Posts From CCME

A Canadian laboratory testing company has made a payment to secure the sensitive information of millions of customers that was exposed during a cyber-attack. LifeLabs opted to pay up after criminals gained unauthorized access to the information of 15 million

Over 1000 US schools have now been affected by ransomware so far this year, according to new data from Armor. The security vendor claimed to have discovered 11 new school districts comprised of 226 schools that have been compromised by

A bill designed to enhance the cybersecurity of K-12 schools was introduced to the US House of Representatives on Monday. If passed into law, the K-12 Cybersecurity Act would require the Department of Homeland Security (DHS) to create a list

A digital consultancy has accidentally leaked the personal details of thousands of US defense contractor employees after yet another misconfiguration of cloud infrastructure, it has emerged. Washington DC-based IMGE accidentally exposed the names, phone numbers, home and email addresses of

Facebook is expanding its fact-checking program on Instagram globally to help combat the rising tide of misinformation on the social site. The social network started working with third-party fact-checkers in the US back in May. If content is assessed as

Experts discovered that at least 200 companies were the victims of a campaign, dubbed Gangnam Industrial Style, carried out by an advanced persistent threat (APT) group.  Experts from the CyberX’s threat intelligence team Section 52 uncovered an ongoing cyberespionage campaign, tracked as

Researchers spotted a new Remote Access Trojan (RAT), dubbed Dacls, that was used by the Lazarus APT group to target both Windows and Linux devices. Experts at Qihoo 360 Netlab revealed that the North-Korea Lazarus APT group used a new

Researchers discovered a new firmware vulnerability in TP-link Archer C5 (v4) routers Let the attacker gain an Admin Password, and allow them remote takeover the router. Once the vulnerability has successfully exploited, a remote attacker takes over the router configurated

An internal whistleblower has raised concerns about the cybersecurity of Minnesota’s largest health insurer, BlueCross BlueShield. As reported yesterday by the Star Tribune newspaper, the whistleblower expressed concern that BlueCross BlueShield had left its system vulnerable to attack by neglecting

A Chinese online retailer with a huge North American fanbase has leaked more than 1 terabyte of customer data. The major breach in the security of LightInTheBox was discovered by researchers at vpnmentor on November 20. Researchers were able to

New Jersey’s largest hospital health network has paid threat actors an undisclosed sum to restore data compromised in a cyber-attack. Hackensack Meridian Health’s computer systems were shut down after being infected with ransomware on Monday, December 2. The attack caused

WhatsApp fixed a severe bug that could have allowed a malicious group member to crash the messaging app for all members of the same group. WhatsApp addressed a severe vulnerability that could have allowed a malicious group member to crash

A new Whatsapp bug that allows hackers to crash the WhatsApp by sending a single destructive group chat message for all the group members and delete all the group’s chat history. Security researchers from Checkpoint discovered the bug buy manipulating

TP-Link has addressed a critical vulnerability impacting some TP-Link Archer routers that could allow attackers to login without passwords. TP-Link addressed a critical zero-day vulnerability (CVE-2017-7405) in its TP-Link Archer routers that could be exploited by attackers to remotely take

Spammers behind one of the most prolific botnets of recent years have begun bombarding users with Christmas-themed phishing lures, according to researchers. Phishing emails sent by the Emotet botnet were spotted by Cofense Labs. With typical subject lines such as

Despite the importance of setting strong passwords, users continue to setup week passwords which are easy to guess for an attacker. A strong password is key to protect your digital assets. Here is the list of Worst Passwords 2019 Memorizing