📰 Software Security News
Page 41 - Software Security News Today
Fast, Ad-Free News Updates
Stay updated with breaking news from Software Security. Real-time updates on events, politics, business and more.
May 11, 2021
Avaddon is spread via phishing and malicious spam campaigns that deliver malicious JavaScript files, the ACSC says. "These are often low in sophistication, containing a threat suggesting the attached file contains a compromising photo of the victim," the Australian agency says. "Double extortion techniques are used, such as coercion and further pressure to pay a ransom, including threatening to publish the victim’s data … and threatening the use of DDoS attacks against the victims." Written...
May 11, 2021
Get Permission Tulsa city officials shut down systems and websites after a Sunday ransomware attack, making it impossible for residents to gain online access to many services. "The city of Tulsa is experiencing technical difficulties on many outward facing programs that help serve the citizens of Tulsa due to a ransomware attack. No customer information has been compromised, but residents will not be able to access city websites, and there will be delays in network services," the city stated ...
May 11, 2021
Get Permission The Alpine Center for Diabetes, Endocrinology and Metabolism P.C posted a notice for patients about its EMR outage. Two companies that serve the healthcare sector have reported disruptive cyber incidents affecting their clients, the latest in a string of similar supply chain incidents. The most recent incidents affected San Antonio-based CaptureRx, which provides healthcare technology and administrative services to hundreds of U.S. hospitals and others, and Dallas-based MedNetwo...
May 11, 2021
Philip Reitinger, president and CEO, Global Cyber Alliance It’s serious, impactful and raises new questions about critical infrastructure protection. But don’t tell Philip Reitinger of the Global Cyber Alliance that the Colonial Pipeline ransomware attack is any kind of a “wake-up call.” He says we’re long past that. These type of attacks have been common since 1997, Reitinger says, so “if anybody is surprised, you’re just not paying attention.” The potential economic impact of ...
May 10, 2021
Photo: Colonial Pipeline Co. After a ransomware incident, Colonial Pipeline Co. says it has restored smaller pipelines that ship fuel to the U.S. East Coast, but its larger ones are still offline as it assesses safety. The company ships millions of gallons per day of fuels such as gasoline, heating oil, jet and diesel from refineries in the South to East Coast destinations. The company says "smaller lateral lines between terminals and delivery points are now operational," according to an update...
May 10, 2021
Get Permission Merger and acquisition activity involving cybersecurity companies continued at a rapid pace in the last two weeks, with Accenture, Forcepoint, OneTrust and the Swedish IT consultancy firm Knowit AB all making acquisitions. Professional services firm Accentureannounced April 29 it had entered into an agreement to acquire the managed security services provider Openminded. During the first week of May, Forcepoint announced it had purchased the browser security company Cyberinc, O...
May 10, 2021
Source: Colonial Pipeline The FBI and the White House confirmed Monday that the DarkSide ransomware variant was used in the Friday attack that caused disruptions at Colonial Pipeline Co., which operates a 5,500-mile pipeline that supplies fuel, gasoline and other petroleum products throughout large portions of the eastern U.S. The cybercriminal group behind DarkSide ransomware, however, appeared to try to shift the blame for the incident to an affiliated organization in a posting on its darknet...
May 8, 2021
Exclusive Interview: New HHS ONC Leader on Health Data Security Compliance Compliance Compliance HealthInfoSec) • May 7, 2021 Micky Tripathi, national coordinator for health IT at HHS As patients more commonly use smartphones and APIs to access their health information, critical security and privacy considerations need to be top of mind, says Micky Tripathi, the new Department of Health and Human Services nation...
May 8, 2021
How Patched Android Chip Flaw Could Have Enabled Spying Compliance Compliance Compliance @prajeetspeaks) • May 7, 2021 (Photo: Shutterstock) A severe vulnerability in a system on certain Qualcomm chips, which has been patched, potentially could have enabled attackers to remotely control Android smartphones, access users text messages and call histories and listen in on conversations, according to a new report fro...
May 8, 2021
U.S. and U.K. cyber, law enforcement and intelligence agencies issued a joint advisory Friday offering detailed information on how to defend against the activities