#sensitive-information

[ follow ]
#data-security

How to encrypt a file on Linux, MacOS, and Windows - and why

Encryption is essential for protecting sensitive documents on desktop operating systems.

Securing Text Fields in iOS Apps: Restricting 'Cut,' 'Copy,' and 'Paste' Operations Using Swift | HackerNoon

Implementing security measures in iOS apps can protect sensitive text data from unauthorized access by restricting clipboard actions.

Five Questions to Ask Yourself Before Creating a Web Project | HackerNoon

Store sensitive information like API keys and passwords securely using tools like environment variables or HashiCorp Vault to prevent breaches and maintain data security.

How to encrypt a file on Linux, MacOS, and Windows - and why

Encryption is essential for protecting sensitive documents on desktop operating systems.

Securing Text Fields in iOS Apps: Restricting 'Cut,' 'Copy,' and 'Paste' Operations Using Swift | HackerNoon

Implementing security measures in iOS apps can protect sensitive text data from unauthorized access by restricting clipboard actions.

Five Questions to Ask Yourself Before Creating a Web Project | HackerNoon

Store sensitive information like API keys and passwords securely using tools like environment variables or HashiCorp Vault to prevent breaches and maintain data security.
moredata-security
#data-breach

Florida data broker says it was ransacked by cyber-thieves

Millions of sensitive personal records were stolen from a Florida firm and leaked online, exposing serious cybersecurity vulnerabilities.

31M invoices, patient consent forms, more exposed online

Sensitive data, including 31.5 million documents, has been exposed due to a non-password protected database owned by ServiceBridge, posing significant security risks.

Updating: Prince George's County Public Schools breach affected almost 100,000

Over 99,000 individuals affected by Prince George's County Public Schools cyberattack
Rhysida ransomware group responsible for the attack and data breach

Cancer patient sues hospital over stolen naked photos

A cancer patient whose nude treatment photos and medical records were posted online after they were stolen in a ransomware attack, has sued the health-care provider for allowing a "preventable" and "seriously damaging" invident.The proposed class-action lawsuit stems from a February intrusion during which ransomware gang BlackCat (also known as ALPHV) broke into one of the Lehigh Valley Health Network (LVHN) physician's networks, stole images of patients undergoing radiation oncology treatment along with other sensitive health records belonging to more than 75,000 people, and then demanded a ransom payment to decrypt the files and prevent it from posting the health data online.

Florida data broker says it was ransacked by cyber-thieves

Millions of sensitive personal records were stolen from a Florida firm and leaked online, exposing serious cybersecurity vulnerabilities.

31M invoices, patient consent forms, more exposed online

Sensitive data, including 31.5 million documents, has been exposed due to a non-password protected database owned by ServiceBridge, posing significant security risks.

Updating: Prince George's County Public Schools breach affected almost 100,000

Over 99,000 individuals affected by Prince George's County Public Schools cyberattack
Rhysida ransomware group responsible for the attack and data breach

Cancer patient sues hospital over stolen naked photos

A cancer patient whose nude treatment photos and medical records were posted online after they were stolen in a ransomware attack, has sued the health-care provider for allowing a "preventable" and "seriously damaging" invident.The proposed class-action lawsuit stems from a February intrusion during which ransomware gang BlackCat (also known as ALPHV) broke into one of the Lehigh Valley Health Network (LVHN) physician's networks, stole images of patients undergoing radiation oncology treatment along with other sensitive health records belonging to more than 75,000 people, and then demanded a ransom payment to decrypt the files and prevent it from posting the health data online.
moredata-breach
#cybersecurity

UK law firms are facing a torrent of cyber threats - here's why

Cyber attacks on UK law firms have significantly increased, showcasing the growing threat to sensitive client data in the legal sector.

Biden Bans Rival Nations From Buying Sensitive US Data-Good Luck

Preventing sensitive data sales to certain countries like China, North Korea, and Russia.
Order creates a data security program to safeguard personal information against cyberattacks.

Organizations Notified of Remotely Exploitable Vulnerabilities in Aveva HMI, SCADA Products

Organizations that use human-machine interface (HMI) and supervisory control and data acquisition (SCADA) products from UK-based industrial software maker Aveva have been informed about the existence of several potentially serious vulnerabilities.Security advisories published last week by Aveva and the US Cybersecurity and Infrastructure Security Agency (CISA) inform users about three vulnerabilities in the InTouch Access Anywhere HMI and Plant SCADA Access Anywhere products.

UK law firms are facing a torrent of cyber threats - here's why

Cyber attacks on UK law firms have significantly increased, showcasing the growing threat to sensitive client data in the legal sector.

