Microsoft Patch Tuesday, August 2022 Edition

Credit to Author: BrianKrebs| Date: Tue, 09 Aug 2022 23:01:10 +0000

Microsoft today released updates to fix a record 141 security vulnerabilities in its Windows operating systems and related software. Once again, Microsoft is patching a zero-day vulnerability in the Microsoft Support Diagnostics Tool (MSDT), a service built into Windows. Redmond also addressed multiple flaws in Exchange Server — including one that was disclosed publicly prior to today — and it is urging organizations that use Exchange for email to update as soon as possible and to enable additional protections.

Read more

Banks face a WhatsApp reckoning as regulators clamp down on messaging apps

Credit to Author: Matthew Finnegan| Date: Mon, 08 Aug 2022 03:01:00 -0700

As regulators hand out hundreds of millions of dollars in fines for record-keeping failures related to the use of social messaging platforms such as WhatsApp, the finance industry faces a choice: properly enforce bans on the use of these apps or find ways to make them compliant.

“The explosion of new electronic communications channels — and the pervasive use of these — raises lots of red flags for the regulators,” said Anthony Diana, a partner at law firm Reed Smith’s Tech & Data Group. “The fear is that, if bad things are happening, they’re happening on these personal apps, not on the sanctioned communication channels that are surveilled.”

Anthony Diana Anthony Diana

Anthony Diana, a partner at law firm Reed Smith’s Tech & Data Group.

To read this article in full, please click here

Read more

Class Action Targets Experian Over Account Security

Credit to Author: BrianKrebs| Date: Sat, 06 Aug 2022 01:54:35 +0000

A class action lawsuit has been filed against big-three consumer credit bureau Experian over reports that the company did little to prevent identity thieves from hijacking consumer accounts. The legal filing cites liberally from an investigation KrebsOnSecurity published in July, which found that identity thieves were able to assume control over existing Experian accounts simply by signing up for new accounts using the victim’s personal information and a different email address.

Read more

Scammers Sent Uber to Take Elderly Lady to the Bank

Credit to Author: BrianKrebs| Date: Thu, 04 Aug 2022 15:41:09 +0000

Email scammers sent an Uber to the home of an 80-year-old woman who responded to a well-timed email scam, in a bid to make sure she went to the bank and wired money to the fraudsters.  In this case, the woman figured out she was being scammed before embarking for the bank, but her story is a chilling reminder of how far crooks will go these days to rip people off.

Read more

No SOCKS, No Shoes, No Malware Proxy Services!

Credit to Author: BrianKrebs| Date: Tue, 02 Aug 2022 19:31:35 +0000

With the recent demise of several popular “proxy” services that let cybercriminals route their malicious traffic through hacked PCs, there is now something of a supply chain crisis gripping the underbelly of the Internet. Compounding the problem, several remaining malware-based proxy services have chosen to block new registrations to avoid swamping their networks with a sudden influx of customers.

Read more