The road to cyber preparedness begins with studying organizations’ own vulnerabilities - and doing it often so that nothing escapes notice – rather than obsessing about the perils that live outside.
The #Python Package Index was drowning in malicious code again, so they had to shut down registration for cleanup.
More software supply-chain security shenanigans: #PyPI came under attack earlier, with more than 500 fake packages with similar names to popular ones. Scrotes unknown have been trying to steal cryptocurrency credentials and other secrets.
Yes, it’s happened yet again. In #SBBlogwatch, we ask if it’s time for a #CodeReuse rethink. At #TechstrongGroup’s #SecurityBlvd: https://securityboulevard.com/2024/03/pypi-suspended-500-fakes-richixbw/?utm_source=richisoc&utm_medium=social&utm_content=richisoc&utm_campaign=richisoc
#Whistleblower in hacker contractor firm for Chinese government blows lid off tactics, techniques and procedures.
An enormous cache of documents and data from a #Chinese hacking outfit got leaked by an insider. The state sponsored company, #ISoon, seems to have a disgruntled mole who made all its secrets public.
Analysts will be poring over the data for months. In #SBBlogwatch, we lap it up, like a Pooh laps hunny. At #TechstrongGroup’s #SecurityBlvd: https://securityboulevard.com/2024/02/china-hacking-i-soon-richixbw/?utm_source=richisoc&utm_medium=social&utm_content=richisoc&utm_campaign=richisoc
Researchers reconstruct your #fingerprint by listening to you swipe.
Can scrotes steal your fingerprints just by eavesdropping? An academic paper claims they can. Although accuracy isn’t perfect—yet.
As more and more sensitive stuff is secured behind #biometrics, it’s a bit of a worry. In #SBBlogwatch, we deregister our swiping fingers. At #TechstrongGroup’s #SecurityBlvd: https://securityboulevard.com/2024/02/printlistener-fingerprint-richixbw/?utm_source=richisoc&utm_medium=social&utm_content=richisoc&utm_campaign=richisoc
Yet another hack of Sony: Emergent #ransomware gang #Ransomed.vc says it pwned entire #Sony group.
“We are currently investigating. … We have no further comment.” In today’s #SBBlogwatch, we’re not 100% surprised. At #TechstrongGroup’s #SecurityBlvd: https://securityboulevard.com/2023/09/sony-hacked-ransomed-vc-richixbw/?utm_source=richisoc&utm_medium=social&utm_content=richisoc&utm_campaign=richisoc