How Fast to Disclose a Breach?

What are the rules (or regulations) that state how fast to disclose and where? SC Magazine has an article on the new rule by the SEC that says a public company should make a disclosure. SEC’s 4-day breach disclosure rule hits opposition in Congress One of the problems was that there was an attacker that … Read more

Browser Update Scam Improved and Re-issued

KrebsonSecurity has a story from October 18th: “The Fake Browser Update Scam Gets a Makeover” Do you get a message saying you need to update your browser?  Do you know what the message “Should” look like? Is it this after you click on your browser and trying to get somewhere on the Internet? This image … Read more

SpyNote app can take over your Android Phone and Hide

There is an interesting post at f-secure blog: “Take A Note of SpyNote” Malware may install itself on your phone (if you allow it) and then it will ask you all kinds of questions like:  “When you want to install the application, a notification appears asking for permission to access phone calls, photos and videos, … Read more

New Facebook Messenger Scam Attack

I am including 3 possible Facebook(Meta) messenger scam attacks – also known as Social engineering attacks. Yes there are also Facebook Messenger attacks. What are they? what if somebody messages you and asks a number of possible questions: A.   “Remove this image from your facebook page immediately it affects us” B.  Can I buy this? … Read more

Another OpenSSH RCE Vulnerability – i.e. Patch Now!

Linuxsecurity.com has the story RCE means Remote Code Execution which means that the attacker does not need an account to make a successful attack.  This vulnerability is rated 9.8 out of 10 thus it is very high. “Two critical remote code execution (RCE) vulnerabilities have been found in OpenSSH (CVE-2023-28531 and CVE-2023-38408). Because these bugs … Read more