Fri.Dec 27, 2024

article thumbnail

Palo Alto Patches Exploited Firewall Denial-of-Service Flaw

Data Breach Today

Unauthenticated Attackers Using Malicious Packet to Crash Devices' PAN-OS Software Security giant Palo Alto Networks is pushing updates to fix a denial-of-service vulnerability in its PAN-OS device software that unauthenticated, remote attackers have been actively exploiting. The flaw can be triggered by sending firewalls "a malicious packet," which will crash the devices.

Security 173
article thumbnail

The Paper Passport Is Dying

WIRED Threat Level

Smartphones and face recognition are being combined to create new digital travel documents. The paper passports days are numbereddespite new privacy risks.

Paper 126
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

Trending Sources

article thumbnail

Feds Identify Ninth Telecom Victim in Salt Typhoon Hack

Data Breach Today

Officials Say Chinese Hackers Maintained 'Broad and Full' Access to Telecom Systems Federal officials told reporters Friday that ongoing investigations into the Salt Typhoon cyberespionage campaign have identified a ninth victim company affected by the attack, in which hackers maintained "broad and full" access to vulnerable communications infrastructure across the country.

article thumbnail

15 ways AI saved me time at work in 2024 - and how I plan to use it in 2025

Collaboration 2.0

In 2024, AI became truly helpful. Here are 15 clever ways I integrated it into my workflow for quicker, better results - and how you can too.

IT 124
article thumbnail

Prevent Data Breaches With Zero-Trust Enterprise Password Management

Keeper Security is transforming cybersecurity for people and organizations around the world. Keeper’s affordable and easy-to-use solutions are built on a foundation of zero-trust and zero-knowledge security to protect every user on every device. Our next-generation privileged access management solution deploys in minutes and seamlessly integrates with any tech stack to prevent breaches, reduce help desk costs and ensure compliance.

article thumbnail

White House Clears HIPAA Security Rule Update

Data Breach Today

HHS Proposes Encryption, Security Standards for Healthcare Firms The U.S. Department of Health and Human Services is proposing new rules for healthcare organizations that aim to bolster protections for Americans by requiring companies to encrypt sensitive patient data and conduct routine compliance evaluations amid increased threats targeting the sector.

Security 130

More Trending

article thumbnail

Ransomware Group Hits Substance Abuse Treatment Service

Data Breach Today

American Addiction Centers Says 422,424 Individuals' Private Details Exposed Substance abuse treatment company American Addiction Centers is warning nearly half a million patients that ransomware-wielding attackers stole their personal details, including names and Social Security numbers. The Rhysida ransomware operation claimed to perpetrate the attack.

article thumbnail

Why ethics is becoming AI's biggest challenge

Collaboration 2.0

Teams designing AI should include linguistics and philosophy experts, parents, young people, everyday people with different life experiences from different socio-economic backgrounds.

106
106
article thumbnail

D-Link Botnet Attacks Surge in Global Spike

Data Breach Today

Mirari and Kaiten Botnet Variants Exploit Unpatched Routers Attackers exploiting nearly decade-old D-Link router vulnerabilities drove a sharp rise in botnet activity in 2024 through variants of the Mirari and Kaiten taking advantage of unpatched devices. Operators of botnets known as Ficora and Capsaicin exploit nearly decade-old flaws.

130
130
article thumbnail

OpenAI's o3 isn't AGI yet but it just did something no other AI has done

Collaboration 2.0

The new AI model 'is doing something completely different from the GPT series.

IT 102
article thumbnail

Optimizing The Modern Developer Experience with Coder

Many software teams have migrated their testing and production workloads to the cloud, yet development environments often remain tied to outdated local setups, limiting efficiency and growth. This is where Coder comes in. In our 101 Coder webinar, you’ll explore how cloud-based development environments can unlock new levels of productivity. Discover how to transition from local setups to a secure, cloud-powered ecosystem with ease.

article thumbnail

Wanted: An Incident Repository For Healthcare Nonprofits

Data Breach Today

Cyber incident details involving non-profit and non-government entities across sectors such as healthcare are not centrally reported and collected, creating gaps for researchers, IT experts and others seeking to analyze trends in their industries, said Stanley Mierzwa of Kean University.

article thumbnail

AI isn't the next big thing - here's what is

Collaboration 2.0

Here's what you should be focusing on instead.

101
101
article thumbnail

Casino Players Using Hidden Cameras for Cheating

Schneier on Security

The basic strategy is to place a device with a hidden camera in a position to capture normally hidden card values, which are interpreted by an accomplice off-site and fed back to the player via a hidden microphone. Miniaturization is making these devices harder to detect. Presumably AI will soon obviate the need for an accomplice.

99
article thumbnail

Is free Apple TV+ on the way? The streaming service is teasing something for next weekend

Collaboration 2.0

You might have the chance to test-drive Apple's streaming service for free soon.

100
100
article thumbnail

15 Modern Use Cases for Enterprise Business Intelligence

Large enterprises face unique challenges in optimizing their Business Intelligence (BI) output due to the sheer scale and complexity of their operations. Unlike smaller organizations, where basic BI features and simple dashboards might suffice, enterprises must manage vast amounts of data from diverse sources. What are the top modern BI use cases for enterprise businesses to help you get a leg up on the competition?

article thumbnail

Palo Alto Networks fixed a high-severity PAN-OS flaw

Security Affairs

Palo Alto Networks addressed a high-severity PAN-OS flaw that could trigger denial-of-service (DoS) on vulnerable devices. Palo Alto Networks addressed a high-severity flaw, tracked as CVE-2024-3393 (CVSS score: 8.7), in PAN-OS software that could cause a denial-of-service (DoS) condition. An unauthenticated attacker can exploit this vulnerability to reboot the firewall by sending a malicious packet through its data plane.

article thumbnail

How managing networks differs on Windows 10 and Linux

Collaboration 2.0

If you're considering leaving the soon-to-sunsetted Windows 10 for Linux, you'll want to know how to manage networks with the open-source operating system.

