Wikimedia wants the Supreme Court to hear case over NSA surveillance. Here's what's at stake.

The Supreme Court will meet on Friday to decide whether to review a case challenging the legality of the National Security Agency's surveillance program that hoovers up Americans' internet traffic as it flows in and out of the U.S The American Civil Liberties Union and Knight Fir … | Continue reading


@cyberscoop.com | 3 years ago

White House rallies industry support for Internet of Things labeling effort

Executives from consumer electronic companies along with advocates and academics joined officials from the White House and FCC the meeting. | Continue reading


@cyberscoop.com | 3 years ago

How one group of 'fellas' is winning the meme war in support of Ukraine

The NAFO movement has become an important component of the information war playing out online between Russia and Ukraine. | Continue reading


@cyberscoop.com | 3 years ago

People search websites create privacy nightmares for abortion rights advocates

Many abortion rights advocates say data brokers selling their personal information online put them at risk. | Continue reading


@cyberscoop.com | 3 years ago

Russian propaganda op focuses on dividing Western coalition supporting Ukraine

The Russian propaganda focuses on the threat that Ukrainian refugees could bring economic hardship to Europe. | Continue reading


@cyberscoop.com | 4 years ago

Marriott confirms latest data breach, possibly exposing information

The international hotel chain says criminal hackers tricked an employee into giving up access to a computer. | Continue reading


@cyberscoop.com | 4 years ago

Abortion disinformation is growing and dangerously divisive, experts say

Disinformation scholars say the abortion issue, which is both polarizing and emotional, is a perfect vessel for spreading divisive falsehoods. | Continue reading


@cyberscoop.com | 4 years ago

Ukraine war offers cyberwarfare manual for Chinese generals eyeing Taiwan

China's certainly watching Russia's missteps in cyberspace, as well as the U.S. response. | Continue reading


@cyberscoop.com | 4 years ago

Supreme Court's Roe vs. Wade reversal sparks calls for strengthening privacy

Data collected by tech companies could be used to prosecute abortion seekers, they warn. | Continue reading


@cyberscoop.com | 4 years ago

US marshal used cell phone location service to illegally access data

Prosecutors say Adrian Pena used Securus. | Continue reading


@cyberscoop.com | 4 years ago

Water companies are increasingly uninsurable due to ransomware

The scope of what insurers are covering is also narrowing as costs go up, said an association representative. | Continue reading


@cyberscoop.com | 4 years ago

Dual North Korean hacking efforts found attacking Google Chrome vulnerability

The hacking attempts are just the latest in the multiple ongoing campaigns from the North Korean government. | Continue reading


@cyberscoop.com | 4 years ago

Venezuelan leftists took to Twitter attempting to swing Colombian election

An account had more than 144,000 followers before Twitter suspended it. | Continue reading


@cyberscoop.com | 4 years ago

Russia to create its own security certificate authority, alarming experts

Experts say Russia's decision to bypass sanctions and create its own security certificate authority will allow surveillance, disinformation | Continue reading


@cyberscoop.com | 4 years ago

Personal data from T-Mobile breach still spreading on dark web, states warn

Attorneys general from New York, California and multiple other states issued alerts to consumers about the August 2021 T-Mobile incident. | Continue reading


@cyberscoop.com | 4 years ago

Id.me CEO backtracks on claims company doesn't use powerful facial recognition

Identity verification company ID.me uses a type of powerful facial recognition that searches for individuals within mass databases of photos, CEO Blake Hall explained in a LinkedIn post on Wednesday. The post follows a news release from the company last week stating directly that … | Continue reading


@cyberscoop.com | 4 years ago

Defense Department blocks ads to counter malvertising, official tells Congress

The Defense Department employs multiple methods of blocking internet advertisements because of the threats that malicious ads pose, the Pentagon said in a letter Monday. The department’s answer to a summer inquiry from Sen. Ron Wyden, D-Ore., follows similar responses from the in … | Continue reading


@cyberscoop.com | 4 years ago

CISA warns 'most serious' Log4j vulnerability likely to affect 100s of millions

Cybersecurity and Infrastructure Security Agency Director Jen Easterly told industry leaders in a phone briefing Monday that a vulnerability in a widely-used logging library “is one of the most serious I’ve seen in my entire career, if not the most serious.” “We expect the vulner … | Continue reading


@cyberscoop.com | 4 years ago

Is cyber insurance still an economically viable approach to ransomeware?

