PROJET AUTOBLOG


The Hacker News

Site original : The Hacker News

⇐ retour index

Why Cached Credentials Can Cause Account Lockouts and How to Stop it

jeudi 18 mars 2021 à 11:19
When a user account becomes locked out, the cause is often attributed to a user who has simply entered an old or incorrect password too many times. However, this is far from being the only thing that can cause an account to become locked. Another common cause, for example, is an application or script that is configured to log into the system using an old password. Perhaps the most easily

Google Reveals What Personal Data Chrome and It's Apps Collect On You

jeudi 18 mars 2021 à 10:05
Privacy-focused search engine DuckDuckGo called out rival Google for "spying" on users after the search giant updated its flagship app to spell out the exact kinds of information it collects for personalization and marketing purposes. "After months of stalling, Google finally revealed how much personal data they collect in Chrome and the Google app. No wonder they wanted to hide it," the company

Flaws in Two Popular WordPress Plugins Affect Over 7 Million Websites

jeudi 18 mars 2021 à 07:59
Researchers have disclosed vulnerabilities in multiple WordPress plugins that, if successfully exploited, could allow an attacker to run arbitrary code and take over a website in certain scenarios. The flaws were uncovered in Elementor, a website builder plugin used on more than seven million sites, and WP Super Cache, a tool used to serve cached pages of a WordPress site. According to Wordfence

Mimecast Finds SolarWinds Hackers Stole Some of Its Source Code

mercredi 17 mars 2021 à 12:20
Email security firm Mimecast on Tuesday revealed that the state-sponsored SolarWinds hackers who broke into its internal network also downloaded source code out of a limited number of repositories. "The threat actor did access a subset of email addresses and other contact information and hashed and salted credentials," the company said in a write-up detailing its investigation, adding the

[Webinar] Oy Vey, We Hired a Large, Hairy Hacker…

mercredi 17 mars 2021 à 12:09
It's not every day that one of the best-known independent cybersecurity individuals joins a cybersecurity company. The two are generally on opposite sides of the coin, with little crossover. After all, they're usually concerned with different parts of the cybersecurity puzzle – one providing platforms and tools to defend organizations, the other keeping them accountable and looking for blind