TikTok Agrees to $400 Million Settlement in U.S. Child Privacy Lawsuit

TikTok, a social media platform with over a billion active users worldwide, has agreed to pay $400 million in settlement fees to resolve a long-standing lawsuit filed by the U.S. Federal Trade Commission (FTC) and several state attorneys general. The lawsuit, which stems from allegations of violating the Children’s Online Privacy Protection Act (COPPA), marks … Read more

Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight

Banking Trojans on the Rise: Manic, Grandoreiro, and ToxicPanda 2.0 Threaten Users Worldwide A new wave of sophisticated banking trojans has emerged, targeting users in various regions worldwide. These malware variants – Manic, Grandoreiro, and an updated version of ToxicPanda – are designed to phish credentials, steal sensitive data, and remotely control compromised devices, posing … Read more

Banking Trojans Manic, Grandoreiro, ToxicPanda 2.0 in the Spotlight

Cybersecurity companies have sounded the alarm about a trio of highly sophisticated banking trojans that are targeting users worldwide, with alarming ease. These malware programs can not only siphon sensitive user data and phish credentials but also grant their operators remote control over compromised devices. One of these trojans is called Manic, an Android malware … Read more

Who Got Missed in the MFA Rollout? More Powershell + Graph + Entra scripting!, (Fri, Aug 21st)

A Critical Oversight in Multi-Factor Authentication (MFA) Rollouts: PowerShell, Graph, and Entra Scripts Exposed Multi-factor authentication (MFA) is a crucial security control that adds an extra layer of protection to user logins. However, a recent discovery has highlighted a significant oversight in the MFA rollout process for many organizations, leaving them vulnerable to potential security … Read more

Lawmakers seek watchdog review of federal hacking of Americans

As lawmakers continue to scrutinize the use of hacking tools by the US government, two members of Congress are calling for a thorough investigation into how these powers are being used. Sen. Ron Wyden and Rep. Greg Casar have written to the Government Accountability Office (GAO) requesting a review of the federal government’s hacking activities, … Read more

CISA Urges Immediate Patching of Exploited TrueConf Vulnerabilities

US Cybersecurity Agency Warns of Critical TrueConf Server Flaws Under Active Attack A serious vulnerability in popular video conferencing platform TrueConf has been exploited by hackers, prompting the US cybersecurity agency CISA to urge federal agencies to patch the issue immediately. The warning highlights the urgent need for organizations to address this critical flaw before … Read more

Microsoft Patches Exploited Entra ID Vulnerability

Microsoft has rolled out a batch of 22 critical security updates to address severe vulnerabilities in its products, including one that’s already being exploited by attackers. The tech giant has patched the issue internally, but hasn’t disclosed any information about the attacks involving this flaw. The most pressing concern is a zero-day vulnerability tracked as … Read more

Lawmakers seek watchdog review of federal hacking of Americans

Federal Government’s Secret Hacking Practices Under Scrutiny as Lawmakers Demand Transparency A growing concern over the US government’s use of hacking and spyware to surveil American citizens has led a pair of lawmakers to request an investigation into the matter. Sen. Ron Wyden (D-Ore.) and Rep. Greg Casar (D-Texas) have written to the Government Accountability … Read more