TikTok’s national security risk warrants ban, Supreme Court rules

A law to ban TikTok in the United States by Sunday was upheld by the Supreme Court in a ruling Friday morning that emphasized national security concerns over the app’s collection of US citizens’ data. The ruling could set the stage for future regulations regarding the collection of data by foreign-owned companies and furthers the […]

More robust US cybersecurity sought by last-minute Biden executive order

Outgoing President Joe Biden has moved to bolster U.S. cybersecurity with a last-minute executive order ahead of President-elect Donald Trump’s inauguration on Monday, reports SiliconAngle. Aside from subjecting government IT contractors to minimum cybersecurity standards, Biden’s EO also broadens sanctions against foreign cyber adversaries, mandates new cryptographic standards for federal agencies, orders the development of artificial intelligence-based tools […]

New Star Blizzard attacks set sights on WhatsApp accounts

Malicious emails under the guise of a U.S. government official sought to lure individuals part of the government and diplomacy sectors into joining a WhatsApp group on non-governmental initiatives for Ukraine NGOs through a shortened link that redirected to a webpage seeking a QR code scan. Source link

Trojanized images leveraged in separate malware campaigns

Images laced with malicious code uploaded to file-hosting site archive[.]org have been leveraged to facilitate the deployment of the VIP Keylogger and Obj3ctivity Stealer payloads in separate phishing campaigns, according to The Hacker News. Both campaigns involved the distribution of malicious emails purporting to be invoices, purchase orders, or quotation requests with attachments, which when opened triggers a […]

Over 15K Fortinet FortiGate firewalls’ data exposed

Newly emergent threat operation Belsen Group has leaked more than 15,000 Fortinet FortiGate firewalls‘ sensitive data for free in BreachForums, reports Security Affairs. Included in the exposed firewall data are IP addresses, passwords, and configuration files, said Belsen Group in its post on the hacking forum. All of the impacted FortiGate firewalls — most of which are […]

AT&T hack reportedly leads to FBI warning of agent call, text log theft

All FBI devices leveraging the agency’s AT&T public safety service were noted by a document and officials close to the matter to have been impacted by the incident, which was previously reported to have compromised nearly 109 million customers’ call detail records from 2022. Source link

Purported Cleo hack victimization refuted by some firms

While major German manufacturer Covestro confirmed having its U.S. logistics server’s data impacted by the Clop hack, leading U.S. car rental firm Hertz, Western Alliance Bank, and Arrow Electronics disclosed the lack of any evidence suggesting that their respective systems have been compromised as a result of the incident. Source link

Almost 3.5M impacted by Wolf Haldenstein breach

BleepingComputer reports that long-established U.S. law firm Wolf Haldenstein Adler Freeman & Herz LLP had information from almost 3.5 million individuals stolen following a data breach in December 2023. Infiltration of Wolf Haldenstein’s systems facilitated the compromise of individuals’ full names, Social Security numbers, employee identification numbers, medical diagnoses, and medical claim details, none of which has been […]

Misconfiguration exposes over Assist Security data

Assist Security, a London-based private security firm catering to hospitals, rail operators, and luxury fashion brands, had 124,035 files amounting to 46.48 GB exposed as a result of a server misconfiguration, The Register reports. Included in the data exposed by the server were personally identifiable information, job application forms, Security Industry Authority cards, payroll details, TrustID validated documents, […]

Additional US sanctions issued to clampdown North Korean IT worker scam

The U.S. has continued its crackdown against North Korean IT worker scams with sanctions against the country’s government weapons trading office Department 53 and its Laos-based front companies Korea Osong Shipping and Chonsurim Trading Corporation and their respective leaders, as well as China-based Liaoning China Trade Industry. Source link