Security Leftovers
-
Redacting Documents with a Black Sharpie Doesn’t Work
We have learned this lesson again:
As part of the FTC v. Microsoft hearing, Sony supplied a document from PlayStation chief Jim Ryan that includes redacted details on the margins Sony shares with publishers, its Call of Duty revenues, and even the cost of developing some of its games.
It looks like someone redacted the documents with a black Sharpie but when you scan them in, it’s easy to see some of the redactions.
-
Serious Vulnerability Exposes Admin Interface of Arcserve UDP Backup Solution
Researchers publish PoC for a high-severity authentication bypass vulnerability in the Arcserve UDP data backup solution.
-
Three hours appears to be a long time when it comes to data leaks
Less than three hours after the Medibank Group told iTWire it had not been affected by the ongoing ransomware attacks by the Cl0p group, the company told another media outlet that it had indeed been affected.
Medibank data was stolen from a company that serves as the health insurer's building manager, the Australian Financial Review reported at 12.11pm on 20 June.
-
Details Disclosed for Critical SAP Vulnerabilities, Including Wormable Exploit Chain
Details have been disclosed for critical SAP vulnerabilities, including a wormable exploit chain, that can expose organizations to attacks.
-
Dozens of Businesses Hit Recently by ‘8Base’ Ransomware Gang
The 8Base ransomware gang has hit roughly 30 small businesses over the past month, reaching a total of approximately 80 victims since March 2022.
-
Siemens Energy, Schneider Electric Targeted by Ransomware Group in MOVEit Attack
Energy giants Schneider Electric and Siemens Energy confirm being targeted by the Cl0p ransomware group in the campaign exploiting a MOVEit zero-day.
-
Anatsa Banking Trojan Delivered via Google Play Targets Android Users in US, Europe
Malicious applications with over 30,000 installs in Google Play have infected Android devices with the Anatsa banking trojan.
-
Sensitive Information Stolen in LetMeSpy Stalkerware Hack
Emails, phone numbers, calls logs, and collected messages stolen in data breach at Android stalkware LetMeSpy.
-
Financial watchdog investigating S-Bank operations
The bank faces an investigation into concerns over governance and data security, HS reports.