Biden Bans Rival Nations From Buying Sensitive US Data-Good Luck

Preventing sensitive data sales to certain countries like China, North Korea, and Russia.
Order creates a data security program to safeguard personal information against cyberattacks.

Organizations Notified of Remotely Exploitable Vulnerabilities in Aveva HMI, SCADA Products

Organizations that use human-machine interface (HMI) and supervisory control and data acquisition (SCADA) products from UK-based industrial software maker Aveva have been informed about the existence of several potentially serious vulnerabilities.Security advisories published last week by Aveva and the US Cybersecurity and Infrastructure Security Agency (CISA) inform users about three vulnerabilities in the InTouch Access Anywhere HMI and Plant SCADA Access Anywhere products.
morecybersecurity

These Privacy Screen Protectors Make It Impossible To Snoop On Your Phone

Using a protective privacy screen for your phone can help keep texts and sensitive information private.

Spy agencies must craft safeguards for using sensitive commercial data, ODNI says

Guidance issued by the Office of the Director of National Intelligence emphasizes safeguarding personally identifying information obtained from commercial data sources.

Kamala Harris Hits Back at Robert Hur In Blistering Response

Kamala Harris criticizes Special Counsel Robert Hur's report on Biden's handling of sensitive information as politically motivated and lacking integrity.
Biden will not face charges, but the report contains damaging information about him and his memory.

FTC bans major data broker from selling invasive location tracking details

The FTC has prohibited Outlogic, a US data broker, from selling or sharing sensitive location information due to a lack of safeguards to protect consumer privacy.
Outlogic's data was capable of tracking individuals to sensitive locations, including domestic abuse shelters and reproductive health clinics.
#data-leakage

8 Tools to Protect Sensitive Data from Unintended Leakage

Private data being leaked into source code is a serious threat that can harm businesses
Organizations can use tools like Piiano Flows to protect sensitive information from becoming public

8 Tools to Protect Sensitive Data from Unintended Leakage

Private data being leaked into source code is a serious threat that can harm businesses
Organizations can use tools like Piiano Flows to protect sensitive information from becoming public

8 Tools to Protect Sensitive Data from Unintended Leakage

Private data being leaked into source code is a serious threat that can harm businesses
Organizations can use tools like Piiano Flows to protect sensitive information from becoming public

8 Tools to Protect Sensitive Data from Unintended Leakage

Private data being leaked into source code is a serious threat that can harm businesses
Organizations can use tools like Piiano Flows to protect sensitive information from becoming public
moredata-leakage

8 Tools to Protect Sensitive Data from Unintended Leakage

Private data being leaked into source code is a serious threat that can harm businesses
Organizations can use tools like Piiano Flows to protect sensitive information from becoming public

Private UK health data donated for medical research shared with insurance companies

UK Biobank shared sensitive health information donated by UK citizens with insurance companies despite previous pledges not to do so.
The data was provided to insurance consultancy and tech firms for projects to create digital tools that help insurers predict a person's risk of getting a chronic disease.
#information

Live: Zelensky says Kyiv not warned of US secret docs leak

HOUR BY HOUR Issued on: 03/05/2023 - 07:08Modified: 03/05/2023 - 07:11 Ukrainian President Volodymyr Zelensky speaks during a joint press conference with Estonian Prime Minister after their meeting in Zhytomyr on April 24, 2023.Genya Savilov, AFP Washington did not warn Kyiv about the top-secret documents leaked to internet chat rooms containing sensitive information about Ukraine's war effort before the news broke in the media last month, President Volodymyr Zelensky told the Washington Post.

Hunter Biden must answer more questions about his finances and art sales, judge rules

Batesville, Arkansas CNN An Arkansas judge on Monday ordered President Joe Biden's son, Hunter Biden, to answer additional written questions about his investments, his art sales and other financial transactions as part of a paternity-related case.Hunter Biden also will sit for a deposition in mid-June, where he'll have to answer questions under oath, the judge said.

Suspect in Pentagon leaks case to appear in court for detention hearing

The Air National Guardsman accused of posting a trove of classified documents to social media is expected back in court Thursday for a hearing on whether he will be kept in jail during the course of his legal case.The detention hearing, which was originally scheduled for last week but was postponed at the last minute, is slated to take place in Massachusetts.

Air Force suspends leadership for unit of suspected Pentagon document leaker

The Air Force suspended two leaders of suspected classified document leaker Jack Teixeira's unit, it said in a statement Wednesday, one week after the unit stopped performing its intelligence mission amid an investigation into the leaks.The commander of the 102nd Intelligence Support Squadron, part of the Massachusetts Air National Guard in which the 21-year-old Teixeira served, was suspended from his leadership position, as was the detachment commander overseeing administrative support, the Air Force said.

