Tag Multi-Factor Authentication

Coinbase Employee Victimized by SMS Scam in Cyber Attack; Minimal Data Compromised

Coinbase, a prominent cryptocurrency exchange based in the United States, recently disclosed a cybersecurity incident that compromised the personal information of some of its employees. On February 5, 2023, the company reported that its robust cyber controls successfully thwarted the attacker from gaining direct access to its systems, effectively preventing…

Read MoreCoinbase Employee Victimized by SMS Scam in Cyber Attack; Minimal Data Compromised

Understanding the Surge in Data Breaches

Recent analyses indicate a troubling rise in cyber intrusions, fueled by the proliferation of criminal tools and insufficient defenses. A recent episode of The Indicator from Planet Money delves into how data breaches are accelerating, the decreasing costs of entry for attackers, and the implications this holds for patients, consumers,…

Read MoreUnderstanding the Surge in Data Breaches

183 Million Synthient Stealer Credentials Now Available on Have I Been Pwned – Hackread – Your Source for Cybersecurity News, Data Breaches, Tech, AI, Crypto, and More

A substantial dataset comprising over 183 million stolen usernames and passwords has been integrated into the online resource Have I Been Pwned (HIBP). Dubbed the “Synthient Stealer Log Threat Data,” this significant compilation is not merely a leak from a single entity; rather, it constitutes a vast array of information…

Read More183 Million Synthient Stealer Credentials Now Available on Have I Been Pwned – Hackread – Your Source for Cybersecurity News, Data Breaches, Tech, AI, Crypto, and More

Cybersecurity Agencies Issue Warning on IDOR Vulnerabilities Used in Data Breaches

Recent advisories issued by cybersecurity agencies in both Australia and the United States have exposed critical vulnerabilities present in web applications that could be exploited by cybercriminals, risking data breaches and the theft of sensitive information. The joint advisory particularly underscores the threat posed by Insecure Direct Object Reference (IDOR)…

Read MoreCybersecurity Agencies Issue Warning on IDOR Vulnerabilities Used in Data Breaches

Adopt a Proactive Strategy for Password Security: Continuously Monitor for Compromised Credentials

Passwords are integral to safeguarding organizational data, yet their inherent vulnerabilities often lead to significant security risks. As users juggle a multitude of credentials, many resort to unsafe practices, such as creating weak passwords or reusing the same password across multiple accounts, which undermines security protocols. The prevalence of password…

Read MoreAdopt a Proactive Strategy for Password Security: Continuously Monitor for Compromised Credentials

Microsoft MFA AuthQuake Vulnerability Allowed Unlimited Brute-Force Attempts Without Notifications

Critical Vulnerability Discovered in Microsoft MFA Implementation Cybersecurity experts have uncovered a significant security flaw in Microsoft’s multi-factor authentication (MFA) system that could allow attackers to easily bypass protection mechanisms and gain unauthorized access to user accounts. This vulnerability was classified as “critical” by researchers from Oasis Security, who highlighted…

Read MoreMicrosoft MFA AuthQuake Vulnerability Allowed Unlimited Brute-Force Attempts Without Notifications

The Surge in Airline Data Breaches: Understanding the Reasons Behind It

Cybercriminals have increasingly turned their attention to airlines, drawn by the vast amounts of personal data these companies collect. Among the most sought-after information are passports and government identification, which pose a significant risk for long-term identity theft. According to Incogni, a company specializing in data privacy and removal, leaks…

Read MoreThe Surge in Airline Data Breaches: Understanding the Reasons Behind It

Does the ACL Data Breach Penalty Signal a Change in Privacy Law Enforcement?

On October 8, the Federal Court of Australia ruled that Australian Clinical Labs (ACL) must pay a substantial penalty for a data breach linked to its Medlab Pathology business, which occurred in February 2022. This ruling marks a significant moment in the enforcement of data protection laws, highlighting the increasing…

Read MoreDoes the ACL Data Breach Penalty Signal a Change in Privacy Law Enforcement?