Monthly Archives: July 2019

//July

UK watchdog fined firms £3m for data breaches last year – before its GDPR balls dropped

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

The Information Commissioner’s Office issued £3m worth of fines for data breaches in the year to April 2018 – a mere fraction of its recent proposed GDPR-enabled penalties on British Airways and Marriott.

The UK data watchdog’s annual report for […]

By |July 11th, 2019|Cyber News|

Mozilla boots alleged snoop troupe from its root cert coop: UAE-based DarkMatter thrown onto CA blocklist

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Mozilla on Tuesday added digital certificates belonging to security biz DarkMatter and its subsidiaries to Firefox’s OneCRL blocklist, based on concerns that the UAE-based company will misuse its power as a certificate authority (CA) to intercept online communications.

In a post to Mozilla’s […]

By |July 11th, 2019|Cyber News|

‘This repository is private’ – so what’s it doing on the public internet, GE Aviation?

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

GE Aviation managed to expose a pile of its private keys on a misconfigured Jenkins instance that was exposed to the public internet, according to a security researcher who found it through Shodan.

“It took me only a couple of […]

By |July 11th, 2019|Cyber News|

Marriott’s got 99 million problems and the ICO’s one: Starwood hack mega-fine looms over

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

The UK’s Information Commissioner’s Office wants to fine Marriott Hotels £99m over its loss of 383 million customer booking records last year.

The almost-but-not-quite-£100m sum (£99,200,396) was disclosed in a US regulatory filing by Marriott, which said: “Marriott has the right […]

By |July 11th, 2019|Cyber News|

Huawei website ████ ██████ security flaws ██████ customer info and biz operations at risk: ███████ patched

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Huawei has gagged infosec researchers from discussing now-patched critical vulnerabilities in the Chinese giant’s web systems that could have been exploited to steal customer information and derail the manufacturer’s operations.

A security research team at Italian outfit Swascan told The Register on […]

By |July 11th, 2019|Cyber News|

Meet the Great Duke of… DLL: Microsoft shines light on Astaroth, a devilishly sneaky strain of fileless malware

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Microsoft has lifted the lid on the inner-workings of a particularly nasty piece of fileless malware that aims to pilfer user data without needing to install software on the victim’s machine.

Dubbed Astaroth – the same name as the Great […]

By |July 11th, 2019|Cyber News|

Zoom Zero Day: 4+ Million Webcams & maybe an RCE? Just get them to visit your website!

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

CVE-Numbers

DOS Vulnerability — Fixed in Client version 4.4.2 — CVE-REQUESTED
Information Disclosure (Webcam) — Unpatched — CVE-REQUESTED

Foreward

This vulnerability allows any website to forcibly join a user to a Zoom call, with their video camera activated, without the user’s permission.

On top […]

By |July 9th, 2019|Cyber News|

UK data regulator threatens British Airways with 747-sized fine for massive personal data blurt

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

The UK Information Commissioner’s Office has warned BA it faces a whopping £183.39m following the theft of million customer records from its website and mobile app servers.

The record-breaking fine – more or less the lower end of the price of one […]

By |July 8th, 2019|Cyber News|

Medway Council reforms eforms to stop blurting out residents’ details

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Medway council in Kent has corked a hole in its website that spat out residents’ names, mailing addresses, phone numbers and email addresses after a Reg reader got in touch to complain.

The breach appeared courtesy of some of Medway Council’s electronic […]

By |July 8th, 2019|Cyber News|

Cisco delivers Patch Tuesday warmup with bundle of 18 bug fixes

Institute For Ethical Hacking Course and Ethical Hacking Training in Pune – India

Extreme Hacking | Sadik Shaikh | Cyber Suraksha Abhiyan

Credits: The Register

Cisco has delivered a bundle of 17 security updates to address 18-CVE-listed vulnerabilities in its networking and communications gear.

Switchzilla has classified 10 of the fixed bugs as high security issues, with exploits leading to everything from command and code execution to […]

By |July 6th, 2019|Cyber News|