Law firm to pay $200K after sloppy data security exposed patients' private info

STATEWIDE - Attorney General Letitia James has secured $200,000 from Heidell, Pittoni, Murphy & Bach LLP (HPMB) for its failure to protect the personal and health care data of New Yorkers, her office announced on Monday.The law firm's inadequate data security measures left it vulnerable to a 2021 breach, compromising the private information of around 114,000 patients, including over 60,000 New Yorkers.

Harry at High Court as Mail publisher bids to throw out stale' privacy claims

The Duke of Sussex has made a surprise appearance at a High Court hearing in London as the Daily Mail's publisher makes a bid to throw out a set of claims over alleged unlawful information gathering at its titles.Associated Newspapers Limited (ANL) is bringing a bid to end High Court claims brought by people including Harry, Sir Elton John and Baroness Doreen Lawrence over the allegations which include the hiring of private investigators to secretly place listening devices inside cars and homes and the recording of private phone conversations.

Live: Zelensky says Kyiv not warned of US secret docs leak

HOUR BY HOUR Issued on: 03/05/2023 - 07:08Modified: 03/05/2023 - 07:11 Ukrainian President Volodymyr Zelensky speaks during a joint press conference with Estonian Prime Minister after their meeting in Zhytomyr on April 24, 2023.Genya Savilov, AFP Washington did not warn Kyiv about the top-secret documents leaked to internet chat rooms containing sensitive information about Ukraine's war effort before the news broke in the media last month, President Volodymyr Zelensky told the Washington Post.

Hunter Biden must answer more questions about his finances and art sales, judge rules

Batesville, Arkansas CNN An Arkansas judge on Monday ordered President Joe Biden's son, Hunter Biden, to answer additional written questions about his investments, his art sales and other financial transactions as part of a paternity-related case.Hunter Biden also will sit for a deposition in mid-June, where he'll have to answer questions under oath, the judge said.

Suspect in Pentagon leaks case to appear in court for detention hearing

The Air National Guardsman accused of posting a trove of classified documents to social media is expected back in court Thursday for a hearing on whether he will be kept in jail during the course of his legal case.The detention hearing, which was originally scheduled for last week but was postponed at the last minute, is slated to take place in Massachusetts.

Air Force suspends leadership for unit of suspected Pentagon document leaker

The Air Force suspended two leaders of suspected classified document leaker Jack Teixeira's unit, it said in a statement Wednesday, one week after the unit stopped performing its intelligence mission amid an investigation into the leaks.The commander of the 102nd Intelligence Support Squadron, part of the Massachusetts Air National Guard in which the 21-year-old Teixeira served, was suspended from his leadership position, as was the detachment commander overseeing administrative support, the Air Force said.

Law firm to pay $200K after sloppy data security exposed patients' private info

STATEWIDE - Attorney General Letitia James has secured $200,000 from Heidell, Pittoni, Murphy & Bach LLP (HPMB) for its failure to protect the personal and health care data of New Yorkers, her office announced on Monday.The law firm's inadequate data security measures left it vulnerable to a 2021 breach, compromising the private information of around 114,000 patients, including over 60,000 New Yorkers.

Harry at High Court as Mail publisher bids to throw out stale' privacy claims

The Duke of Sussex has made a surprise appearance at a High Court hearing in London as the Daily Mail's publisher makes a bid to throw out a set of claims over alleged unlawful information gathering at its titles.Associated Newspapers Limited (ANL) is bringing a bid to end High Court claims brought by people including Harry, Sir Elton John and Baroness Doreen Lawrence over the allegations which include the hiring of private investigators to secretly place listening devices inside cars and homes and the recording of private phone conversations.
moreinformation
#back

Two in five over-65s with bank account do not manage their money online'

Nearly four in 10 (39%) older people are not managing their money online and could therefore be at risk of financial exclusion, according to Age UK.A survey found a high level of support for in-person banking, with three-quarters (75%) of over-65s with a bank account wanting to undertake at least one banking task in person at a bank branch, building society or Post Office.

Bitmarck shuts down systems, services after cyberattack

German IT services provider Bitmarck has shut down all of its customer and internal systems, including entire datacenters in some cases, following a cyberattack.The company, one of the largest service providers for German health insurers, said no customer, patient, or insured individuals' data had been accessed in the security breach - at least not according to "the current state of knowledge," according to an April 30 update posted on its temporary website.

