2024
20.06

Die US-Cybersicherheitsbehörde CISA legt in ihrem Bestreben, die Sicherheitsstandards in unternehmenstauglicher Software zu verbessern, nach: Unter dem Titel “Secure by Design Pledge” hebt sie eine freiwillige Selbstverpflichtung für Hersteller aus der Taufe. Unternehmen, welche die Verpflichtung unterzeichnen, müssen innerhalb einer Zwölfmonatsfrist nach der Unterzeichnung Schritte durchführen, um ihre Produkte diesem Ziel näherzubringen. Eine rechtliche Bindungswirkung besteht jedoch nicht.

Source ->

Comments Off on Selbstverpflichtung: Über 60 Hersteller geloben, “Secure by Design” zu werden
2024
19.06

TunnelVision is a new VPN bypass technique that enables threat actors to spy on users’ traffic bypassing the VPN encapsulation. Leviathan Security researchers recently identified a novel attack technique, dubbed TunnelVision, to bypass VPN encapsulation.

Source ->

Comments Off on New TunnelVision technique can bypass the VPN encapsulation
2024
18.06

The FBI, UK National Crime Agency, and Europol have unmasked the identity of the admin of the LockBit ransomware operation, aka ‘LockBitSupp’ and ‘putinkrab’ , and issued sanctions against him. It was the first time that the admin of the notorious group was identified by law enforcement.

Source ->

Comments Off on Law enforcement agencies identified LockBit ransomware admin and sanctioned him
2024
17.06

Apple’s crusade for user privacy on its iOS platform stares at a potential setback as a new report accused tech bigwigs including Google, Meta, and Spotify of flouting the company’s guidelines on device fingerprinting.

Device fingerprinting is a technique that involves collecting various details from the user’s device, like system boot time or available disk space, to create a unique identifier. This identifier can be used to track users across platforms for personalized advertising – a practice the iPhone maker has increasingly restricted.

Source ->

Comments Off on Google, Meta, Spotify accused of flouting Apple’s device fingerprinting rules
2024
16.06

Google unveiled Google Threat Intelligence, a new Google Cloud Security offering, at the RSA Conference. The service aims to provide organizations with enhanced visibility into the global threat landscape, enabling them to better protect digital assets and respond to emerging cybersecurity threats.

Source ->

Comments Off on Google launches Google Threat Intelligence at RSA Conference