Tag: cybersecurity awareness

Meta Set to Enable Default End-to-End Encryption on Messenger by Year End
News

Meta Set to Enable Default End-to-End Encryption on Messenger by Year End

End-to-end encryption (E2EE) support will be made standard for one-to-one friends and family chats on Messenger by the end of the year, according to a new statement from Meta. The social media behemoth announced that as part of that endeavor, "millions more people's chats" will be upgraded starting on August 22, 2023, exactly seven months after it began progressively introducing the function to more users in January 2023. The modifications are a part of CEO Mark Zuckerberg's "privacy-focused vision for social networking," which he outlined in 2019. However, since then, the plan has been delayed by a year due to substantial technological difficulties read more Meta Set to Enable Default End-to-End Encryption on Messenger by Year End. Stay informed with the best cybersecurity news ...
TP-Link smart bulbs can let hackers steal your WiFi password
News

TP-Link smart bulbs can let hackers steal your WiFi password

Four flaws in the TP-Link Tapo L530E smart bulb and the Tapo app, which could let attackers to acquire their target's WiFi password, have been found by researchers from Italy and the UK. One of the most popular smart bulbs, including on Amazon, is the TP-Link Tapo L530E. A smart device management software called TP-link Tapo has 10 million downloads on Google Play. Due to this product's popularity, researchers from the Universities of Catania and London examined it. However, the purpose of their study is to highlight security dangers in the numerous dangerous data transmission and inadequate authentication procedures utilized by the billions of smart IoT devices used by consumers read more TP Link smart bulbs can let hackers steal your WiFi password. Stay informed with the best c...
India Passes New Digital Personal Data Protection Bill (DPDPB) Putting Users’ Privacy First
News

India Passes New Digital Personal Data Protection Bill (DPDPB) Putting Users’ Privacy First

Following its unanimous passage by both chambers of parliament last week, the Digital Personal Data Protection Bill (DPDPB) received the assent of Indian President Droupadi Murmu on Friday, signalling a significant advancement in the protection of individuals' personal information. The Indian government stated that the bill "allows for the processing of digital personal data in a manner that recognises both the rights of the individuals to protect their personal data and the need to process such personal data for lawful purposes and for matters connected therewith or incidental thereto." Months after the Ministry of Electronics and Information Technology (MeitY) published a draught of the bill in November 2022, the long-awaited data protection law has finally been passed read more I...
New York rolls out statewide cybersecurity strategy
News

New York rolls out statewide cybersecurity strategy

New York Gov. Kathy Hochul unveiled the state's first cybersecurity strategy on Wednesday, outlining how various public and private stakeholders will collaborate to protect critical infrastructure and statewide residents' personal data from malicious attacks and data breaches. Many believe New York state to be the most important economic centre in the United States, acting as a financial centre for investment and banking as well as a major transit hub for air transportation and international trade. It's a big target with big losses. According to FBI data, more than 25,000 New Yorkers were victims of cybercrime last year, resulting in $777 million in losses read more New York rolls out statewide cybersecurity strategy. Stay informed with the best cybersecurity news and raise your ...
NIST releases draft overhaul of its core cybersecurity framework
News

NIST releases draft overhaul of its core cybersecurity framework

On Tuesday, the National Institute of Standards and Technology released a long-awaited draught version of the Cybersecurity Framework 2.0, the agency's risk guidance's first substantial update since 2014. After initially focusing on key infrastructure, the revised framework now encompasses a broader range of organisations, such as small and medium-sized businesses, local schools, and other institutions. The updated framework now addresses the role of corporate governance as well as the expanding threats to digital networks posed by third-party partnerships read more NIST releases draft overhaul of its core cybersecurity framework. Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our comprehensive coverage of the latest threats, breaches, ...
New Android 14 Security Feature Now IT Admins Can Disable 2G Networks with
News

New Android 14 Security Feature Now IT Admins Can Disable 2G Networks with

In Android 14, Google added a new security capability that allows IT managers to block support for 2G cellular networks in their controlled device fleet. The search engine giant announced the addition of a second user setting to disable support for null-ciphered cellular connections at the model level. "The Android Security Model assumes that all networks are hostile in order to keep users safe from network packet injection, tampering, or eavesdropping on user traffic," explained Roger Piqueras Jover, Yomna Nasser, and Sudhi Herle. To address this threat model, Android does not rely on link-layer encryption read more New Android 14 Security Feature Now IT Admins Can Disable 2G Networks with . Stay informed with the best cybersecurity news and raise your cybersecurity awareness...
White House Unveils National Cyber Workforce Strategy
News

White House Unveils National Cyber Workforce Strategy

The Biden administration unveiled a national strategy on Monday to address the lack of qualified cyber workers and cited persistent job openings as a critical national security issue. According to one study included in the strategy, there would still be a need for more than 400,000 cybersecurity specialists in 2022. According to Camille Stewart Gloster, the deputy national cyber director of technology, the strategy is the result of over a year of work, including a National Cyber Workforce and Education Summit at the White House in July 2022. The strategy, which is the first step in ensuring and unleashing the next generation of American creativity, is truly representative of that teamwork read more White House Unveils National Cyber Workforce Strategy. Stay informed with the best...
MikroTik OS bug exposes over 500,000 devices
News

MikroTik OS bug exposes over 500,000 devices

Researchers claim that the MikroTik RouterOS issue exposes routers to privilege escalation attacks, enabling threat actors to take complete control of exposed devices. Researchers at security firm VulnCheck found that a serious issue in MikroTik RoutersOS, listed as CVE-2023-30799, was impacting 500,000 to 900,000 publicly accessible devices. A resolution was found on July 20, 2023. For botnet operators, hundreds of thousands of susceptible devices are a tempting target. For instance, the Latvian-made MikroTik network devices were used in one of the biggest botnet attacks, which was aimed against the Russian internet company Yandex read more MikroTik OS bug exposes over 500000 devices. Stay informed with the best cybersecurity news and raise your cybersecurity awareness with our ...
Wall Street adopts new cyber rules AI proposal
News

Wall Street adopts new cyber rules AI proposal

The US Securities and Exchange Commission (SEC) has mandated that publicly traded corporations notify investors of significant cyber events four days after a breach. As part of its proposal, Wall Street wants companies to report any trading conflicts of interest related to artificial intelligence. Following a vote by the Commission's five members, the new regulations on "Cybersecurity Risk Management, Strategy, Governance, and Incident Disclosure by Public Companies" were made public on Wednesday. Investors may be affected whether a company loses a factory in a fire or millions of files in a cybersecurity event, according to SEC Chair Gary Gensler read more Wall Street adopts new cyber rules AI proposal. Stay informed with the best cybersecurity news and raise your cybersecurity ...
Pacific Premier Bank clients exposed in MOVEit attacks
News

Pacific Premier Bank clients exposed in MOVEit attacks

During the MOVEit Transfer attacks, Pacific Premier Bancorp's third-party vendor data was stolen, exposing the bank's clients. Personal data had been compromised in the incident, which utilized the popular file transfer tool MOVEit, according to the vendor. Attackers were able to access and download the data stored there by exploiting a now-patched software vulnerability. The vendor is used by the bank for specialized tax and compliance operational support services, according to the bank. According to a regulatory filing by Pacific Premier, the exposed client data included Social Security numbers, account numbers, and other personally identifiable information. The company did not specify the scope of the data breach but stated that it is collaborating with the vendor to notify any a...