NFL Rumors: Andy Reid reveals KC's pitfall, 49ers kick themselves over draft choices, and more crazy Irsay ramblings

Today's NFL rumors surround Andy Reid divulging some sensitive information, Kyle Shanahan kicking himself for a draft choice, and Jim Irsay doing Jim Irsay things.The NFL Draft never ceases to shock the public as year after year there's always one team that makes a jaw-dropping trade or takes the player no one thought they would.

Sensitive data is being leaked from servers running Salesforce software

Servers running software sold by Salesforce are leaking sensitive data managed by government agencies, banks, and other organizations, according to a post published Friday by KrebsOnSecurity.At least five separate sites run by the state of Vermont permitted access to sensitive data to anyone, Brian Krebs reported.

Top Data Analytics Skills and Platforms for 2023, PyTorch 2.0

Top Data Analytics Skills and Platforms for 2023 We looked at over 25,000 job descriptions, and these are the data analytics platforms, tools, and skills that employers are looking for in 2023.PyTorch 2.0 Officially Released PyTorch 2.0 is official at last, and this update brings a multitude of changes designed to make PyTorch more powerful, versatile, and stable.

Australia to remove Chinese-made surveillance cameras DW 02/09/2023

02/09/2023February 9, 2023 Canberra has made it clear that it is not concerned about how China might react.Last year, both the UK and the US banned several similar Chinese tech products.Australia has decided to examine and remove Chinese-made surveillance technology used in government buildings.Defense Minister Richard Marles on Thursday said the Chinese-made cameras could pose a security risk for the country.

Two in five over-65s with bank account do not manage their money online'

Nearly four in 10 (39%) older people are not managing their money online and could therefore be at risk of financial exclusion, according to Age UK.A survey found a high level of support for in-person banking, with three-quarters (75%) of over-65s with a bank account wanting to undertake at least one banking task in person at a bank branch, building society or Post Office.

Bitmarck shuts down systems, services after cyberattack

German IT services provider Bitmarck has shut down all of its customer and internal systems, including entire datacenters in some cases, following a cyberattack.The company, one of the largest service providers for German health insurers, said no customer, patient, or insured individuals' data had been accessed in the security breach - at least not according to "the current state of knowledge," according to an April 30 update posted on its temporary website.

NFL Rumors: Andy Reid reveals KC's pitfall, 49ers kick themselves over draft choices, and more crazy Irsay ramblings

Today's NFL rumors surround Andy Reid divulging some sensitive information, Kyle Shanahan kicking himself for a draft choice, and Jim Irsay doing Jim Irsay things.The NFL Draft never ceases to shock the public as year after year there's always one team that makes a jaw-dropping trade or takes the player no one thought they would.

Sensitive data is being leaked from servers running Salesforce software

Servers running software sold by Salesforce are leaking sensitive data managed by government agencies, banks, and other organizations, according to a post published Friday by KrebsOnSecurity.At least five separate sites run by the state of Vermont permitted access to sensitive data to anyone, Brian Krebs reported.

Top Data Analytics Skills and Platforms for 2023, PyTorch 2.0

Top Data Analytics Skills and Platforms for 2023 We looked at over 25,000 job descriptions, and these are the data analytics platforms, tools, and skills that employers are looking for in 2023.PyTorch 2.0 Officially Released PyTorch 2.0 is official at last, and this update brings a multitude of changes designed to make PyTorch more powerful, versatile, and stable.

Australia to remove Chinese-made surveillance cameras DW 02/09/2023

02/09/2023February 9, 2023 Canberra has made it clear that it is not concerned about how China might react.Last year, both the UK and the US banned several similar Chinese tech products.Australia has decided to examine and remove Chinese-made surveillance technology used in government buildings.Defense Minister Richard Marles on Thursday said the Chinese-made cameras could pose a security risk for the country.
moreback

Samsung tells employees not to use AI tools like ChatGPT and Google Bard | Engadget

While many workers worry AI bots will take their jobs, Samsung employees are no longer allowed to use them.The company banned generative AI tools, like ChatGPT and Google Bard, after discovering staff had added sensitive code to them, Bloomberg reported.This revelation followed last month's incident in which Samsung engineers uploaded internal source code and meeting notes to ChatGPT and accidentally leaked it.
please do not import cookie banners.

Why Are So Many US Companies Using Cookie Banners On Their Websites?

