Pepsi Bottling Ventures suffers data breach
16 Feb 2023
The largest privately owned bottler of Pepsi-Cola products in the United States, Pepsi Bottling Ventures, claims a malware attack resulted in the stealing of personal data from its computers. The corporation began issuing notification letters to an undetermined number of people on February 10 to let them know that a month-long data breach may have […]
Read More
New Russian info-stealer attacks target Ukraine.
9 Feb 2023
Security experts have seen a Russian hacking organization, which was responsible for the catastrophic WhisperGate virus intrusions, directing a new information-stealing malware at Ukrainian targets. This campaign has been traced to TA471 (also known as UAC-0056), a cyberthreat actor with ties to Russia that has been active since early 2021, as per the report by […]
Read More
Users of GitHub Desktop and Atom must take action
2 Feb 2023
Unidentified attackers reportedly gained access to certain of GitHub’s development and release planning repositories and stole encrypted code-signing certificates for the company’s Desktop and Atom applications. “On December 7, 2022, GitHub detected unauthorized access to a set of repositories used in the planning and development of GitHub Desktop and Atom. After a thorough investigation, we […]
Read More
€5.5 million fined on WhatsApp
24 Jan 2023
Meta’s WhatsApp has been fined by Irish Data Protection Commission (DPC) for violating the General Data Protection Regulation (GDPR). On 19th January 2023 thee Data Protection Commission (“DPC”) of Irish released the following statement. “The Data Protection Commission (“DPC”) has today announced the conclusion of an inquiry into the processing carried out by WhatsApp Ireland […]
Read More
$5.4 million fined on TikTok
17 Jan 2023
TikTok UK and TikTok Ireland have been fined €5,000,000 (Around $5.4 Million) by France’s data protection regulator (CNIL). The fine is for making it impossible for platform users to reject cookies and for failing to adequately explain their function. “Users of ‘tiktok[.]com’ could not refuse cookies as easily as accepting them. They were not informed […]
Read More
Microsoft January 2023 Patch Tuesday
12 Jan 2023
On 11th January 2023 was the January Patch Tuesday, and a zero-day vulnerability and 98 flaws were fixed. 11 Critical in Severity 87 Important in Severity The vulnerabilities are, 39 Elevation of Privilege Vulnerabilities 4 Security Feature Bypass Vulnerabilities 33 Remote Code Execution Vulnerabilities 10 Information Disclosure Vulnerabilities 10 Denial of Service Vulnerabilities 2 Spoofing […]
Read More
Google to Resolve User Location Tracking Lawsuits
3 Jan 2023
In order to resolve two lawsuits launched by Indiana and Washington, D.C. about its “deceptive” location monitoring methods, Google has agreed to pay a total of $29.5 million. WIN: My office reached a settlement with Google requiring the company to pay $9.5 million for deceiving and manipulating consumers—including by using “dark patterns” to trick users […]
Read More
LastPass admits on password vaults been stolen
27 Dec 2022
On 22nd December 2022 LastPass revealed that after entering its cloud storage earlier this year using data acquired during an incident in August 2022, attackers took customer vault data. “we have learned that an unknown threat actor accessed a cloud-based storage environment leveraging information obtained from the incident we previously disclosed in August of 2022. […]
Read More
Client-side encryption for Gmail for workspace
20 Dec 2022
Google recently revealed that it is extending customer access to client-side encryption in Gmail online. Customers of Google Workspace Enterprise Plus, Education Plus, and Education Standard can enroll for the beta program through January 20th, 2023. It’s still not available for google private accounts. However, it is already available for already available for users of […]
Read More
Multiple Chrome extensions uses Browser Hijackers
8 Dec 2022
Around two million users were found to have been infected by browser hijackers employing malicious Chrome extensions. An unwanted program known as a “browser hijacker” changes a web browser’s settings without the user’s knowledge in order to insert adverts and replace the default search engine with a different one. Installing the “webSecurerr Browser Protection” extension […]
Read More
Phishing Campaign Targets Black Friday Season
1 Dec 2022
A continuous spear-phishing attack that takes advantage of Black Friday and Cyber Monday has been detected by security provider Avanan. Threat actors impersonate order confirmation notices and entice victims to try refunds, which directs them to pages that collect credentials. The phishing email, “Looks like a standard shipment notification. It shows an order confirmation, as […]
Read More
Twitter verified account targeted in Phishing Campaigns
22 Nov 2022
Twitter is now charging $8 a month for Twitter Blue and account verification. With this many phishing emails targeting verified users started flooding. pic.twitter.com/BYOBGBHOUA — Elon Musk (@elonmusk) November 2, 2022 A new report on numerous phishing operations with a blue badge subscription theme that target Twitter-verified users. Paid users can expect to receive “Priority […]
Read More