It’s a sure sign of trouble when leading insurance industry executives are worried about their own prices going up. Two separate CEOs of major insurance giants remarked in recent weeks about a considerable jump in cyber insurance premium prices: AIG’s chief executive said rates i … | Continue reading


@cyberscoop.com | 4 years ago

Hackers seize severe Microsoft Exchange vulnerabilities

A fresh wave of attacks against Microsoft Exchange has government cybersecurity officials on guard for a possible repeat of the chaos hackers rendered earlier this year by exploiting different vulnerabilities in the popular workplace mail server. The Department of Homeland Securi … | Continue reading


@cyberscoop.com | 4 years ago

Courts order handover of breach forensic reports in trend welcomed by consumers

In the past year, three judges have ordered companies that suffered data breaches to hand over internal forensic reports on how the incident happened — a trend that could lend new insights into incidents where consumers’ personal data is exposed, at the expense of companies that … | Continue reading


@cyberscoop.com | 5 years ago

Cryptographers unearth vulnerabilities in Telegram's encryption protocol

An international team of computer scientists reported on Friday that they found four cryptographic vulnerabilities in the popular encrypted message app Telegram. The weaknesses range “from technically trivial and easy to exploit to more advanced and of theoretical interest,” acco … | Continue reading


@cyberscoop.com | 5 years ago

SolarWinds says hackers used a zero-day flaw for targeted attacks in new breach

The federal contractor at the heart of a cyber-espionage campaign that caused months of consternation throughout the U.S. government says hackers have struck again. SolarWinds says an attacker leveraged a software vulnerability in a company product to carry out “limited, targeted … | Continue reading


@cyberscoop.com | 5 years ago

Court rules encrypted email provider Tutanota must monitor messages

The Federal Court of Justice (BGH) in Germany has ruled that Tutanota must monitor messages of accounts implicated in a blackmail case. | Continue reading


@cyberscoop.com | 5 years ago

National security officials outline hopes for US data breach notification law

Top U.S. national security officials on Tuesday explained some ideal elements to a potential national data breach reporting law, describing the idea as one pathway to stopping massive security incidents like the SolarWinds hack. A national data breach reporting law would need to … | Continue reading


@cyberscoop.com | 5 years ago

Colonial Pipeline didn't tell CISA about ransomware incident

Colonial Pipeline didn’t notify the Homeland Security Department’s Cybersecurity and Infrastructure Security Agency of its ransomware incident, and CISA still didn’t have technical details about the attack as of Tuesday morning, the agency’s top official told senators. Acting dir … | Continue reading


@cyberscoop.com | 5 years ago

Experts suggest French insurer AXA's plan to not pay ransomw will set precedent

When French insurer AXA signaled last week that it would no longer write new cyber-insurance policies covering  extortion payouts to criminals, ransomware and cyber insurance experts had two reactions. They wondered why it took so long, and how long it would take others to follow … | Continue reading


@cyberscoop.com | 5 years ago

Hundreds of electric utilities downloaded SolarWinds backdoor, regulator says

About a quarter of roughly 1,500 electric utilities sharing data with the North American power grid regulator said they installed the malicious SolarWinds software used by suspected Russian hackers, the regulator said on Tuesday. The electric utilities did not report any signific … | Continue reading


@cyberscoop.com | 5 years ago

More than $4B in cybercrime losses reported to FBI in 2020

American victims reported $4.2 billion in losses as a result of cybercrime and internet fraud to the FBI in 2020, a roughly 20% uptick in the money known to be lost to scammers in 2019, the bureau said in a new report.  The FBI’s Internet Crime Complaint Center, the organization … | Continue reading


@cyberscoop.com | 5 years ago

Biden administration mulls software security grades after SolarWinds

The White House is contemplating the use of cybersecurity ratings and standards for U.S. software, a move akin to how New York City grades restaurants on sanitation or Singapore labels internet of things devices, a senior administration official told reporters on Friday. “There w … | Continue reading


@cyberscoop.com | 5 years ago

ProtonMail, Tutanota urging EU to reconsider encryption rules

Following the European Council’s adoption of a resolution on encryption last month, encrypted service providers are fighting back. | Continue reading


@cyberscoop.com | 5 years ago

Chris DeRusha, who protected Biden campaign from hackers, is the Federal CISO

The former top cybersecurity official on Joe Biden’s presidential campaign said late Monday that he is now in charge of helping protect the federal government’s sprawling bureaucracy from hackers. Chris DeRusha, also a former White House cybersecurity official in the Obama admini … | Continue reading


@cyberscoop.com | 5 years ago

DIA uses purchased phone location data without warrants

The DIA has been using smartphone data purchased from commercially available databases to track device location, per an intelligence memo. | Continue reading