Most people would agree with this statement: "Pop-ups are annoying."A rather amusing article in The Verge laments the recent unfortunate revival of website pop-ups, which the author describes as dogging them through the hellscape of their internet experience with messages pushing them to like, subscribe, click, listen, sign in and accept all.
#credentials

Google Obtains Court Order to Disrupt CryptBot Distribution

Google this week announced that it has obtained a court order that helped it disrupt the CryptBot information stealer's distribution.Initially designed to harvest and exfiltrate sensitive information such as credentials, cryptocurrency wallets, and more, CryptBot was also seen distributing banking trojans.

v0.2.0 Envio-The Modern And Secure CLI Tool You Absolutely Need Environment Variables

Hey everyone 👋!If you have been living under a rock and have no idea what envio is, check out another article that I wrote:
After that article envio went from 0 to 245 stars on github!With the release of version v0.2.0, envio now includes a new envio launch subcommand that makes it even easier to manage your environment variables.

Google Obtains Court Order to Disrupt CryptBot Distribution

Google this week announced that it has obtained a court order that helped it disrupt the CryptBot information stealer's distribution.Initially designed to harvest and exfiltrate sensitive information such as credentials, cryptocurrency wallets, and more, CryptBot was also seen distributing banking trojans.

v0.2.0 Envio-The Modern And Secure CLI Tool You Absolutely Need Environment Variables

Hey everyone 👋!If you have been living under a rock and have no idea what envio is, check out another article that I wrote:
After that article envio went from 0 to 245 stars on github!With the release of version v0.2.0, envio now includes a new envio launch subcommand that makes it even easier to manage your environment variables.
morecredentials
#vulnerability

New Wi-Fi Attack Allows Traffic Interception, Security Bypass

A group of academic researchers with Northeastern University in Boston and KU Leuven in Belgium have devised a new attack that can intercept Wi-Fi traffic at the MAC (media access control) layer, even between clients that are not allowed to communicate with one another.The attack exploits a Wi-Fi client isolation bypass vulnerability tracked as CVE-2022-47522 and impacts Wi-Fi networks with malicious insiders, but can also be used to bypass Dynamic ARP inspection (DAI), the academics say in their research paper (PDF).

Windows 10 and 11 get their own version of the "acropalypse" screenshot bug

Earlier this week, programmer and "accidental security researcher" Simon Aarons disclosed a bug in Google's Markup screenshot editing tool for its Pixel phones.Dubbed "acropalypse," the bug allows content you've cropped out of your Android screenshot to be partially recovered, which can be a problem if you've cropped out sensitive information.

Apple Updates Advisories as Security Firm Discloses New Class of Vulnerabilities

Apple on Monday updated several of its recent security advisories to add new iOS and macOS vulnerabilities, including ones belonging to a new class of bugs.The iOS 16.3 and macOS Ventura 13.2 advisories, originally released on January 23, have been updated to add three vulnerabilities.One of them is CVE-2023-23520, a race condition affecting the crash reporter component, which can allow an attacker to read arbitrary files as root.

VMware Plugs Critical Carbon Black App Control Flaw

Virtualization technology giant VMware on Tuesday pushed out a major security fix to cover a critical vulnerability in its enterprise-facing Carbon Black App Control product.A critical-severity advisory from VMware tracks the vulnerability as CVE-2023-20858 and warns that hackers can launch injection exploits to gain full access to the underlying server operating system.

New Wi-Fi Attack Allows Traffic Interception, Security Bypass

A group of academic researchers with Northeastern University in Boston and KU Leuven in Belgium have devised a new attack that can intercept Wi-Fi traffic at the MAC (media access control) layer, even between clients that are not allowed to communicate with one another.The attack exploits a Wi-Fi client isolation bypass vulnerability tracked as CVE-2022-47522 and impacts Wi-Fi networks with malicious insiders, but can also be used to bypass Dynamic ARP inspection (DAI), the academics say in their research paper (PDF).

Windows 10 and 11 get their own version of the "acropalypse" screenshot bug

Earlier this week, programmer and "accidental security researcher" Simon Aarons disclosed a bug in Google's Markup screenshot editing tool for its Pixel phones.Dubbed "acropalypse," the bug allows content you've cropped out of your Android screenshot to be partially recovered, which can be a problem if you've cropped out sensitive information.

Apple Updates Advisories as Security Firm Discloses New Class of Vulnerabilities

Apple on Monday updated several of its recent security advisories to add new iOS and macOS vulnerabilities, including ones belonging to a new class of bugs.The iOS 16.3 and macOS Ventura 13.2 advisories, originally released on January 23, have been updated to add three vulnerabilities.One of them is CVE-2023-23520, a race condition affecting the crash reporter component, which can allow an attacker to read arbitrary files as root.

