The Information Highway

The Information Highway

Read the latest technology news, your comprehensive source for the latest breakthroughs, trends, and innovations shaping the world of technology.

Synology hurries out patches for zero-days exploited at Pwn2Own

Synology

Synology, a Taiwanese network-attached storage (NAS) appliance maker, patched two critical zero-days exploited during last week's Pwn2Own hacking competition within days.

Continue reading
  114 Hits

Sophos reveals 5-year battle with Chinese hackers attacking network devices

Chinese_hackers

Sophos disclosed today a series of reports dubbed "Pacific Rim" that detail how the cybersecurity company has been sparring with Chinese threat actors for over 5 years as they increasingly targeted networking devices worldwide, including those from Sophos.

Continue reading
  154 Hits

Microsoft delays Windows Recall again, now by December

windows-11-recall

Microsoft is again delaying the rollout of its AI-powered Windows Recall feature after announcing in August that it will be available for Insiders with Copilot+ PCs in October.

Continue reading
  131 Hits

Black Basta ransomware poses as IT support on Microsoft Teams to breach networks

Microsoft_Teams

The BlackBasta ransomware operation has moved its social engineering attacks to Microsoft Teams, posing as corporate help desks contacting employees to assist them with an ongoing spam attack.

Continue reading
  411 Hits

Amazon seizes domains used in rogue Remote Desktop campaign to steal data

Microsoft-Russia

Amazon has seized domains used by the Russian APT29 hacking group in targeted attacks against government and military organizations to steal Windows credentials and data using malicious Remote Desktop Protocol connection files.

Continue reading
  162 Hits

QNAP, Synology, Lexmark devices hacked on Pwn2Own Day 3

pwn2own-ireland

The third day of Pwn2Own Ireland 2024 continued to showcase the expertise of white hat hackers as they exposed 11 zero-day vulnerabilities, adding $124,750 to the total prize pool, which now stands at $874,875.

Continue reading
  242 Hits

Henry Schein discloses data breach a year after ransomware attack

henry-schein

Henry Schein has finally disclosed a data breach following at least two back-to-back cyberattacks in 2023 by the BlackCat Ransomware gang, revealing that over 160,000 people had their personal information stolen.

Continue reading
  210 Hits

Insurance admin Landmark says data breach impacts 800,000 people

data-breach-header

Insurance administrative services company Landmark Admin warns that a data breach impacts over 800,000 people from a May cyberattack.

Continue reading
  212 Hits

Windows 11 KB5044380 preview update lets you remap the Copilot key

Windows_11_dark_hd_20241026-095239_1

Microsoft has released the optional KB5044380 Preview cumulative update for Windows 11 23H2 and 22H2, which brings seventeen changes, including a new Gamepad keyboard and the ability to remap the Copilot keyboard key.

Continue reading
  237 Hits

Microsoft creates fake Azure tenants to pull phishers into honeypots

Microsoft

Microsoft is using deceptive tactics against phishing actors by spawning realistic-looking honeypot tenants with access to Azure and lure cybercriminals in to collect intelligence about them.

Continue reading
  266 Hits

Cisco takes DevHub portal offline after hacker publishes stolen data

Cisco

Cisco confirmed today that it took its public DevHub portal offline after a threat actor leaked "non-public" data, but it continues to state that there is no evidence that its systems were breached.

Continue reading
  220 Hits

Tech giant Nidec confirms data breach following ransomware attack

nidec

Nidec Corporation is informing that hackers behind a ransomware attack is suffered earlier this year stole data and leaked it on the dark web.

Continue reading
  216 Hits

Intel, AMD CPUs on Linux impacted by newly disclosed Spectre bypass

motherboard-cpu-bios

The latest generations of Intel processors, including Xeon chips, and AMD's older microarchitectures on Linux are vulnerable to new speculative execution attacks that bypass existing 'Spectre' mitigations.

Continue reading
  265 Hits

Microsoft warns it lost some customer's security logs for a month

microsoft-red-header

Microsoft is warning enterprise customers that, for almost a month, a bug caused critical logs to be partially lost, putting at risk companies that rely on this data to detect unauthorized activity.

Continue reading
  223 Hits

Amazon says 175 million customer now use passkeys to log in

amazon-logo

Amazon has seen massive adoption of passkeys since the company quietly rolled them out a year ago, announcing today that over 175 million customers use the security feature.

Continue reading
  212 Hits

New FIDO proposal lets you securely move passkeys across platforms

3

The Fast IDentity Online (FIDO) Alliance has published a working draft of a new specification that aims to enable the secure transfer of passkeys between different providers.

Continue reading
  240 Hits

Over 200 malicious apps on Google Play downloaded millions of times

image_2

Google Play, the official store for Android, distributed over a period of one year more than 200 malicious applications, which cumulatively counted nearly eight million downloads.

Continue reading
  231 Hits

Cisco investigates breach after stolen data for sale on hacking forum

Cisco

Cisco has confirmed that it is investigating recent claims that it suffered a breach after a threat actor began selling allegedly stolen data on a hacking forum.

Continue reading
  230 Hits

Microsoft deprecates PPTP and L2TP VPN protocols in Windows Server

Windows-Server

Microsoft has officially deprecated the Point-to-Point Tunneling Protocol (PPTP) and Layer 2 Tunneling Protocol (L2TP) in future versions of Windows Server, recommending admins switch to different protocols that offer increased security.

Continue reading
  244 Hits

Casio confirms customer data stolen in a ransomware attack

Casio

Casio now confirms it suffered a ransomware attack earlier this month, warning that the personal and confidential data of employees, job candidates, and some customers was also stolen.

Continue reading
  186 Hits

Top Breaches Of 2023

Customers Affected In T-Mobile Breach
Accounts Affected In MOVEit Breach
Customers Affected In MCNA Insurance Data Breach
Individuals Affected In PharMerica Data Breach
Users Affected In ChatGPT Major Data Breach
*Founder Shield End of Year 2023