BackBox.org offers a range of Penetration Testing services to simulate an attack on your network or application. If you are interested in our services, please contact us and we will provide you with further information as well as an initial consultation.
Google Simplifies 2-Factor Authentication Setup (It’s More Important Than Ever)
/in General NewsGoogle on Monday announced that it’s simplifying the process of enabling two-factor authentication (2FA) for users with personal and Workspace accounts.
Also called, 2-Step Verification (2SV), it aims to add an extra layer of security to users’ accounts to prevent takeover attacks in case the passwords are stolen.
The new change entails adding a second step method, such as an
The Hacker News – Read More
Germany Recalls Its Ambassador in Russia for a Week in Protest Over a Hacker Attack
/in General NewsGermany recalled its ambassador to Russia for a week of consultations in Berlin following an alleged hacker attack on Chancellor Olaf Scholz’s party.
The post Germany Recalls Its Ambassador in Russia for a Week in Protest Over a Hacker Attack appeared first on SecurityWeek.
SecurityWeek – Read More
From Warnings to Action: Preparing America’s Infrastructure for Imminent Cyber Threats
/in General NewsAs cyber threats grow more sophisticated, America cannot afford complacency. The time for decisive action and enhanced cyber resilience is now.
The post From Warnings to Action: Preparing America’s Infrastructure for Imminent Cyber Threats appeared first on SecurityWeek.
SecurityWeek – Read More
US Releases International Cyberspace Strategy
/in General NewsThe US calls for international engagement towards building an open, inclusive, resilient, safe, and equitable digital space.
The post US Releases International Cyberspace Strategy appeared first on SecurityWeek.
SecurityWeek – Read More
Novel TunnelVision Attack Against Impacts Virtually All VPN Apps Through DHCP Server Manipulation
/in General NewsThe TunnelVision attack is a newly discovered method that can compromise the security of most Virtual Private Network (VPN) applications by diverting traffic away from the encrypted tunnel, exposing it to potential interception.
Cyware News – Latest Cyber News – Read More
Russian Operator of BTC-e Crypto Exchange Pleads Guilty to Money Laundering
/in General NewsA Russian operator of a now-dismantled BTC-e cryptocurrency exchange has pleaded guilty to money laundering charges from 2011 to 2017.
Alexander Vinnik, 44, was charged in January 2017 and taken into custody in Greece in July 2017. He was subsequently extradited to the U.S. in August 2022. Vinnik and his co-conspirators have been accused of owning and managing
The Hacker News – Read More
WordPress Plugin Exploit Impacts Over 90,000 Websites
/in General NewsThe vulnerability, which has a CVSS score of 9.8, is a SQL injection flaw that allows attackers to execute unauthorized SQL queries and potentially compromise the integrity and confidentiality of the WordPress database.
Cyware News – Latest Cyber News – Read More
Mastodon Delays Firm Fix to Solve Link Preview DDoS Issue
/in General NewsMastodon delayed a firm fix for link preview DDoS issues, pushing it back to version 4.4.0 from the expected 4.3.0 release. The issue arises from the decentralized nature of Mastodon, where link previews generate excessive traffic on host servers.
Cyware News – Latest Cyber News – Read More
Citrix Addresses High-Severity NetScaler Servers Flaw
/in General NewsCitrix appears to have quietly addressed a vulnerability in its NetScaler ADC and Gateway appliances that gave remote, unauthenticated attackers a way to obtain potentially sensitive information from the memory of affected systems.
Cyware News – Latest Cyber News – Read More
MITRE Hack: China-Linked Group Breached Systems in December 2023
/in General NewsMITRE has shared more details on the recent hack, including the new malware involved in the attack and a timeline of the attacker’s activities.
The post MITRE Hack: China-Linked Group Breached Systems in December 2023 appeared first on SecurityWeek.
SecurityWeek – Read More