New phishing attacks have been using the death of Queen Elizabeth II as lures to facilitate the theft of Microsoft account credentials and multi-factor authentication codes, reports BleepingComputer.
In recent weeks, the U.S. student loan market has been in the spotlight — not just for the much-discussed loan forgiveness plan launched by the Biden administration, but also for the segment’s growing position as a target for financial fraud.
HP has left six firmware security flaws in some of its enterprise notebook devices unpatched even though the vulnerabilities have been publicly disclosed months ago, according to The Hacker News.
SecurityWeek reports that numerous major industrial automation vendors have products affected by two vulnerabilities in PTC's Kepware KEPServerEX product, which could be exploited to compromise operational technology networks.
New attacks aimed at exfiltrating Steam credentials and compromising Steam account access have been leveraging the novel Browser-in-the-Browser phishing technique, which was initially reported to enable the creation of fraudulent Microsoft, Google, and Steam login forms, according to BleepingComputer.
Ambry Genetics’ email hack was one of the largest healthcare data breaches of 2020. The proposed filing will resolve claims the incident was caused by inadequate cybersecurity.
An FBI notice warns of an increasing number of exploits against unpatched and legacy medical devices, which could impact patient safety and health data privacy.
Threat actors have launched a new phishing campaign exploiting the file-sharing service WeTransfer to facilitate the distribution of the Lampion malware, according to BleepingComputer.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.