Infosecurity News

TinyPOS: Handcrafted Malware in Assembly Code
The TinyLoader downloader functionality is small but powerful, says Forcepoint.

New Exploits Target Components of SAP Applications
10KBLAZE exploits can compromise two SAP components.

Putin Signs Law to 'Stabilize' Russian Internet
Russia prepares for the unlikely event that it could be blocked from the global infrastructure of the WWW.

UK IT Bosses Failing on Password Best Practices
Experts call for an end to static credentials on World Password Day

UK Government Intros Landmark IoT Security Proposals
New law would introduce clearer labeling and mandate improved built-in security

UK Defense Secretary Sacked Over Huawei Leak
Calls for Official Secrets Act investigation

Cyber-Attacks in UK Grew by 140% in 2018
UK employees are targeted more than their global counterparts, report finds.

Brute-Force Attempts More Common on Edge Devices
Edge devices pose increasing threats to enterprises.

US DHS Issues Cybersecurity Vulnerability Directive
Federal agencies must remediate critical vulnerabilities within 15 days of initial detection.

Consumers Revolt Over IoT Security Shortcomings
Internet Society research finds significant concerns over data collection

Most Firms Rely on Trust Alone for Supply Chain Security
Accenture report reveals less than a third have adequate insight into partners

US Church Hit in $1.8m BEC Scam
Attackers compromised email accounts to trick staff

Not Managing Open Source Opens Door for Hackers
96% of commercial codebases contain open source components, report finds.

Data Dispersion Yields More Off-Prem Risk
Third and fourth parties pose the biggest risk to global businesses, the report says.

Developer Reveals Phishing Exploit in Chrome
The browser hides the URL bar in a proof-of-concept video.

Credential Stuffing Costs Firms $4m Each Year
Akamai study finds companies suffer 11 attacks each month

Police Warn Schools About Money Mule Recruiters
Police Scotland writes to secondary schools

UK Government Announces Cyber Security Ambassador
Henry Pearson will try and help UK security firms sell abroad

Google Bans Chinese Developer from Play Store
DO Global applications reportedly removed from Google Play

Security Flaws in P2P Leave IoT Devices Vulnerable
Attacks could exploit security cameras and other devices using iLnkP2P, says researcher.



