Backblaze has removed Facebook tracking code (also known as an advertising pixel) accidentally added to web UI pages only accessible to logged-in customers. The US-based cloud...
A security engineer and ex-contributor to an open systems non-profit organization recently reported a data leak to the organization. In return, he first got thanked for his responsible reporting,...
Cyberinsurance firm CNA Financial was reportedly hit by a possible cyberattack. The company is one of the largest insurance providers in the U.S. The company’s website is experiencing...
WhiteHat Security, application security provider, released AppSec Stats Flash Volume 3, the latest installment of the company’s monthly report and podcast reflecting on the current state of...
As work-from-home policies persist for many enterprises amid the global pandemic – and may become permanent in the long run – the cyber threat landscape has...
The Energy Department has been focused on securing the generation and transmission of power, but distribution processes are also increasingly vulnerable. The Energy Department is collaborating...
Microsoft has launched a bug bounty program for 365 applications, with Microsoft Teams’ desktop client the sole in-scope target for now. Announced yesterday (March 24), the Microsoft Applications Bounty...
Security researchers have harnessed the novel ‘H2C smuggling’ technique to achieve authentication, routing, and WAF bypasses on a number of leading cloud platforms. The attack’s first...
The majority of the web is now protected against information disclosure exploits that leverage the HTTP referrer header after Mozilla announced a privacy-focused Firefox update. Launched yesterday (March...
Internet of Things (IoT) product vendor Sierra Wireless has announced it was the victim of a ransomware attack last week (March 20) that has disrupted operations. In a statement released...