Industry Spotlight - Security Boulevard https://securityboulevard.com/category/sb/sb-industry-spotlight/ The Home of the Security Bloggers Network Fri, 20 Oct 2023 15:10:39 +0000 en-US hourly 1 https://wordpress.org/?v=6.3.2 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png Industry Spotlight - Security Boulevard https://securityboulevard.com/category/sb/sb-industry-spotlight/ 32 32 133346385 KeePass Malicious Ads: Google Goof Permits Punycode Attacks Again https://securityboulevard.com/2023/10/keepass-malicious-ads-punycode-richixbw/ Fri, 20 Oct 2023 15:10:39 +0000 https://securityboulevard.com/?p=1993030 ķ≠k

Mote below k: Not only malvertising, but also “verified by Google.”

The post KeePass Malicious Ads: Google Goof Permits Punycode Attacks Again appeared first on Security Boulevard.

]]>
1993030
Use of QR Codes in Phishing Campaigns is on the Rise https://securityboulevard.com/2023/10/use-of-qr-codes-in-phishing-campaigns-is-on-the-rise/ Thu, 19 Oct 2023 13:56:56 +0000 https://securityboulevard.com/?p=1992905 QR code phishing

QR codes are quickly becoming a favorite tool of bad actors looking to launch phishing attacks, with one cybersecurity vendor saying the strategy appeared in 22% of phishing campaigns it detected in the first weeks of October. The numbers collected by Hoxhunt feed into the growing amount of data detailing the rise of such QR-based..

The post Use of QR Codes in Phishing Campaigns is on the Rise appeared first on Security Boulevard.

]]>
1992905
EPA Withdraws Cybersecurity Requirements for Water Systems https://securityboulevard.com/2023/10/epa-withdraws-cybersecurity-requirements-for-water-systems/ Tue, 17 Oct 2023 14:17:58 +0000 https://securityboulevard.com/?p=1992614 cybersecurity EPA water

The Environmental Protection Agency in March ordered states to begin assessing the cybersecurity of their public water systems, a part of the Biden Administration’s multi-pronged effort to shore up the protections around the country’s critical infrastructure operations. Seven months later, the agency is withdrawing the order in the wake of a legal challenge filed by..

The post EPA Withdraws Cybersecurity Requirements for Water Systems appeared first on Security Boulevard.

]]>
1992614
Cisco Zero-Day: As Bad as it Gets — and No Fix 4 Weeks in https://securityboulevard.com/2023/10/cisco-0day-cve-2023-20198-richixbw/ Tue, 17 Oct 2023 14:06:25 +0000 https://securityboulevard.com/?p=1992600 The Golden Gate Bridge, under an blood-red sky

Keeping us in suspense—It doesn’t get worse than this: CVE-2023-20198 is CVSS=10.

The post Cisco Zero-Day: As Bad as it Gets — and No Fix 4 Weeks in appeared first on Security Boulevard.

]]>
1992600
RomCom Malware Group Targets EU Gender Equality Summit https://securityboulevard.com/2023/10/romcom-malware-group-targets-eu-gender-equality-summit/ Mon, 16 Oct 2023 19:01:49 +0000 https://securityboulevard.com/?p=1992496 RomCom malware cybersecurity espionage

A hacker group that continues to extend its reach from financially motivated attacks into cyber-espionage this summer targeted attendees of a gender equality conference with a pared-down version of the RomCom remote access trojan (RAT). Void Rabisu – also known as Tropical Scorpius, Storm-0978, and UNC2596 – in August leveraged the fourth version of the..

The post RomCom Malware Group Targets EU Gender Equality Summit appeared first on Security Boulevard.

]]>
1992496
Elon’s CSAM FAIL: Twitter Fined by Australian Govt. https://securityboulevard.com/2023/10/csam-twitter-x-australia-richixbw/ Mon, 16 Oct 2023 16:42:08 +0000 https://securityboulevard.com/?p=1992479 A caricature of Elon Musk

Straya strikes back: Musk’s mob declines to answer questions, breaking law dunundah.

The post Elon’s CSAM FAIL: Twitter Fined by Australian Govt. appeared first on Security Boulevard.

]]>
1992479
Microsoft Launches an AI Bug Bounty Program https://securityboulevard.com/2023/10/microsoft-launches-an-ai-bug-bounty-program/ Mon, 16 Oct 2023 15:40:01 +0000 https://securityboulevard.com/?p=1992474 vulnerable Bugcrowd to Advance DevSecOps

As Microsoft aggressively integrates AI into its broad portfolio of products and services, the IT giant now is looking for help to ensure they are free of vulnerabilities. The company this month unveiled a new bug bounty program that will pay between $2,000 and $15,000 for flaws found in its AI-powered Bing offerings, including its..

The post Microsoft Launches an AI Bug Bounty Program appeared first on Security Boulevard.

]]>
1992474
NSA Releases EliteWolf GitHub Repository for Securing OT Environments https://securityboulevard.com/2023/10/nsa-releases-elitewolf-github-repository-for-securing-ot-environments/ Fri, 13 Oct 2023 16:03:10 +0000 https://securityboulevard.com/?p=1992361 NSA cybersecurity OT

The National Security Agency released a code repository in GitHub to make it easier for critical infrastructure organizations and similar entities to better identify and detect potentially malicious activities in their operational technology (OT) environments. The agency announced this week that it released the repository for OT Intrusion Detection Signatures and Analytics to the NSA..

The post NSA Releases EliteWolf GitHub Repository for Securing OT Environments appeared first on Security Boulevard.

]]>
1992361
Stalking: Fear of Apple AirTag ‘Explodes’ — Lawsuit Momentum Grows https://securityboulevard.com/2023/10/stalker-apple-airtag-class-action-richixbw/ Fri, 13 Oct 2023 15:26:12 +0000 https://securityboulevard.com/?p=1992353 November 25 is the international day against domestic violence

This is why we can’t have nice things: 38 victims of Apple’s “negligence” named in amended class action.

The post Stalking: Fear of Apple AirTag ‘Explodes’ — Lawsuit Momentum Grows appeared first on Security Boulevard.

]]>
1992353
Hackers Still Abusing LinkedIn Smart Links in Phishing Attacks https://securityboulevard.com/2023/10/hackers-still-abusing-linkedin-smart-links-in-phishing-attacks/ Thu, 12 Oct 2023 17:37:42 +0000 https://securityboulevard.com/?p=1992257 LinkedIn phishing

Email security firm Cofense in 2022 uncovered a phishing campaign that abused LinkedIn’s Smart Links feature to redirect unsuspecting victims to malicious websites, another example of bad actors using a trusted source to bypass security measures and reach users. At the time, hackers were using the phishing campaign to convince users that the Slovakian Postal..

The post Hackers Still Abusing LinkedIn Smart Links in Phishing Attacks appeared first on Security Boulevard.

]]>
1992257