VMware Plugs Critical Carbon Black App Control Flaw

Virtualization technology giant VMware on Tuesday pushed out a major security fix to cover a critical vulnerability in its enterprise-facing Carbon Black App Control product.A critical-severity advisory from VMware tracks the vulnerability as CVE-2023-20858 and warns that hackers can launch injection exploits to gain full access to the underlying server operating system.
morevulnerability
#european-commission

France bans TikTok (and Candy Crush) from government phones | Engadget

REUTERS/Sarah Meyssonnier
It's no shock to see another country banning TikTok from government phones, but France is taking the restrictions a step further.Le Monde reports the French government is banning "recreational" apps like TikTok, Twitter, Netflix and even Candy Crush from public servants' devices.

New Zealand bans TikTok from lawmakers' phones DW 03/17/2023

32 minutes ago32 minutes ago New Zealand is now the latest country to ban the popular video-sharing app from government-related phones to protect sensitive information.New Zealand on Friday banned the short-video sharing app TikTok from devices with access to the country's parliamentary network, citing cybersecurity concerns.

The UK bans TikTok on government phones

Following a similar decision by the US, Canada, Belgium and the European Commission, the UK is also banning TikTok from government devices over security concerns.The ban takes immediate effect.Here's what the Cabinet Office minister Oliver Dowden has to say about it.The security of sensitive government information must come first, so today, we are banning this app on government devices.

UK bans TikTok on government devices over security concerns

The British government banned TikTok on government phones over security concerns on March 16, 2022.Joel Saget, AFP Britain said on Thursday it would ban TikTok on government phones with immediate effect, a move that follows other Western countries in barring the Chinese-owned video app over security concerns.

UK.gov bans TikTok from its devices as a 'precaution'

The United Kingdom government has banned use of Chinese social media platform TikTok among ministers and officials on their work devices as a "precautionary" measure over worries the app is used to snoop on Brits.Speaking to Parliament this afternoon, Oliver Dowden, chancellor of the Duchy of Lancaster and Secretary of State who oversees Cabinet Office policy, said the ban would have immediate effect and applied to devices issued within ministerial and non-ministerial departments, but not to "personal devices for government employees or ministers or the general public."

Sunak drops hints to follow US and EU TikTok ban for Government staff devices

Sign up for the View from Westminster email for expert analysis straight to your inbox Get our free View from Westminster email Rishi Sunak has hinted that the UK could follow in the US and the European Union's footsteps by banning the popular social media app TikTok on Government phones and devices.

France bans TikTok (and Candy Crush) from government phones | Engadget

REUTERS/Sarah Meyssonnier
It's no shock to see another country banning TikTok from government phones, but France is taking the restrictions a step further.Le Monde reports the French government is banning "recreational" apps like TikTok, Twitter, Netflix and even Candy Crush from public servants' devices.

New Zealand bans TikTok from lawmakers' phones DW 03/17/2023

32 minutes ago32 minutes ago New Zealand is now the latest country to ban the popular video-sharing app from government-related phones to protect sensitive information.New Zealand on Friday banned the short-video sharing app TikTok from devices with access to the country's parliamentary network, citing cybersecurity concerns.

The UK bans TikTok on government phones

Following a similar decision by the US, Canada, Belgium and the European Commission, the UK is also banning TikTok from government devices over security concerns.The ban takes immediate effect.Here's what the Cabinet Office minister Oliver Dowden has to say about it.The security of sensitive government information must come first, so today, we are banning this app on government devices.

UK bans TikTok on government devices over security concerns

The British government banned TikTok on government phones over security concerns on March 16, 2022.Joel Saget, AFP Britain said on Thursday it would ban TikTok on government phones with immediate effect, a move that follows other Western countries in barring the Chinese-owned video app over security concerns.

UK.gov bans TikTok from its devices as a 'precaution'

The United Kingdom government has banned use of Chinese social media platform TikTok among ministers and officials on their work devices as a "precautionary" measure over worries the app is used to snoop on Brits.Speaking to Parliament this afternoon, Oliver Dowden, chancellor of the Duchy of Lancaster and Secretary of State who oversees Cabinet Office policy, said the ban would have immediate effect and applied to devices issued within ministerial and non-ministerial departments, but not to "personal devices for government employees or ministers or the general public."

