Krebs

IndependentKrebs

Twitter to All Users: Change Your Password Now!

Credit to Author: BrianKrebs| Date: Thu, 03 May 2018 22:40:48 +0000

Twitter just asked all 300+ million users to reset their passwords, citing the exposure of user passwords via a bug that stored passwords in plain text — without protecting them with any sort of encryption technology that would mask a Twitter user’s true password. The social media giant says it has fixed the bug and that so far its investigation hasn’t turned up any signs of a breach or that anyone misused the information. But if you have a Twitter account, please change your account password now.

Read More
IndependentKrebs

When Your Employees Post Passwords Online

Credit to Author: BrianKrebs| Date: Wed, 02 May 2018 19:26:47 +0000

Storing passwords in plaintext online is never a good idea, but it’s remarkable how many companies have employees who are doing just that using online collaboration tools like Trello.com. Last week, KrebsOnSecurity notified a host of companies that employees were using Trello to share passwords for sensitive internal resources. Among those put at risk by such activity included an insurance firm, a state government agency and ride-hailing service Uber.com.

Read More
IndependentKrebs

Security Trade-Offs in the New EU Privacy Law

Credit to Author: BrianKrebs| Date: Fri, 27 Apr 2018 17:27:40 +0000

On two occasions this past year I’ve published stories here warning about the prospect that new European privacy regulations could result in more spams and scams ending up in your inbox. This post explains in a question and answer format some of the reasoning that went into that prediction, and responds to many of the criticisms leveled against it.

Read More
IndependentKrebs

DDoS-for-Hire Service Webstresser Dismantled

Credit to Author: BrianKrebs| Date: Wed, 25 Apr 2018 17:41:37 +0000

Authorities in the U.S., U.K. and the Netherlands on Tuesday took down popular online attack-for-hire service WebStresser.org and arrested its alleged administrators. Investigators say that prior to the takedown, the service had more than 136,000 registered users and was responsible for launching somewhere between four and six million attacks over the past three years.

Read More
IndependentKrebs

A Sobering Look at Fake Online Reviews

Credit to Author: BrianKrebs| Date: Wed, 18 Apr 2018 16:08:36 +0000

In 2016, KrebsOnSecurity exposed a network of phony Web sites and fake online reviews that funneled those seeking help for drug and alcohol addiction toward rehab centers that were secretly affiliated with the Church of Scientology. Not long after the story ran, that network of bogus reviews disappeared from the Web. Over the past few months, however, the same prolific purveyor of these phantom sites and reviews appears to be back at it again, enlisting the help of Internet users and paying people $25-$35 for each fake listing.

Read More
IndependentKrebs

Deleted Facebook Cybercrime Groups Had 300,000 Members

Credit to Author: BrianKrebs| Date: Mon, 16 Apr 2018 22:38:32 +0000

Hours after being alerted by KrebsOnSecurity, Facebook last week deleted almost 120 private discussion groups totaling more than 300,000 members who flagrantly promoted a host of illicit activities on the social media network’s platform. The scam groups facilitated a broad spectrum of shady activities, including spamming, wire fraud, account takeovers, phony tax refunds, 419 scams, denial-of-service attack-for-hire services and botnet creation tools. The average age of these groups on Facebook’s platform was two years.

Read More