FireSale HackBoy

Knowledge Shared By FireSale HackBoy...

Sunday, February 28, 2021

Tinder achieves certification in Information Security Management System

Tinder, the most popular dating app among millennials has achieved for the first time a certification in Information Security Management System that endorses that the user data on the company servers remains well protected from all kinds of cyber threats. ISO/IEC 27001:2013 is the first information security certification provided to Tinder by Coalfire ISO that offers extensive impartial external audit procedures to app owners. The standards claimed comply with the International Organization for Standardization (ISO) and the International Electrotechnical...

It is Microsoft vs Dell and IBM after SolarWinds hack

In November 2020, Security firm FireEye revealed that a Russian intelligence funded hacking group had infiltrated the computer networks of several organizations and was indulging in several espionage related tactics since 2019. Now, debate between tech companies has started on whether it is safe to store data on cloud storage platforms or on-premises appliances. Tech giant Microsoft led by Satya Nadella argues that cloud computing systems are safe any type of corporate data and is encouraging the technology as its future vision. However, Dell Technologies,...

Friday, February 26, 2021

Nutanix makes its Cloud Platform Ransomware free

Nutanix, a cloud infrastructure and software provider has made it official that its cloud platform will be ransomware protected, thus making it conducive for businesses to implement their virtualization and other enterprise network storage needs with no hesitation. Technically, Nutanix has added a threat monitoring and detection service along with data replication and robust access controls to its Nutanix stack. Therefore, companies willing to move forward with their business continuity plan can use the Nutanix cloud platform for their IP storage...

Thursday, February 25, 2021

Local mafia was behind cyber attacks on French Hospitals

France Minister Cedric O has cleared the air that local mafia type organizations were behind cyber attacks on two of the healthcare organizations of France and no state funded organizations were involved in the incident. Condemning some reports published in a certain section of media, Cedric O stated that some hacking groups based in Eastern Europe were involved in the attack- as per the preliminary inquiry. Often such cyber crooks demand a ransom in cryptocurrency to keep their activities concealed and sometimes indulge in double extortion techniques...

Fresh Cyber Attack on Oxford University Laboratory

Oxford University is back in news for being attacked on a digital note. Confirmed sources report that its Division of Structural Biology division dubbed Strubi was hit by a cyber attack leaking some vital information to hackers. The only good news is that no classical data was compromised, and the hack has been totally contained- all thanks to the IT staff of the internationally renowned educational institute. National Cyber Security Centre (NCSC) has started an investigation as soon as it learnt about the attack and is busy finding the culprit...

Cyber Threat warning to never search for these things on Google

Whether you are using a mobile phone or a laptop for your online search needs, security experts are recommending not to indulge in such activity without weighing the pros and cons on a proper note. While it is easy to gain knowledge about everything on Google these days, there is a high chance that the activity can land you into deep trouble if you show some carelessness. As scammers are always on the prowl to target victims by optimizing search results with fake results, products, services, names, addresses or contact numbers. So, be careful while...

Wednesday, February 24, 2021

Mobile Security quotient increased in iPhones

All those who are worried about phishing attacks on Apple iPhones, here’s news to rejoice. With the latest update, the Cupertino giant has made it difficult for hackers to break into iPhones just by sending malicious links via messages or emails. From March 12th, 2021, Apple will change the way it secures a code that works on the operating system that will keep all zero-click attacks at bay. Technically, Zero Click attacks allow the hackers to take control of iPhone by targeting the victim with a malicious link and often these attacks are hard...

A surge in Ransomware attacks against Universities

All these days we have seen an increase in ransomware attacks against healthcare companies. Now, news is out that the attacks related to file encrypting malware have doubled in 2020 on Universities, especially involved in the development of Corona Virus Vaccine. According to a research carried out by BlueVoyant on over 2702 Universities operating across 43 countries, almost all of them were found to be facing ransomware attack as the number one cyber threat. And on an average, the cost of payments made to hackers reached $450,000. Security experts...

Medical data from France stolen and IT provider ransomware attack

Sensitive data that was got from over 30 Medical laboratories operating in France was stolen and released by hackers because of some unknown reasons. The siphoned information includes birth date, social security number, blood group, health insurance details, medical treatment history, illnesses like HIV that were detected till date, medicine info and pregnancy confirmation and details, contact details, names of patients, phone numbers, postcodes and addresses of over 491,840 people belonging. Cybersecurity Insiders has learnt that the details were...

39% of Healthcare Organizations Suffered Ransomware Attacks in the Cloud in 2020

As a result of a cloud breach, one in four healthcare organization was fined for non-compliance and 1 in 10 was sued, Netwrix study finds.  IRVINE, Calif., February 24, 2021 – Netwrix, a cybersecurity vendor that makes data security easy, today announced findings for the healthcare sector from its global 2021 Netwrix Cloud Data Security Report.   The survey found that in 2020, the most common incidents that healthcare institutions experienced in the cloud were phishing (reported by 44% of organizations),...