@cyberscoop.com | 5 years ago

Why Jabber reigns across the Russian cybercrime underground

Much of the Russian cybercrime underworld is an enigma, but one technology serves as a crucial common link across all of it: Jabber. In a space of cutting-edge tech, creativity and crime, the 18-year-old instant messenger is the most popular communication tool among Russian-speak … | Continue reading


@cyberscoop.com | 5 years ago

CISA tells agencies to consider ad blockers to fend off 'malvertising'

The U.S. Cybersecurity and Infrastructure Security Agency urged federal agencies on Thursday to deploy ad-blocking software and standardize web browser usage across their workforces in order to fend off advertisements implanted with malware. “With many agencies greatly expanding … | Continue reading


@cyberscoop.com | 5 years ago

Microsoft identifies second hacking group affecting SolarWinds software

Microsoft revealed that a second hacking group had deployed malicious code that affects software made by SolarWinds, the federal contractor at the center of a suspected Russian espionage campaign against multiple U.S. government agencies. “[T]he investigation of the whole SolarWi … | Continue reading


@cyberscoop.com | 5 years ago

How the US military used a creepy island to test cyberattacks on the grid

The U.S. government officials trying to test the country’s ability to respond to a major cyberattack thought they had pulled out all the stops. Engineers had planned to simulate the kind of security incident that would cause an electrical blackout, after all, and had even planned … | Continue reading


@cyberscoop.com | 5 years ago

'Smart' doorbells for sale on Amazon came stocked with security vulnerabilities

Holiday shoppers looking for a wireless-connected doorbell might want to take a closer look at the device’s security features. The U.K.-based security company NCC Group and consumer advocacy group Which? have found vulnerabilities in 11 “smart” doorbells sold on popular platforms … | Continue reading


@cyberscoop.com | 5 years ago

Senior DHS cybersecurity official resigns

Bryan S. Ware, who took the reins as the senior most Department of Homeland Security official focused exclusively on cybersecurity in January, is stepping down from his post and heading to the private sector. A former technology entrepreneur, Ware has helped lead the DHS Cybersec … | Continue reading


@cyberscoop.com | 5 years ago

US sanctions Russian agent for 2020 election interference efforts

The Treasury Department is sanctioning four Russia-linked individuals for efforts to interfere in the 2020 U.S. presidential elections and U.S. politics. | Continue reading


@cyberscoop.com | 5 years ago

Nigerian scammer sentenced for defrauding targets out of $1M in office supplies

A Nigerian national was sentenced Wednesday to prison for his role in a hacking operation stealing U.S. government employees' credentials. | Continue reading


@cyberscoop.com | 5 years ago

Pan-OS vulnerabilities add to a torrid year for enterprise software bugs

The bugs in an operating system made by Palo Alto Networks add to a growing list of bugs in corporate software that researchers have uncovered in 2020. | Continue reading


@cyberscoop.com | 5 years ago

Arkady Bukh: Man in the Middle

How a New York-based immigrant from the former Soviet bloc emerged as the go-to defense lawyer for the cybercrime underworld. | Continue reading


@cyberscoop.com | 5 years ago

Open-source project to detect cellphone-snooping technology

The EFF's Crocodile Hunter includes an API that gathers data on IMSI catchers, sometimes referred to as Stingrays, and shares it with other researchers. | Continue reading


@cyberscoop.com | 5 years ago

DoD, FBI, DHS info on malware used in Chinese government-led hacking campaigns

The Chinese government has been using Taidoor to target government agencies, entities in the private sector, and think tanks since 2008. | Continue reading


@cyberscoop.com | 6 years ago

DDoSecrets publishes old WikiLeaks chats, strategy sessions

Every anti-secrecy group operates in the long shadow of WikiLeaks. But that doesn’t mean WikiLeaks is off limits. Distributed Denial of Secrets, a semi-anonymous group of transparency activists, on Tuesday released the AssangeLeaks. It’s a collection of files that DDoSecrets says … | Continue reading


@cyberscoop.com | 6 years ago

Feds aim to bolster data encryption practices for .gov websites

The Trump administration is urging domain operators to include an extra layer of security on federal websites in an attempt to reduce the risk that hackers will spy on site visitors. The goal, which officials said could take “a few years” to achieve, is to get all websites with t … | Continue reading


@cyberscoop.com | 6 years ago

Taiwan: China’s Winnti group is behind ransomware attack on state oil company

Taiwanese authorities have suggested that Chinese hackers were behind a ransomware attack against Taiwan’s state oil company. | Continue reading


@cyberscoop.com | 6 years ago