Tag: security

Dick’s Sporting Goods reveals cyberattack, shuts down employee emails

Dick’s Sporting Goods appears to have been caught with its pants down after suffering a cyberattack that resulted in the theft of sensitive company data. The sporting goods store filed an 8-K form with the US Securities and Exchange Commission (SEC), notifying the regulator of a cybersecurity incident. “On August…

Read More

What promises to be the “world’s most private VPN” is out – and looking for testers

Although it’s too early to tell if it’ll eventually win the title of best VPN app, the service that promises to be the “world’s most private VPN” has just launched its public beta testing. First introduced during last year’s Web Summit conference in Lisbon, NymVPN was developed as a solution…

Read More

One of Microsoft’s most niche software tools hit by major phishing scam

Cybercriminals are using Microsoft Sway to host landing pages used in phishing campaigns, experts have claimed. The attack was spotted by cybersecurity researchers from Netskope Threat Labs, who observed a 2,000-fold increase in exploits in July 2024. You can be excused for not knowing what Sway is. It is a…

Read More

A million airport parking customers affected in huge data breach

A million Park’N Fly customers have had their sensitive data stolen after the company suffered a cyberattack. The news was confirmed in a data breach notification letter sent out by the company, which noted the threat actors accessed the company’s IT infrastructure in July 2024 using stolen VPN credentials. The…

Read More

This cybercrime group claims it can help hackers beat CAPTCHA locks

Cybersecurity experts have reported discovering an threat actor selling CAPTCHA-solving services to its customers. Arkose Cyber Threat Intelligence Research (ACTIR) says the Greasy Opal group is allegedly based in the Czech Republic and has, in the past decade and a half, sold all kinds of software, both legitimate and illegal.…

Read More

Microsoft Copilot could have been hacked by some very low-tech methods

Cybersecurity researchers have found a way to force Microsoft 365 Copilot to harvest sensitive data such as passwords, and send them to malicious third parties using “ASCII smuggling” The ASCII smuggling attack required three things: Copilot for Microsoft 365 reading the contents of an email, or an attached document; having…

Read More