Sunak drops hints to follow US and EU TikTok ban for Government staff devices

Sign up for the View from Westminster email for expert analysis straight to your inbox Get our free View from Westminster email Rishi Sunak has hinted that the UK could follow in the US and the European Union's footsteps by banning the popular social media app TikTok on Government phones and devices.
moreeuropean-commission
#compromises

Government defends exceptional' delays in Salisbury poisonings inquiry

Lawyers acting on behalf of the Government have defended the exceptional disclosure delays in the Russian-state Salisbury poisonings inquiry, saying sensitive information has been found in more than 1,000 documents.The counsel to the Dawn Sturgess inquiry, Andrew O'Connor KC, said there is still some way to go and his team would not be ready for substantive hearings until the middle or end of next year.

The NSA has some pretty obvious security advice for remote workers

(Image credit: Bryn Colton/ Getty Images)
The National Security Agency (NSA) has published some new advice for those working from home to secure their work devices and home networks.In issuing some fairly basic and standard advice, it noted that those in telecommunications specifically should make sure their user and networking devices are kept up to date to prevent compromises to their own and their organization's security posture.

Government defends exceptional' delays in Salisbury poisonings inquiry

Lawyers acting on behalf of the Government have defended the exceptional disclosure delays in the Russian-state Salisbury poisonings inquiry, saying sensitive information has been found in more than 1,000 documents.The counsel to the Dawn Sturgess inquiry, Andrew O'Connor KC, said there is still some way to go and his team would not be ready for substantive hearings until the middle or end of next year.

The NSA has some pretty obvious security advice for remote workers

(Image credit: Bryn Colton/ Getty Images)
The National Security Agency (NSA) has published some new advice for those working from home to secure their work devices and home networks.In issuing some fairly basic and standard advice, it noted that those in telecommunications specifically should make sure their user and networking devices are kept up to date to prevent compromises to their own and their organization's security posture.
morecompromises
#opportunity

Locking Down Your Users' Secrets: Django Sessions 101 Matt Layman

Django is a powerful and popular web framework that makes it easy to build robust and secure web applications.One of the key features of Django is its ability to manage user sessions, which are essential for many web applications.However, you may be wondering if Django sessions are secure.In this article, we'll explore the security of Django sessions and see how they can be made even more secure.

Cyber attackers focused on remote code execution vulnerabilities in 2022 - report - RAPPLER

Fortinet says it saw an average of 500 million total malware detections per month in 2022, with Microsoft Windows executables as the primary vehicle
MANILA, Philippines - Cybersecurity firm Fortinet, the world's third largest cybersecurity vendor in terms of market share in Q3 2022, revealed in an annual report published in January that attackers focused the most on vulnerabilities related to remote code execution.

Locking Down Your Users' Secrets: Django Sessions 101 Matt Layman

Django is a powerful and popular web framework that makes it easy to build robust and secure web applications.One of the key features of Django is its ability to manage user sessions, which are essential for many web applications.However, you may be wondering if Django sessions are secure.In this article, we'll explore the security of Django sessions and see how they can be made even more secure.

Cyber attackers focused on remote code execution vulnerabilities in 2022 - report - RAPPLER

Fortinet says it saw an average of 500 million total malware detections per month in 2022, with Microsoft Windows executables as the primary vehicle
MANILA, Philippines - Cybersecurity firm Fortinet, the world's third largest cybersecurity vendor in terms of market share in Q3 2022, revealed in an annual report published in January that attackers focused the most on vulnerabilities related to remote code execution.
moreopportunity

My Tenant Split Without Paying the Rent. What Are My Options?

Q: My tenant moved out of the Harlem condo unit that I own, leaving behind a significant debt and no forwarding address.She owes me $4,700 in unpaid rent and $15,000 in unpaid electricity bills.She began falling behind on the rent early in the pandemic when she lost some of her work contracts, and kept promising me that she would settle the debt.

UK bans TikTok from government devices

For free real time breaking news alerts sent straight to your inbox sign up to our breaking news emails Sign up to our free breaking news emails Chinese-owned social media app TikTok has been banned from British government phones and tablets in a precautionary' security move.It comes after similar moves by the United States and the European Commissions, and comes amid deteriorating relations between western nations and Beijing.
#researchers

NCSC warns over AI language models but rejects cyber alarmism | Computer Weekly

The UK's National Cyber Security Centre (NCSC) has issued advice and guidance for users of AI tools such as ChatGPT that rely on large language model (LLM) algorithms, saying that while they present some data privacy risks, they are not necessarily that useful currently when it comes to deploying them in the service of cyber criminal activity.

Researchers find new bug 'class' in Apple devices | Computer Weekly

Researchers at Trellix have uncovered what they claim to be an entirely new class of privilege escalation vulnerability in Apple devices stemming from the infamous ForcedEntry exploit used by disgraced Israeli spyware manufacturer NSO Group to let its government customers target activists, journalists and political opponents.