Tuesday, February 23, 2021

Clubhouse social app suffers a data breach due to Chinese App developer

Clubhouse, an audio based chat app only being used by iPhone users is in news for all wrong reasons. The app that has almost 600,000 registered users, since March 2020 was suspected to have been breached when a Chinese app developer crafted an open source app that was having the potential to access the invites meant only through Apple iOS loaded devices. Technically , the app works on iOS devices and the Android version of the audio app was due to be released at sometime early next year. However, a Chinese application developer named Grigory Klyushnikov...

Ransomware Attack on Airplane maker Bombardier

Clop Ransomware gang has targeted airplane maker Bombardier from Montreal, Canada, leaving the company employees not only embarrassed by the data breach but also worried as some of their classical data was published online early this week. Highly placed sources say that the ransomware spreading gang infiltrated the computer network of Bombardier by exploiting vulnerability in the Accellion file sharing software that led to many such data breaches that came into light last month. Cybersecurity Insiders has learnt that the hackers could have gained...

The year 2020 witnessed these biggest GDPR fines

Google was awarded $56.6 million or €50 million penalty in March 2020 by the France data watchdog for failing to provide transparent information to users about its rules and regulations pertaining to data collection related to its products and services. H&M Germany had to face a penalty of $41 million or €35 million for fraudulently keeping a watch on its hundreds of employees for reasons. For instance, as soon as the employees took sick leave and were about to join the office, they were asked to attend a return-to-work meeting that was recorded...

Monday, February 22, 2021

Ransomware attack exposes Hyundai Logistics Data

Although Kia Motors America has released a press update stating that its computer network disruption was not because of the file encrypting malware attack, but because of a technical server glitch. However, the repercussions of the cyber attack are clearly visible, though the denial is being made strongly; as the DopplePaymer Ransomware gang has released some Logistics information related to Hyundai Glovis that could have probably been stolen during the cyber incident that targeted Kia Motors last week. Details of the automobiles to be shipped...

Survey expects an increase in Cyber Attacks from North Korea

A survey taken up by CrowdStrike has confirmed that there would probably be an increase in cyber attacks from North Korea as the nation is struggling with economic crisis and food shortage in the nation because of the corona-virus pandemic. The CrowdStrike 2021 Global Threat Report also confirmed that the Kim Jong Un nation is planning to close its border ties with China as a precautionary measure to curb the spread on COVID-19 from Chinese border migration. A proposal to increase state funded cyber attacks in on the cards as the nation is going...

7 Ways Changing Security Requirements Will Impact Industries in 2021

COVID-19 wasn’t the only challenge businesses faced in 2020. Last year also saw a wave of cybercrime across all industries, highlighting the need for better cybersecurity. As companies begin the recovery journey in 2021, these security needs will drive their operations. Cybersecurity standards and requirements are changing, and businesses will have to change with them. These trends will reshape entire industries this year. Here’s what that shift will look like. 1. More Zero-Trust Adoption The mass shift to remote work resulted in unprecedented...

Ransomware attacks on Hospitals make France President allot €1 billion

After two of the hospitals were badly hit by ransomware attacks last week, the France President Emmanuel Macron took the pledge of allotting €1 billion to bolster the National Cybersecurity Strategy. Speaking briefly to the media after the announcement of the investment, Macron said that attacks on healthcare facilities have shown how vulnerable the infrastructure is and how vital is it for the government to strengthen them to meet up the demand. Now, to those uninitiated, two of the hospitals- one in Dax and other the Villefranche Sur Saone were...

Sunday, February 21, 2021

Cyber Attacks in UK leading to Silent Stealing

Cyber Criminals seems to have changed their ways of attacking by launching silent stealing attacks in which they siphon digital currency in smaller amounts that is equivalent to £10 or less. This strange, but true behavior was detected by the Royal United Services Institute (RUSI) in a survey conducted on how the hackers were indulging in stealing techniques. A security expert monitoring the currency stealing campaigns digitally says that cyber crooks are stealing smaller amounts from victims, but targeting many of them to make their cash bells...

Google puts more focus on mobile security in Android 12

Google seems to have taken mobile security and data privacy on a serious note, as it is clear in its latest preview of its Android 12 Operating System. Introducing to the world the new mobile operating system, Dave Burke, the Vice President of Engineering working for the Alphabet subsidiary stated that the new OS will give utmost attention to security features. Dave added that the Android 12 will for now on be meant only for developers and might be introduced by September 2021 on all Google Pixel Smart Phones and will be rolled out to other devices...

Saturday, February 20, 2021

The Healthcare Breach Report: Hacking and IT Incidents on the Rise

span style="color: #000000;font-size: 11pt;font-family: Calibri, Arial" data-sheets-value="{"1":2,"2":"This post was originally published by ."}" data-sheets-userformat="{"2":10753,"3":{"1":0},"12":0,"14":[null,2,0],"16":11}">This post was originally published by Will Houcheime. The vast majority of healthcare organizations utilize and store highly sensitive data, such as protected health information (PHI) and personal data such Social Security numbers,...

