Hacker Conversations: Dan McInerney and Puzzle-Driven Hacking
McInerney’s path to becoming a hacker is subtly different to many other hackers. He started as a 22-year old psychology graduate rather than a computer-obsessed 9-year old kid.
The post Hacker Conversations: Dan McInerney and Puzzle-Driven Hacking appeared first on SecurityWeek.
Vendors Unveil New Cloud Security Products, Features at AWS re:Invent 2024
AWS and other vendors have announced new cloud security products and features at the cloud giant’s re:Invent 2024 conference.
The post Vendors Unveil New Cloud Security Products, Features at AWS re:Invent 2024 appeared first on SecurityWeek.
Cisco Warns of Exploitation of Decade-Old ASA WebVPN Vulnerability
The vulnerability, tracked as CVE-2014-2120 (CVSS score: 4.3), concerns a case of insufficient input validation in ASA’s WebVPN login page that could allow an unauthenticated, remote attacker to conduct a cross-site scripting (XSS) attack
760,000 Employee Records From Several Major Firms Leaked Online
A hacker has posted online over 760,000 records belonging to employees of Bank of America, Koch, Nokia, JLL, Xerox, Morgan Stanley, and Bridgewater.
The post 760,000 Employee Records From Several Major Firms Leaked Online appeared first on SecurityWeek.
Hackers Stole $1.49 Billion in Cryptocurrency to Date in 2024
Hackers have caused close to $1.49 billion in cryptocurrency losses this year, with $71 million worth of assets stolen in November.
The post Hackers Stole $1.49 Billion in Cryptocurrency to Date in 2024 appeared first on SecurityWeek.
CISA, NSA, FBI and International Partners Publish Guide for Protecting Communications Infrastructure
Energy Sector Contractor ENGlobal Targeted in Ransomware Attack
Energy sector contractor ENGlobal Corporation has restricted access to some of its systems in response to a ransomware attack.
The post Energy Sector Contractor ENGlobal Targeted in Ransomware Attack appeared first on SecurityWeek.
Cisco Warns of Attacks Exploiting Decade-Old ASA Vulnerability
Cisco has updated an advisory for CVE-2014-2120 to warn customers that the vulnerability has been exploited in the wild.
The post Cisco Warns of Attacks Exploiting Decade-Old ASA Vulnerability appeared first on SecurityWeek.
NachoVPN Tool Exploits Flaws in Popular VPN Clients for System Compromise
“By targeting the implicit trust VPN clients place in servers, attackers can manipulate client behaviours, execute arbitrary commands, and gain high levels of access
