Security

Pierluigi Paganini January 06, 2020
School software provider Active Network discloses data breach

The US-based School management software provider Active Network disclosed a severe security breach last week. Active Network provides web-based school management software for K-12 schools and districts, last week it announced to have suffered a major security breach. The hackers gained access to Blue Bear, a cloud school accounting software customized especially for K-12 schools and […]

Pierluigi Paganini January 05, 2020
California IT service provider Synoptek pays ransom after Sodinokibi attack

Synoptek, A California-based IT service provider decided to pay the ransom to decrypt its files after being infected with the Sodinokibi ransomware. Synoptek, a California-based provider of IT management and cloud hosting services paid the ransom to decrypt its files following a Sodinokibi ransomware attack. The gang behind the Sodinokibi ransomware has been very active […]

Pierluigi Paganini January 04, 2020
Facebook fined $1.65 by Brazil Governenment over Cambridge Analytica

Early this week, Brazil fined Facebook $1.65 million for improperly sharing users’ data in a case linked to the Cambridge Analytica privacy scandal. Brazil fined Facebook $1.65 million for improperly sharing users’ data in a case linked to the Cambridge Analytica privacy scandal. According to the Brazilian prosecutors, Facebook is responsible for an “abusive practice” […]

Pierluigi Paganini January 04, 2020
Cisco Talos discovered 2 critical flaws in the popular OpenCV library

Maintainers of the OpenCV library addressed two buffer overflow flaws that could lead to arbitrary code execution. Maintainers of the OpenCV library addressed two high-severity buffer overflow vulnerabilities that could be exploited by an attacker to execute arbitrary code. OpenCV (Open Source Computer Vision Library) is an open-source library of programming functions mainly aimed at […]

Pierluigi Paganini January 03, 2020
Cisco addresses several flaws in its DCNM product

Cisco has released software updates for its Data Center Network Manager (DCNM) product to address several critical and high-severity issues. Cisco has released software updates that address several critical and high-severity vulnerabilities in its Data Center Network Manager (DCNM) product. All the vulnerabilities were reported to Cisco through Trend Micro’s Zero Day Initiative (ZDI) and […]

Pierluigi Paganini January 01, 2020
Irish National Cyber Security Strategy warns of ​attacks on Irish data centres

The Irish government has published its National Cyber Security Strategy​, it is an update of the country’s first Strategy which was published in 2015. The 2019 National Cyber Security Strategy aims to allow Ireland to continue to safely enjoy the benefits of the digital revolution and play a full part in shaping the future of […]

Pierluigi Paganini January 01, 2020
Expert finds Starbucks API Key exposed online

Developers at Starbucks left exposed an API key that could be used by an attacker to access internal systems and manipulate the list of authorized users. The development team at Starbucks left exposed an API key that could be used by an attacker to access company internal systems and manipulate the list of authorized users. […]

Pierluigi Paganini December 31, 2019
DHS report – Voting systems in North Carolina county in 2016 were not hacked

Computer faults that disrupted voting in a North Carolina county in 2016 were not caused by cyber attacks, a federal investigation states. On Monday, the U.S. Department of Homeland Security shared the results of an investigation on computer errors that disrupted voting in a North Carolina county in 2016, authorities were not able to associate […]

Pierluigi Paganini December 30, 2019
Vladimir Putin ‘s computers still run Windows XP, Media reports

Russia is one of the most advanced cyber states, but according to the media President Vladimir Putin ‘s personal PC is apparently still running Win XP. The news is curious and it probably has little real if not the fact that Vladimir Putin is not a super cyber security expert, although he knows its importance […]

Pierluigi Paganini December 27, 2019
NVIDIA patches CVE-2019-5702 high-severity flaw in GeForce Experience

NVIDIA released a security update for the Windows NVIDIA GeForce Experience app that addresses CVE-2019-5702 high severity flaw. NVIDIA addresses a high severity vulnerability (CVE-2019-5702) in Windows NVIDIA GeForce Experience (GFE) app that could be exploited by local attackers to trigger a denial of service (DoS) condition or escalate privileges on systems running the vulnerable […]