85
article thumbnail

Unlock the power of functional test automation with OpenText Functional Testing

OpenText Information Management

OpenText Functional Testing is an AI-powered functional testing tool designed to streamline and enhance test automation across desktop, web, mobile, mainframe, composite, and packaged enterprise-grade applications. With support for more than 200 technologies, OpenText Functional Testing stands out as a versatile solution capable of addressing diverse testing needs.

article thumbnail

How to buy Casio's tiny digital watch for your finger in the US

Collaboration 2.0

If you like your watches extra little and not-so-smart, Casio might have something for you.

84
article thumbnail

The Cloud Development Environment Adoption Report

Cloud Development Environments (CDEs) are changing how software teams work by moving development to the cloud. Our Cloud Development Environment Adoption Report gathers insights from 223 developers and business leaders, uncovering key trends in CDE adoption. With 66% of large organizations already using CDEs, these platforms are quickly becoming essential to modern development practices.

article thumbnail

North Korea actors use OtterCookie malware in Contagious Interview campaign

Security Affairs

North Korea-linked threat actors are using the OtterCookie backdoor to target software developers with fake job offers. North Korea-linked threat actors were spotted using new malware called OtterCookie as part of the Contagious Interview campaign that targets software developer community with fake job offers. The Contagious Interview campaign was first detailed by Palo Alto Networks researchers in November 2023, however it has been active since at least December 2022.

article thumbnail

Why I prefer this Android-based E Ink reader over the Kindle and ReMarkable

Collaboration 2.0

The Onyx Boox Page offers just the right amount of capabilities for an E Ink tablet, with a compact and stylish design.

82
article thumbnail

Experts warn of a surge in activity associated FICORA and Kaiten botnets

Security Affairs

FortiGuard Labs observed increased activity from two botnets, the Mirai variant “FICORA” and the Kaiten variant “CAPSAICIN” FortiGuard Labs researchers observed a surge in activity associated with two botnets, the Mirai variant “ FICORA ” and the Kaiten variant “CAPSAICIN,” in late 2024. Both botnets target vulnerabilities in D-Link devices, particularly through the HNAP interface, allowing remote command execution.

article thumbnail

New wearable data could lead to early diagnosis of fertility issues - without needles

Collaboration 2.0

Can a fitness band detect menstrual irregularities?

76
article thumbnail

The Tumultuous IT Landscape Is Making Hiring More Difficult

After a year of sporadic hiring and uncertain investment areas, tech leaders are scrambling to figure out what’s next. This whitepaper reveals how tech leaders are hiring and investing for the future. Download today to learn more!

article thumbnail

Brazilian citizen charged for threatening to release data stolen from a company in 2020

Security Affairs

A Brazilian citizen faces U.S. charges for allegedly threatening to release data stolen from a company in a March 2020 security breach. The U.S. government has charged the Brazilian citizen Junior Barros De Oliveira, 29, with allegedly threatening to release data stolen from a company during a March 2020 security breach. De Oliveira was charged with four counts of extortionate threats involving information obtained from protected computers in violation of Title 18, United States Code, Section 10

article thumbnail

The best laptops of 2024: Expert tested and reviewed

Collaboration 2.0

We've tested dozens of the best laptops released this year from all the big manufacturers, including Apple, Acer, Asus, and more so you can find the right fit.

article thumbnail

Friday Squid Blogging: Squid on Pizza

Schneier on Security

Pizza Hut in Taiwan has a history of weird pizzas, including a “2022 scalloped pizza with Oreos around the edge, and deep-fried chicken and calamari studded throughout the middle.” Blog moderation policy.

84
article thumbnail

Stop plugging these 7 devices into extension cords - here's why it's dangerous

Collaboration 2.0

Extension cords and power strips are often safe for home and office electronics. But for some appliances, they can be a dangerously bad idea.

IT 75
article thumbnail

Introducing CDEs to Your Enterprise

Explore how enterprises can enhance developer productivity and onboarding by adopting self-hosted Cloud Development Environments (CDEs). This whitepaper highlights the simplicity and flexibility of cloud-based development over traditional setups, demonstrating how large teams can leverage economies of scale to boost efficiency and developer satisfaction.

article thumbnail

U.S. Finalizes Rule Throttling Bulk Data Sales to China

Data Breach Today

Rule Aims to Stymie Weaponization of Americans' Data The U.S. federal government finalized Friday regulations throttling the bulk commercial transfer to China and Russia of data pinpointing Americans' location, their health data, or biometric and genomic identifiers. The rule implements a February executive order from President Joe Biden.

Sales 130
article thumbnail

I tested the new Kindle Paperwhite, and it has the one upgrade I've been waiting for

Collaboration 2.0

Amazon recently launched the 12th-generation Kindle Paperwhite Signature Edition, which has up to three months of battery life and the fastest page turns ever.

IT 75
article thumbnail

Shift automated tests left with OpenText Functional Testing for Developers

OpenText Information Management

Empower your developers to perform functional testing within their preferred development environments with OpenText Functional Testing for Developers. This shift-left functional testing tool integrates seamlessly with standard integrated development environments, supports a variety of programming languages, and significantly improves test accuracy with the use of AI and object recognition.

Cloud 59