Industry Spotlight

USDA Worker, 5 Others Charged in Food Stamp Fraud Operation
Six New York residents were charged with running a complex scheme that involved fraudulent documentation and unauthorized payment systems to steal as much as $30 million from the country's food stamp program ...
Security Boulevard

Victoria’s Secret Hit By ‘Security Incident’ After Attacks on UK Retailers
Victoria's Secret took down its U.S. website this week after an unspecified security incident that cybersecurity experts believe is related to similar attacks on UK retailers earlier this month by the high-profile ...
Security Boulevard

Microsoft Opens Windows Update to 3rd-Party Apps
Richi Jennings | | application delivery orchestration, APPX, Background Intelligent Transfer Service (BITS), BITS, Microsoft, Microsoft cybersecurity fixes, Microsoft Store, Microsoft Windows, MSIX App Installer, orchestration, Package Managers, SB Blogwatch, security orchestration, Win32, Windows, Windows Update, Windows Update orchestration platform, Windows updates, WinGet
A breath of fresh air: Security fixes and other updates will be “orchestrated” by Redmond’s own update tool ...
Security Boulevard

RSA and Bitcoin at BIG Risk from Quantum Compute
Richi Jennings | | Craig Gidney, cryptanalytically relevant quantum computer, ECDSA, Elliptic Curve Cryptography, imaginary money, NIST-standardized PQC encryption algorithms, post quantum, post-quantum cryptograph, Post-Quantum Cryptography, Post-quantum cryptography (PQC), Post-Quantum Cryptography (PQC) algorithms, Post-Quantum Cryptography Migration, Post-Quantum Migration, post-quantum security, PQC, PQC adoption, PQC migration, PQC readiness, PQC transition, quantum, rsa, SB Blogwatch
PQC PDQ: Researchers find we’ll need 20 times fewer qubits to break conventional encryption than previously believed ...
Security Boulevard

Signal Gives Microsoft a Clear Signal: Do NOT Recall This
Richi Jennings | | AI, AI (Artificial Intelligence), AI training, Artificial Intelligence, Artificial Intelligence (AI), Artificial Intelligence (AI)/Machine Learning (ML), artificial intellignece, artificialintelligence, breach of privacy, Copilot, cybersecurity risks of generative ai, Data Privacy, Digital Privacy, generative AI, Generative AI risks, Health Insurance Portability and Accountability Act (HIPAA), HIPAA, HIPAA and IT Security, HIPAA Compliance, hipaa laws, HIPPA, Large Language Model, large language models, Large Language Models (LLM), Large language models (LLMs), LLM, LLMs, machine learning, Microsoft, ML, Privacy, Recall, SB Blogwatch, signal, Signal app, Windows
Black screen of DRM: Privacy-first messenger blocks Microsoft Recall ...
Security Boulevard

Coinbase Says Breach May Cost $400 Million, Issues $20 Million Bounty
Jeffrey Burt | | Coinbase, cryptocurrency asset theft, Data breach, Securities Exchange Commission (SEC)
The major data breach of cryptocurrency exchange Coinbase could cost the company as much as $400 million, it told the SEC. However, rather than pay the $20 million extortion demand, Coinbase issued ...
Security Boulevard

Warning to US Retail: ‘Scattered Spider’ Targets YOU (with DragonForce Ransomware)
Richi Jennings | | 0ktapus, attacks on online retailers, Co-op, Dembe Zuma, DragonForce, google, Harrods, internet retailers, John Hultquist, Mandiant, Marks & Spencer, Muddled Libra, online retailer, Online Retailers, online retailers cyber threats, Ransomware, Raymond Reddington, retail, Retail & Commerce, Retail & Consumer Goods, Retail & e-commerce, Retail and E-Commerce, Retail Cybersecurity, Retail Industry, SB Blogwatch, Scatter Swine, scattered spider, Starfraud, the Com, the Community, UNC3944
Arachnid alarm: Three major British retailers recently attacked, resulting in huge damage. Now we see the self-same scum spotlighting stores in the States ...
Security Boulevard

As US CVE Database Fumbles, EU ‘Replacement’ Goes Live
Richi Jennings | | CERT-EU, cisa, CISA Research, common vulnerabilities and exposures, CVE, CVE (Common Vulnerabilities and Exposures), CVE database, CVE Program, Cybersecurity and Infrastructure Security Agency, cybersecurity funding, Department of Homeland Security, DHS, ENISA, eu, EU Agency for Cybersecurity, European Union, European Union (EU), EUVD, Funding & Grants, Juhan Lepassaar, MITRE, MITRE Framework, National Institute of Standards and Technology, National Institute of Standards and Technology (NIST), NIS2, NIS2 Directive, NIST, SB Blogwatch, U.S. Department of Homeland Security, vulnerability database
Diesen Kuß der ganzen Welt! European Union Vulnerability Database (EUVD) launches this week. And not a moment too soon ...
Security Boulevard

SMBs Know They’re At Risk, but Most Aren’t Embracing AI
A survey by CrowdStrike finds the gap between SMB awareness of cyber threats and efforts by them to protect themselves is widening, with not enough of them spending the money needed on ...
Security Boulevard

U.S. Wins One, Maybe Two, Extradition Petitions in Unrelated Cases
In short order, U.S. prosecutors won an extradition case to bring a suspect in multiple ransomware cases to the United States and had another in England move in their favor when the ...
Security Boulevard