NCSC warns over AI language models but rejects cyber alarmism | Computer Weekly

The UK's National Cyber Security Centre (NCSC) has issued advice and guidance for users of AI tools such as ChatGPT that rely on large language model (LLM) algorithms, saying that while they present some data privacy risks, they are not necessarily that useful currently when it comes to deploying them in the service of cyber criminal activity.

Researchers find new bug 'class' in Apple devices | Computer Weekly

Researchers at Trellix have uncovered what they claim to be an entirely new class of privilege escalation vulnerability in Apple devices stemming from the infamous ForcedEntry exploit used by disgraced Israeli spyware manufacturer NSO Group to let its government customers target activists, journalists and political opponents.
moreresearchers

Tory MPs free to decide Boris Johnson's Partygate fate, says Rishi Sunak

Sign up for the View from Westminster email for expert analysis straight to your inbox Get our free View from Westminster email Rishi Sunak has committed to giving Tory MPs the freedom to decide Boris Johnson's fate ahead of his live TV grilling on whether he lied over Partygate.The prime minister suggested on Monday he would not use the Tory whip to exert pressure on his colleagues to go easy on his predecessor as he faces a possible suspension.
#people

New Tech A Double-edged Sword For Industries Vulnerable To Hackers | Glamsham

Businesses, regardless of their size and industry, are vulnerable to cyber attacks.Hackers are getting more sophisticated, and exploiting vulnerabilities in the systems to their advantage.The threat landscape is constantly evolving, and organisations must update their cyber security strategies to better protect their data.

Giant Bank JP Morgan Bans ChatGPT Use Among Employees

Compliance Concerns
JP Morgan is cracking down on the use of OpenAI's ChatGPT in the workplace, Bloomberg reports - though apparently not in response to a particular incident, and it remains unknown how many employees might have been fooling around the AI-powered chatbot while on the clock.Instead, the restriction, which applies to the bank's global staff, was enacted to limit third-party software "due to compliance concerns," according to CNN's reporting.

New Tech A Double-edged Sword For Industries Vulnerable To Hackers | Glamsham

Businesses, regardless of their size and industry, are vulnerable to cyber attacks.Hackers are getting more sophisticated, and exploiting vulnerabilities in the systems to their advantage.The threat landscape is constantly evolving, and organisations must update their cyber security strategies to better protect their data.

Giant Bank JP Morgan Bans ChatGPT Use Among Employees

Compliance Concerns
JP Morgan is cracking down on the use of OpenAI's ChatGPT in the workplace, Bloomberg reports - though apparently not in response to a particular incident, and it remains unknown how many employees might have been fooling around the AI-powered chatbot while on the clock.Instead, the restriction, which applies to the bank's global staff, was enacted to limit third-party software "due to compliance concerns," according to CNN's reporting.
morepeople
#years

How a women's disdain for email guff' stopped a Putin hack six years on

Get the free Morning Headlines email for news from our reporters across the world Sign up to our free Morning Headlines email When Dame Sally Mapstone, the newly appointed principal of St Andrews University, banned her fellow academics from starting emails with I hope this finds you well, she did not expect it would one day ouwit hackers from the Russian state.

Watch as former British embassy guard David Smith is sentenced for spying

Get the free Morning Headlines email for news from our reporters across the world Sign up to our free Morning Headlines email Watch as a former British embassy security guard is sentenced for spying.David Smith, 58, has been convicted of spying for Russia after he pleaded guilty to eight offences under the Official Secrets Act.

How a women's disdain for email guff' stopped a Putin hack six years on

Get the free Morning Headlines email for news from our reporters across the world Sign up to our free Morning Headlines email When Dame Sally Mapstone, the newly appointed principal of St Andrews University, banned her fellow academics from starting emails with I hope this finds you well, she did not expect it would one day ouwit hackers from the Russian state.

Watch as former British embassy guard David Smith is sentenced for spying

Get the free Morning Headlines email for news from our reporters across the world Sign up to our free Morning Headlines email Watch as a former British embassy security guard is sentenced for spying.David Smith, 58, has been convicted of spying for Russia after he pleaded guilty to eight offences under the Official Secrets Act.
moreyears

Honor Magic5 Pro unveiled with a custom 1/1.12" camera sensor, vanilla Magic5 follows

Honor detailed its new "dual flagship" strategy today - both product lines share the "Magic" name, one is the traditional number series, the other is the Magic V foldables.There are exciting developments for the Magic Vs, but we'll cover those in a separate post.The focus today was on unveiling the new Honor Magic5 and Magic5 Pro flagships (no Ultimate, not yet, at least).
[ Load more ]