securitymagazine.comAccording to Intertrust's 2020 Security Report on Global mHealth Apps, 71% of healthcare and medical apps have at least one serious vulnerability that could lead to a breach of medical data. The report investigated 100 publicly available global mobile healthcare apps across a range of categories—including telehealth, medical device, health commerce, and COVID-tracking—to uncover the most critical mHealth app threats....

securitymagazine.comLastPass by LogMeIn released findings of a new report commissioned to better understand the current state of passwords in organizations today, and how these trends are driving passwordless authentication models moving forward.... nVisium released the findings of their recent research which explores the current state of cybersecurity awareness and security training initiatives within today’s remote workforce. The research reveals that only 35% of respondents classify security awareness training as a ‘top priority’ while working remotely, and nearly half say that their DevOps teams are not experts in understanding how to protect at home wireless networks....

securitymagazine.comWhen I first entered the security industry, it was in the early 2000s. There was no social media, no iPhones, no podcasts. My first security tradeshow happened to be ISC West. Not only was I overwhelmed by the technology and the learning curve of understanding organizational and enterprise-level risks, mitigation and solutions, but I was struck by the sheer size of the show....

securitymagazine.comThe New York Attorney General’s Office (NYAG) reached a Consent and Stipulation Agreement with Dunkin’ Brands, Inc. (Dunkin), which obligates the company to implement and maintain a comprehensive information security program to protect customers’ private information. The terms of the consent agreement are similar to the terms New York reached with Zoom earlier this year regarding inadequate data security practices, and strongly resemble the reasonable security measures described in the Stop Hacks and Improve Electronic Data Security Act (SHIELD Act)....

securitymagazine.comTSA checkpoint at Harrisburg International Airport gets new state-of-the-art 3-D checkpoint scanner to improve explosives detection....

securitymagazine.comResearch by the UK Household Longitudinal Study compared health behaviors reported in four waves of the main Understanding Society survey, between 2015 and 2019. They also used data from the COVID-19 survey collected in April 2020....

securitymagazine.comSome industries experienced more upheaval than others. The survey found that 65% of supply chains in aerospace and defense, on average, were disrupted by the pandemic....

securitymagazine.comAn extensive survey took a look at consumer comfort with a variety of retail and grocery technologies. The survey found that only 16% of respondents are comfortable with in-store facial recognition....

Heise Sicherheits NewsNach Nutzerbeschwerden über teils erhebliche Mac-Probleme hat Apple die Bereitstellung zweier sicherheitsrelevanter Updates für macOS 10.14 gestoppt....

Heise Sicherheits NewsDer bei 4chan geleakte Code sei authentisch, sagt ein IT-Techniker aus den USA: Er will einen funktionierenden Build von Server 2003 erstellt haben....

TheHackersNewsA hacking group known for its attacks in the Middle East, at least since 2017, has recently been found impersonating legitimate messaging apps such as Telegram and Threema to infect Android devices with a new, previously undocumented malware. "Compared to the versions documented in 2017, Android/SpyC23.A has extended spying functionality, including reading notifications from messaging apps, call...

TheHackersNewsA Russian hacker who was found guilty of hacking LinkedIn, Dropbox, and Formspring over eight years ago has finally been sentenced to 88 months in United States prison, that's more than seven years by a federal court in San Francisco this week. Yevgeniy Aleksandrovich Nikulin, 32, of Moscow hacked into servers belonging to three American social media firms, including LinkedIn, Dropbox, and...

Heise Sicherheits NewsCode Scanning soll Entwickler dabei unterstützen, Sicherheitslücken automatisch im Code zu finden, bevor das Projekt die Produktion erreicht....

Heise Sicherheits NewsAngreifer könnten mit weitreichenden Rechten auf Systeme mit HP Device Manager zugreifen. Eine Lücke gilt als kritisch....

TheHackersNewsCybersecurity researchers have found critical security flaws in two popular industrial remote access systems that can be exploited to ban access to industrial production floors, hack into company networks, tamper with data, and even steal sensitive business secrets. The flaws, discovered by Tel Aviv-based OTORIO, were identified in B&R Automation's SiteManager and GateManager, and MB Connect...

TheHackersNewsCisco yesterday released security patches for two high-severity vulnerabilities affecting its IOS XR software that were found exploited in the wild a month ago.Tracked as CVE-2020-3566 and CVE-2020-3569, details for both zero-day unauthenticated DoS vulnerabilities were made public by Cisco late last month when the company found hackers actively exploiting Cisco IOS XR Software that is installed...

Heise Sicherheits NewsAMD-Serverprozessoren verschlüsseln die Speicherbereiche parallel laufender virtueller Maschinen jeweils separat, sofern das Gast-Betriebssystem mitspielt....

Heise Sicherheits NewsDas BKA skizziert in seinem Cybercrime-Bericht 2019 eine aus dem Darknet heraus operierende Untergrund-Ökonomie, die auch von der Corona-Krise profitiere....

Heise Sicherheits NewsBeim Monitoring von Cyberangriffen auf ägyptische Menschenrechtsorganisationen ist AI auf Linux- und macOS-Versionen der Spionagesoftware FinSpy gestoßen....
