Explore top 10 tips to secure your open-source projects now. Read More
×Investigation into Singapore's most severe cybersecurity breach has uncovered several poor security practices, including the use of weak administrative passwords and unpatched workstations.. The findings were revealed on the first day of hearings led by the Committee of Inquiry (COI), a team set up to probe a July 2018 security breach that compromised personal data of 1.5 million SingHealth patients. The incident also compromised outpatient medical data of 160,000 patients that visited the healthcare provider's facilities, which included four public hospitals, nine polyclinics, and 42 clinical specialties. The link for this article located at ZDNet is no longer available. . Insights from the assessment of the SingHealth data breach expose critical vulnerabilities and threats to sensitive patient information.. SingHealth Data Breach,Cybersecurity Flaws,Patient Data Security,Healthcare Investigation,Weak Admin Passwords. . LinuxSecurity.com Team
Not even a year has passed since top bitcoin exchange Mt. Gox collapsed into a pit of burning money, blaming a hacking incident for a nearly half-billion dollar meltdown and bankruptcy. Now another major exchange may be putting its users through a small-scale replay of that crisis.. Early Monday, a UK- and Slovenia-based bitcoin exchange Bitstamp announced that it would be going offline while it investigated a security compromise of some portion of its stored currency that occurred over the weekend. In a statement to WIRED, the company said that The link for this article located at Wired is no longer available. . Coinbase declares suspension of services after detecting unauthorized access to its digital assets, echoing the infamous Beaxy breach.. Bitstamp, Cybersecurity, Data Security, Bitcoin Platform, Exchange Hack. . LinuxSecurity.com Team
Popular cloud storage service Dropbox is misleading users into thinking it is more secure than it really is, says a security researcher and academic, who has asked for the FTC to investigate.. Dropbox has around 25 million users. It's often used as an escape hatch by owners of Apple's iPhone and iPad: the iOS slabs don't expose the device's local file system or provide the end user with a way of manipulating files. "Dropbox's customers face an increased risk of data breach and identity theft because their data is not encrypted according to industry best practices," says Christopher Soghoian, who filed the complaint. Soghoian is a researcher at the Center for Applied Cybersecurity Research at Indiana University. He explains that unlike other cloud services The link for this article located at The Register UK is no longer available. . Dropbox has around 25 million users. It's often used as an escape hatch by owners of Apple's iPhone . popular, cloud, storage, service, dropbox, misleading, users, thinking, secure. . LinuxSecurity.com Team
Denver officials have asked the FBI, Denver police and Microsoft Corp. to help them identify the person or people who have hacked into the city's website twice in the past week.. Dave Joly, an FBI spokesman, confirmed a felony criminal investigation has begun. Conviction of what the FBI terms a "defacement" of the Denver Web page could carry between one and five years in prison, depending on the particulars. Joly said the FBI has not been notified of any other similar attacks on municipal websites in Colorado. The hacker did not get beyond the public Denvergov.org website to access any internal files that may contain sensitive information, but officials want to determine how the website is getting hacked so they can ensure it doesn't happen again, said Eric Brown, a spokesman for Denver Mayor John Hickenlooper. "The security system in place is very good and thwarts nearly every attack," Brown said Tuesday. "Last week and last night, someone was able to get through the first layer." The link for this article located at Denver Post is no longer available. . Dave Joly, an FBI spokesman, confirmed a felony criminal investigation has begun. Conviction of what. denver, officials, asked, police, microsoft, identify. . Alex
U.S. authorities are investigating the theft of an estimated tens of millions of dollars from Citibank by hackers partly using Russian software tailored for the attack, according to a news report. The security breach at the major U.S. bank was detected mid-year based on traffic from Internet addresses formerly used by the Russian Business Network gang, The Wall Street Journal said Tuesday, citing unnamed government sources.. The Russian Business Network is a well-known group linked to malicious software, hacking, child pornography and spam. The Federal Bureau of Investigation is probing the case, the report said. It was not known whether the money had been recovered and a Citibank representative said the company had not had any system breach or losses, according to the report. The report left unclear who the money was stolen from but said a program called Black Energy, designed by a Russian hacker, was one tool used in the attack. The tool can be used to command a botnet, or a large group of computers infected by malware and controlled by an attacker, in assaults meant to take down target Web sites. This year a modified version of the software appeared online that could steal banking information, and in the Citi attack a version tailored to target the bank was used, the Journal said. The link for this article located at Network World is no longer available. . Federal agents investigate cybersecurity breaches connected to Russian operatives, focusing on malware usage and the illicit siphoning of funds from Wells Fargo accounts.. financial theft, malware attack, russian hacking, cybersecurity threats, banking security. . LinuxSecurity.com Team
E-mail management company Lyris Technologies on Wednesday said it is investigating spam complaints that may involve hundreds of thousands of compromised customer e-mail addresses. At least three current and former Lyris customers this week complained that recipients of their e-mail . . . . E-mail management company Lyris Technologies on Wednesday said it is investigating spam complaints that may involve hundreds of thousands of compromised customer e-mail addresses. At least three current and former Lyris customers this week complained that recipients of their e-mail newsletters have been receiving spam. MarketingSherpa.com, a publisher of online marketing newsletters, suspects that all eight of its mailing lists have been compromised, said Anne Holland, the company's founder. More than 20 other publishers, who combined have more than 2 million e-mail addresses on their lists, have also contacted Holland saying their Lyris-hosted lists have been compromised. "We contacted Lyris immediately," Holland said. "Anytime you get a spam complaint from readers, you have to take it very seriously. It could kill your entire company." About five of the 1,000 customers who have their distribution lists hosted by Lyris have contacted the company with spam concerns, said Steven Brown, the company's chief of operations. The company has hired Word to the Wise, an outside consulting firm, to investigate the matter, Brown said. So far the company has no evidence that the lists on its servers have been compromised. The link for this article located at ZDNet is no longer available. . E-mail management company Lyris Technologies on Wednesday said it is investigating spam complaints t. e-mail, management, company, lyris, technologies, wednesday, investigating, complaints. . LinuxSecurity.com Team
NASA cybercrime investigators are looking into the theft of militarily significant design documents pertaining to the next generation of reusable space vehicles. The documents, which are restricted under current export laws from being shared with foreign nationals or governments and are . . . . NASA cybercrime investigators are looking into the theft of militarily significant design documents pertaining to the next generation of reusable space vehicles. The documents, which are restricted under current export laws from being shared with foreign nationals or governments and are also strictly controlled under the International Trafficking in Arms Regulations (ITAR), were obtained by Computerworld from a hacker who claims to be based in Latin America. The link for this article located at Computer World is no longer available. . NASA cybercrime investigators are looking into the theft of militarily significant design documents . cybercrime, investigators, looking, theft, militarily, significant, design, documents. . LinuxSecurity.com Team
Get the latest Linux and open source security news straight to your inbox.