A Little Sunshine

IndependentKrebs

Librarian Sues Equifax Over 2017 Data Breach, Wins $600

Credit to Author: BrianKrebs| Date: Wed, 13 Jun 2018 20:14:40 +0000

In the days following revelations last September that big-three consumer credit bureau Equifax had been hacked and relieved of personal data on nearly 150 million people, many Americans no doubt felt resigned and powerless to control their information. But not Jessamyn West. The 49-year-old librarian from a tiny town in Vermont took Equifax to court. And now she’s celebrating a small but symbolic victory after a small claims court awarded her $600 in damages stemming from the 2017 breach.

Read More
IndependentKrebs

Bad .Men at .Work. Please Don’t .Click

Credit to Author: BrianKrebs| Date: Mon, 11 Jun 2018 14:42:39 +0000

Web site names ending in new top-level domains (TLDs) like .men, .work and .click are some of the riskiest and spammy-est on the Internet, according to experts who track such concentrations of badness online. Not that there still aren’t a whole mess of nasty .com, .net and .biz domains out there, but relative to their size (i.e. overall number of domains) these newer TLDs are far dicier to visit than most online destinations.

Read More
IndependentKrebs

Further Down the Trello Rabbit Hole

Credit to Author: BrianKrebs| Date: Wed, 06 Jun 2018 14:45:13 +0000

Last month’s story about organizations exposing passwords and other sensitive data via collaborative online spaces at Trello.com only scratched the surface of the problem. A deeper dive suggests a large number of government agencies, marketing firms, healthcare organizations and IT support companies are publishing credentials via public Trello boards that quickly get indexed by the major search engines.

Read More
IndependentKrebs

Are Your Google Groups Leaking Data?

Credit to Author: BrianKrebs| Date: Fri, 01 Jun 2018 14:29:00 +0000

Google is reminding organizations to review how much of their Google Groups mailing lists should be public and indexed by Google.com. The notice was prompted in part by a review that KrebsOnSecurity undertook with several researchers who’ve been busy cataloging thousands of companies that are using public Google Groups lists to manage customer support and in some cases sensitive internal communications.

Read More
IndependentKrebs

Is Your Google Groups Leaking Data?

Credit to Author: BrianKrebs| Date: Fri, 01 Jun 2018 14:29:00 +0000

Google is reminding organizations to review how much of their Google Groups mailing lists should be public and indexed by Google.com. The notice was prompted in part by a review that KrebsOnSecurity undertook with several researchers who’ve been busy cataloging thousands of companies that are using public Google Groups lists to manage customer support and in some cases sensitive internal communications.

Read More
IndependentKrebs

Will the Real Joker’s Stash Come Forward?

Credit to Author: BrianKrebs| Date: Tue, 29 May 2018 16:33:34 +0000

For as long as scam artists have been around so too have opportunistic thieves who specialize in ripping off other scam artists. This is the story about a group of Pakistani Web site designers who apparently have made an impressive living impersonating some of the most popular and well known “carding” markets, or online stores that sell stolen credit cards.

Read More
IndependentKrebs

Why Is Your Location Data No Longer Private?

Credit to Author: BrianKrebs| Date: Sat, 26 May 2018 16:18:48 +0000

The past month has seen one blockbuster revelation after another about how our mobile phone and broadband providers have been leaking highly sensitive customer information, including real-time location data and customer account details. In the wake of these consumer privacy debacles, many are left wondering who’s responsible for policing these industries? How exactly did we get to this point? What prospects are there for changes to address this national privacy crisis at the legislative and regulatory levels? These are some of the questions we’ll explore in this article.

Read More
IndependentKrebs

3 Charged In Fatal Kansas ‘Swatting’ Attack

Credit to Author: BrianKrebs| Date: Thu, 24 May 2018 17:45:52 +0000

Federal prosecutors have charged three men with carrying out a deadly hoax known as “swatting,” in which perpetrators call or message a target’s local 911 operators claiming a fake hostage situation or a bomb threat in progress at the target’s address — with the expectation that local police may respond to the scene with deadly force. While only one of the three men is accused of making the phony call to police that got an innocent man shot and killed, investigators say the other two men’s efforts to taunt and deceive one another ultimately helped point the gun.

Read More