Skip to main content

Industry News

1Password detects “suspicious activity” in its internal Okta account

posted onOctober 24, 2023
by l33tdawg
Credit: Arstechnica

1Password, a password manager used by millions of people and more than 100,000 businesses, said it detected suspicious activity on a company account provided by Okta, the identity and authentication service that disclosed a breach on Friday.

“On September 29, we detected suspicious activity on our Okta instance that we use to manage our employee-facing apps,” 1Password CTO Pedro Canahuati wrote in an email. “We immediately terminated the activity, investigated, and found no compromise of user data or other sensitive systems, either employee-facing or user-facing.”

The Hamas Threat of Hostage Execution Videos Looms Large Over Social Media

posted onOctober 24, 2023
by l33tdawg
Credit: Wired

For the past decade, social media platforms have struggled to stop the spread of extremist violence livestreamed on their platforms. Now they face a much different problem: This time, they know what’s coming.

In the days after Hamas attacked Israel on October 7, the group’s military wing said it would kill an Israeli hostage every time Israel launched an attack on Gaza. Abu Obeida, a spokesperson for the al-Qassam Brigades, added that these executions would be broadcast “in audio and video.” As of today, Hamas is holding 220 people hostage, according to the Israel Defense Forces.

They Cracked the Code to a Locked USB Drive Worth $235 Million in Bitcoin. Then It Got Weird

posted onOctober 24, 2023
by l33tdawg
Credit: Wired

At 9:30 am on a Wednesday in late September, a hacker who asked to be called Tom Smith sent me a nonsensical text message: “query voltage recurrence.”

Those three words were proof of a remarkable feat—and potentially an extremely valuable one. A few days earlier, I had randomly generated those terms, set them as the passphrase on a certain model of encrypted USB thumb drive known as an IronKey S200, and shipped the drive across the country to Smith and his teammates in the Seattle lab of a startup called Unciphered.

China Accused of Massive IP Theft, AI Hacking by Five Eyes Intelligence Alliance

posted onOctober 19, 2023
by l33tdawg
Credit: PC Mag

China stands accused of stealing intellectual property and using artificial intelligence to hack and spy on other nations at an unprecedented scale.

As Reuters reports, the accusations come from the Five Eyes intelligence alliance—which comprises the United States, Britain, Canada, Australia, and New Zealand—following meetings with private US companies in Silicon Valley. The theft is occurring across a wide range of sectors, covering everything from quantum technology and robotics to biotechnology and AI.

North Korean Hackers Exploiting Critical Flaw in DevOps Tool

posted onOctober 19, 2023
by l33tdawg
Credit: Info Risk Today

North Korean nation-state threat actors are exploiting a critical remote code execution vulnerability affecting multiple versions of a DevSecOps tool - a high-risk development, especially in light of Pyongyang hackers' recent track record of supply chain hacks.

Researchers at Microsoft said Wednesday that North Korean nation-state threat actors tracked as Diamond Sleet and Onyx Sleet are exploiting a remote code execution vulnerability affecting multiple versions of the JetBrains TeamCity server.

Ukrainian activists hack Trigona ransomware gang, wipe servers

posted onOctober 19, 2023
by l33tdawg
Credit: Bleeping Computer

A group of cyber activists under the Ukrainian Cyber Alliance banner has hacked the servers of the Trigona ransomware gang and wiped them clean after copying all the information available.

The Ukrainian Cyber Alliance fighters say they exfiltrated all of the data from the threat actor’s systems, including source code and database records, which may include decryption keys.

North Korean hackers exploit critical TeamCity flaw to breach networks

posted onOctober 19, 2023
by l33tdawg
Credit: Bleeping Computer

Microsoft says that the North Korean Lazarus and Andariel hacking groups are exploiting the CVE-2023-42793 flaw in TeamCity servers to deploy backdoor malware, likely to conduct software supply chain attacks.

TeamCity is a continuous integration and deployment server organizations use as part of their software development infrastructure. In September, TeamCity fixed a critical 9.8/10 vulnerability tracked as CVE-2023-42793 that allowed unauthenticated attackers to remotely execute code.

Rapper Pras’ lawyer used AI to defend him in criminal case—it did not go well

posted onOctober 19, 2023
by l33tdawg
Credit: Arstechnica

After being convicted of federal crimes related to a foreign influence campaign, rapper Prakazrel "Pras" Michel says he should get a new trial because his lawyer "used an experimental AI program to write his closing argument." In a motion for a new trial filed Monday, the Fugees rapper's new lawyers say Michel's previous representation used "an experimental AI program in which they had a financial stake to write the closing argument, resulting in a frivolous and ineffectual closing argument."

Who’s Responsible for the Gaza Hospital Explosion? Here’s Why It’s Hard to Know What’s Real

posted onOctober 19, 2023
by l33tdawg
Credit: Wired

Yesterday evening around 7 pm local time, an explosion rocked the Al-Ahli Baptist Hospital in Gaza City. Within minutes, information about what had happened was distorted by partisan narratives, disinformation, and a rush to be first to post about the blast. Add in mainstream media outlets parroting official statements without verifying their veracity, and the result was a chaotic information environment in which no one was sure what had happened or how.

Netflix’s Password-Sharing Crackdown Is Working—for Now

posted onOctober 19, 2023
by l33tdawg
Credit: Wired

If it’s not the company motto yet, it should be: Never count Netflix out. On Wednesday, the streaming giant beat Wall Street projections by reporting a gain of nearly 9 million new subscribers worldwide and $8.5 billion in revenue for the third quarter of 2023, a nearly 8 percent increase year-over-year. While that might all sound like a bunch of finance bro brouhaha, it’s also remarkable considering the very tumultuous three years the company—and Hollywood—has had.