack

Data collected by smartphone app Timehop on its entire customer base of 21 million users was compromised following a security incident, the company confirmed on its website on July 4. According to their statements, the breach was detected within two ho… Continue reading Data on 21 million users compromised in Timehop hack

Cyberespionage Group Steals Certificates to Sign Malware

A cyberespionage group has stolen code-signing certificates from D-Link and another Taiwanese technology company and used them to sign a backdoor program. BlackTech is a group of attackers known for targeting organizations from East Asia, particularly… Continue reading Cyberespionage Group Steals Certificates to Sign Malware

User info and social media ‘access tokens’ exposed in Timehop breach

Timehop, an app that resurfaces old posts from users’ social media profiles, has disclosed a breach in which users’ basic contact information was exposed, as well as “access tokens” that the app uses to gather information from users’ social media accounts. The names and email addresses of 21 million users were exposed, the company says. Of those users, about 4.7 million had their phone numbers also exposed. Timehop says it has deauthorized the access tokens, which are provided by its social media partners so the app can access that content. The company also forced all accounts to log out. When users try to log in again, they will also have to reauthenticate each social media site they want to use with Timehop in order to generate new, secure tokens. In a blog post Sunday disclosing the incident, Timehop stresses that the tokens do not give anyone access to private messages on Twitter, Instagram or […]

The post User info and social media ‘access tokens’ exposed in Timehop breach appeared first on Cyberscoop.

Continue reading User info and social media ‘access tokens’ exposed in Timehop breach