Author: Cybernoz

Six years of the GitHub Security Bug Bounty program
08
May
2023

Six years of the GitHub Security Bug Bounty program

This guest blog post was authored by Brian Anglin, Application Security Engineer at GitHub and originally published on the GitHub…

7 biggest security news of 2017
08
May
2023

7 biggest security news of 2017

Cloud security, ransomware, and poor incident responses have all shaped security discussions in 2017. Another interesting year in security has…

Best Practices to Reduce the Threats of Cyberattacks
08
May
2023

Best Practices to Reduce the Threats of Cyberattacks

Today’s online environment is a virtual minefield where explosions might happen at any time. Cyberattacks are always lurking in the…

08
May
2023

MSI’s firmware, Intel Boot Guard private keys leaked

The cybercriminals who breached Taiwanese multinational MSI last month have apparently leaked the company’s private code signing keys on their…

5 Best Practices For Securing RESTful APIs In 2023
08
May
2023

5 Best Practices For Securing RESTful APIs In 2023

Whether you are a developer or not, we all use APIs (Applications Programming Interfaces). You can use them as a…

Hack for Good: Easily Donate Bounties to WHO’s COVID-19 Response Fund
08
May
2023

Hack for Good: Easily Donate Bounties to WHO’s COVID-19 Response Fund

The community has come together in some amazing ways to support COVID-19 relief efforts from Marc Rogers’ CTI League, the…

Weaponized PyPI Package
08
May
2023

Hackers Weaponized PyPI Packages to Steal Sensitive Information

Python developers worldwide share and download code through PyPI (Python Package Index), a popular repository for software packages for the…

SafeGraph Lands US Air Force Contract After Targeting Abortion Clinics
08
May
2023

SafeGraph Lands US Air Force Contract After Targeting Abortion Clinics

In its early years, SafeGraph sold direct access to individualized location traces tied to device IDs. SafeGraph has historically denied any…

08
May
2023

Western Digital store offline due to March breach

The Western Digital online store is offline as a result of the “network security incident” it suffered in March 2023….

ACME TLS-SNI-01 shared hosting exploit using Let’s Encrypt
08
May
2023

ACME TLS-SNI-01 shared hosting exploit using Let’s Encrypt

On Tuesday, January 9, Detectify’s security advisor Frans Rosén discovered and reported a security issue in in TLS-SNI-01 validation in…

Cisco Phone Adapters Flaw
08
May
2023

Cisco Phone Adapters Flaw Let Attackers Execute Arbitrary Code

Cisco SPA112 2-Port Phone Adapters have been reported to be vulnerable to arbitrary code execution via a malicious firmware upgrade….

Dating Apps And Sites: Mitigating Chargebacks In 2023
08
May
2023

Apple Data Transfer Faces Breach Threat

Researchers have raised concerns about the security of Apple data transfer process. Hackers may attempt to intercept and analyze network…