Krebs

IndependentKrebs

Human Resources Firm ComplyRight Breached

Credit to Author: BrianKrebs| Date: Thu, 19 Jul 2018 21:08:43 +0000

Cloud-based human resources company ComplyRight said this week that a security breach of its Web site may have jeopardized sensitive consumer information — including names, addresses, phone numbers, email addresses and Social Security numbers — from tax forms submitted by the company’s thousands of clients on behalf of employees. Cloud-based human resources company ComplyRight said this week that a security breach of its Web site may have jeopardized sensitive consumer information — including names, addresses, phone numbers, email addresses and Social Security numbers — from tax forms submitted by the company’s clients on behalf of employees. Pompano Beach, Fla-based ComplyRight began mailing breach notification letters to affected consumers late last week, but the form letters are extremely vague about the scope and cause of the breach. Indeed, many readers who received these letters wrote to KrebsOnSecurity asking for more information, as the company hadn’t yet published any details about the breach on its Web site. Also, most of those folks said they’d never heard of ComplyRight and could not remember ever doing business with a company by that name.

Read More
IndependentKrebs

Sextortion Scam Uses Recipient’s Hacked Passwords

Credit to Author: BrianKrebs| Date: Thu, 12 Jul 2018 14:19:53 +0000

Here’s a clever new twist on an old email scam that could serve to make the con far more believable. The message purports to have been sent from a hacker who’s compromised your computer and used your webcam to record a video of you while you were watching porn. The missive threatens to release the video to all your contacts unless you pay a Bitcoin ransom. The new twist? The email now references a real password previously tied to the recipient’s email address.

Read More
IndependentKrebs

Patch Tuesday, July 2018 Edition

Credit to Author: BrianKrebs| Date: Wed, 11 Jul 2018 02:34:41 +0000

Microsoft and Adobe each issued security updates for their products today. Microsoft’s July patch batch includes 14 updates to fix more than 50 security flaws in Windows and associated software. Separately, Adobe has pushed out an update for its Flash Player browser plugin, as well as a monster patch bundle for Adobe Reader/Acrobat.

Read More
IndependentKrebs

ExxonMobil Bungles Rewards Card Debut

Credit to Author: BrianKrebs| Date: Fri, 06 Jul 2018 15:53:19 +0000

Energy giant ExxonMobil recently sent snail mail letters to its Plenti rewards card members stating that the points program was being replaced with a new one called Exxon Mobil Rewards+. Unfortunately, the letter includes a confusing toll free number and directs customers to a parked page that tries to foist Web browser extensions on visitors.

Read More
IndependentKrebs

Plant Your Flag, Mark Your Territory

Credit to Author: BrianKrebs| Date: Thu, 28 Jun 2018 17:50:26 +0000

Many people, particularly older folks, proudly declare they avoid using the Web to manage various accounts tied to their personal and financial data — from utilities and mobile phones to retirement benefits and online banking services. The reasoning behind this strategy is as simple as it is alluring: What’s not put online can’t be hacked. But increasingly, adherents to this mantra are finding out the hard way that if you don’t plant your flag online, fraudsters and identity thieves may do it for you.

Read More
IndependentKrebs

How to Avoid Card Skimmers at the Pump

Credit to Author: BrianKrebs| Date: Tue, 26 Jun 2018 17:59:44 +0000

Previous stories here on the proliferation of card-skimming devices hidden inside fuel pumps have offered a multitude of security tips for readers looking to minimize their chances of becoming the next victim, such as favoring filling stations that use security cameras and tamper-evident tape on their pumps. But according to police in San Antonio, Texas, there are far more reliable ways to avoid getting skimmed at a fuel station.

Read More