HOW YOU CAN TAKE THE CISSP EXAM FROM HOME

span style="color: #000000;font-size: 11pt;font-family: Calibri, Arial" data-sheets-value="{"1":2,"2":"This post was originally published by ."}" data-sheets-userformat="{"2":10753,"3":{"1":0},"12":0,"14":[null,2,0],"16":11}">This post was originally published by (ISC)² Management. For a limited time – February 22-28, 2021 – (ISC)² is pilot testing the option to take the CISSP online exam from home. Last year, as the COVID-19 pandemic emerged,...

Friday, February 19, 2021

Cybersecurity for a Cloud-First, Work-from-Home World (Part 2)

An Interview with Joe Green, Netskope The number of employees working from home or other remote locations has skyrocketed since the outbreak of the coronavirus pandemic. This massive shift has led to a rise in the use of cloud applications and services, along with an increase in risky behaviors and a further blurring of the lines between personal and corporate IT resources. We...

WhatsApp gives new data privacy deadline of May 15

All you WhatsApp users across the world, here’s a news piece that needs your attention on an urgent note. The Facebook subsidiary has issued a fresh set of policy updates in which it clearly specified that the users will have to accept its new data sharing rules that will become mandatory from May 15th,2021. Earlier, WhatsApp was interested in sharing its users’ information with the Mark Zuckerberg company from February this year. And it justified its act by stating that the data share would prove beneficial to WhatsApp users in many ways in the...

Thursday, February 18, 2021

United States charges 3 North Koreans for Global Cyber Attacks

The United States Department of Justice has charged 3 North Korean for allegedly launching cyber attacks on many of the banking and cryptocurrency networks operating across the world. All the three have admitted the crime of committing computer fraud by indulging in wire transfers and bank transactions by fraudulent means in countries like Vietnam, Philippines, Poland, Pakistan, Malta, Mexico, and United States along with Canada and Australia. Jon Chang Jyok, Kim II and Park Jin Hyok, who are suspected to be linked to North Korean intelligence...

Ransomware attack on California Department of Motor Vehicles

A Ransomware attack on California DMV- Department of Motor Vehicles is reported to have leaked data related to millions of customers. To be specific, the attack took place on the third party supplier called Automatic Funds Transfer services (AFS) a service that looks into the verification process of motor registration addresses related to the motor department of California. As of now, no information related to the department is said to have accessed by the customers. But there is no conformation yet from the DMV, as the investigation is still under...

How to keep backed up data safe from ransomware attacks

We all know that most of the ransomware attacks take place on Windows environments and so security experts are recommending to use something other than the Microsoft giant propelled operating systems for data backups. However, the fact is that most popular backup products are developed to run primarily on the Satya Nadella led company’s software i.e. Windows. But to strictly keep the file encrypting malware at bay, ensure that your backup server runs on a Linux driven machine, as ransomware attacks launched with an aim to target Windows machines...

Wednesday, February 17, 2021

SHAREit app filled with vulnerabilities

SHAREit, a popular file sharing app is in news for having vulnerabilities that could be exploited by hackers to inject malicious codes by overwriting existing files. The Android app that has been downloaded over 1 billion times is reported to be susceptible to man-in-the-middle attacks, where threat actors can hijack the app features and take control of a user device. Security research conducted by Trend Micro says that the flaw exists in the feature where users share files between friends or devices. And the flaw is said to be existing from the...

DoppelPaymer Ransomware hits Kia Motors America databases

Kia Motors America is experiencing a nationwide outage because of a ransomware attack and confirmed sources say that the car maker was targeted by DoppelPaymer gang that is demanding $20 million to decrypt the database. In a media update released early this morning, the South Korean company stated that the nationwide IT outage resulted in disruption of services related to payment systems, UVO Link app, phone services, owner portal, internal sites and dealership link. The highlight of the attack is that the ransomware spreading gang infiltrated...

Automated cars are vulnerable to Cyber Attacks

A study carried out by Trend Micro has revealed that there are multiple possibilities for the automated cars to be targeted by Cyber Attacks. Researchers from the security firm revealed that those into manufacturing of connected cars have to focus more on keeping their automatives safe from the prying eyes of the threat actors. Trend Micro says that most of the Intelligent Transportation systems (ITS) of connected cars could be susceptible to DdoS attacks launched by state funded actors. And that too with no deep technical knowledge about the internet...

Tuesday, February 16, 2021

Clop Ransomware hackers target Law firm Jones Day

Jones Day Law firm that represented the former US President Donald Trump’s 2020 election campaign is back in news for being targeted by hackers spreading Clop Ransomware. And the highlight is that the network hack took place sometime ago, as those involved in the ransomware spread have posted several gigabytes of email data on the dark web to confirm that they have indeed indulged in the hack. Clop Ransomware is a kind of file encrypting malware that indulges in double extortion malware campaign where it first steals the data and then pressurizes...

Microsoft offers deep analyses of SolarWinds Hack

SolarWinds hack seems to be a never-ending saga, as Microsoft President Brad Smith has made a new revelation yesterday stating over 1000 hackers could have been involved in the attack that questioned the security of the entire federal computer system by experts. Smith, who commented on the issue during the CBS 60 minute program over the weekend, stated that the attack could have been the largest and most sophisticated in the entire history of United States. The Tech giant’s president stated that it could have taken tremendous amounts of manpower...