Latest Articles

Microsoft Power Apps misconfiguration exposes millions of records

Microsoft Power Apps misconfiguration exposes millions of records

Microsoft Power Apps misconfiguration exposes millions of records

The caches of data that were publicly accessible included names, email addresses and social security numbers

Amer Owaida24 Aug 2021


The SideWalk may be as dangerous as the CROSSWALK

The SideWalk may be as dangerous as the CROSSWALK

The SideWalk may be as dangerous as the CROSSWALK

Meet SparklingGoblin, a member of the Winnti family

Mathieu Tartare and Thibaut Passilly24 Aug 2021


Week in security with Tony Anscombe

Week in security with Tony Anscombe

Week in security with Tony Anscombe

Who is actually paying the ransom demand? – Be careful about what you throw away – Records from a terrorist watchlist exposed online

Editor20 Aug 2021


Hackers swipe almost $100 million from major cryptocurrency exchange

Hackers swipe almost $100 million from major cryptocurrency exchange

Hackers swipe almost $100 million from major cryptocurrency exchange

Japanese cryptocurrency exchange Liquid suspends cryptocurrency deposits and withdrawals and moves its assets into cold storage

Amer Owaida20 Aug 2021


Are you, the customer, the one paying the ransomware demand?

Are you, the customer, the one paying the ransomware demand?

Are you, the customer, the one paying the ransomware demand?

Ransomware payments may have greater implications than you thought – and not just for the companies that paid up

Tony Anscombe19 Aug 2021


Health authorities in 40 countries targeted by COVID-19 vaccine scammers

Health authorities in 40 countries targeted by COVID-19 vaccine scammers

Health authorities in 40 countries targeted by COVID-19 vaccine scammers

Fraudsters impersonate vaccine manufacturers and authorities overseeing vaccine distribution efforts, INTERPOL warns

Amer Owaida18 Aug 2021


Nearly 2 million records from terrorist watchlist exposed online

Nearly 2 million records from terrorist watchlist exposed online

Nearly 2 million records from terrorist watchlist exposed online

The secret list was exposed online for three weeks, allowing anyone to access it without any kind of authentication

Amer Owaida17 Aug 2021


Dumpster diving is a filthy business

Dumpster diving is a filthy business

Dumpster diving is a filthy business

One man’s trash is another man’s treasure – here’s why you should think twice about what you toss in the recycling bin

Jake Moore17 Aug 2021


Week in security with Tony Anscombe

Week in security with Tony Anscombe

Week in security with Tony Anscombe

How IISpy spies on its victims and stays under the radar – IISerpent tampers with search engine results – How to avoid falling prey to ransomware

Editor13 Aug 2021


Examining threats to device security in the hybrid workplace

Examining threats to device security in the hybrid workplace

Examining threats to device security in the hybrid workplace

As employees split their time between office and off-site work, there’s a greater potential for company devices and data to fall into the wrong hands

Phil Muncaster12 Aug 2021


IISerpent: Malware-driven SEO fraud as a service

IISerpent: Malware-driven SEO fraud as a service

IISerpent: Malware-driven SEO fraud as a service

The last in our series on IIS threats introduces a malicious IIS extension used to manipulate page rankings for third-party websites

Zuzana Hromcová11 Aug 2021


Deepfakes – the bot made me do it

Deepfakes – the bot made me do it

Deepfakes – the bot made me do it

As deepfakes become indistinguishable from reality and the potential for the misuse of synthetic content is virtually endless, what can you do to avoid falling victim to deepfake fraud?

Tony Anscombe10 Aug 2021


Apt Activity Report
MDR Protection