A dangerous VMware authentication-bypass bug could give threat actors administrative access over virtual machines.
from Dark Reading https://ift.tt/bcnr5La
via IFTTT
A dangerous VMware authentication-bypass bug could give threat actors administrative access over virtual machines.
from Dark Reading https://ift.tt/bcnr5La
via IFTTT
The CVE-2022-27535 local privilege-escalation security vulnerability in the security software threatens remote and work-from-home users.
from Dark Reading https://ift.tt/u4XDK5P
via IFTTT
Securing email communication has never been more critical for organizations, and it has never been more challenging to do so. Attack volumes have increased and become more sophisticated.
from Dark Reading https://ift.tt/H3Y4b6g
via IFTTT
Lastest episode – listen now! (Or read if that’s what you prefer.)
from Naked Security https://ift.tt/JhCUp6g
via IFTTT
Users can identify risks across five domains, work on multiple projects, and take advantage of exclusive community benefits.
from Dark Reading https://ift.tt/1FCxMWR
via IFTTT

Email scammers sent an Uber to the home of an 80-year-old woman who responded to a well-timed email scam, in a bid to make sure she went to the bank and wired money to the fraudsters. In this case, the woman figured out she was being scammed before embarking for the bank, but her story is a chilling reminder of how far crooks will go these days to rip people off.
Travis Hardaway is a former music teacher turned app developer from Towson, Md. Hardaway said his mother last month replied to an email she received regarding an appliance installation from BestBuy/GeekSquad. Hardaway said the timing of the scam email couldn’t have been worse: His mom’s dishwasher had just died, and she’d paid to have a new one delivered and installed.
“I think that’s where she got confused, because she thought the email was about her dishwasher installation,” Hardaway told KrebsOnSecurity.
Hardaway said his mom initiated a call to the phone number listed in the phony BestBuy email, and that the scammers told her she owed $160 for the installation, which seemed right at the time. Then the scammers asked her to install remote administration software on her computer so that they could control the machine from afar and assist her in making the payment.
After she logged into her bank and savings accounts with scammers watching her screen, the fraudster on the phone claimed that instead of pulling $160 out of her account, they accidentally transferred $160,000 to her account. They said they they needed her help to make sure the money was “returned.”
“They took control of her screen and said they had accidentally transferred $160,000 into her account,” Hardaway said. “The person on the phone told her he was going to lose his job over this transfer error, that he didn’t know what to do. So they sent her some information about where to wire the money, and asked her to go to the bank. But she told them, ‘I don’t drive,’ and they told her, “No problem, we’re sending an Uber to come help you to the bank.’”
Hardaway said he was out of town when all this happened, and that thankfully his mom eventually grew exasperated and gave up trying to help the scammers.
“They told her they were sending an Uber to pick her up and that it was on its way,” Hardaway said. “I don’t know if the Uber ever got there. But my mom went over to the neighbor’s house and they saw it for what it was — a scam.”
Hardaway said he has since wiped her computer, reinstalled the operating system and changed her passwords. But he says the incident has left his mom rattled.
“She’s really second-guessing herself now,” Hardaway said. “She’s not computer-savvy, and just moved down here from Boston during COVID to be near us, but she’s living by herself and feeling isolated and vulnerable, and stuff like this doesn’t help.”
According to the Federal Bureau of Investigation (FBI), seniors are often targeted because they tend to be trusting and polite. More importantly, they also usually have financial savings, own a home, and have good credit—all of which make them attractive to scammers.
“Additionally, seniors may be less inclined to report fraud because they don’t know how, or they may be too ashamed of having been scammed,” the FBI warned in May. “They might also be concerned that their relatives will lose confidence in their abilities to manage their own financial affairs. And when an elderly victim does report a crime, they may be unable to supply detailed information to investigators.”
In 2021, more than 92,000 victims over the age of 60 reported losses of $1.7 billion to the FBI’s Internet Crime Complaint Center (IC3). The FBI says that represents a 74 percent increase in losses over losses reported in 2020.
from Krebs on Security https://ift.tt/cE0njFk
via IFTTT
Are you on Tinder? With 75 million monthly active users, you might be able to find the right one. However there are also traps you need to look out for. Read more about catfishing, sextortion, phishing and other practices used by scammers.
The post Don’t get singed by scammers while you’re carrying the torch for Tinder appeared first on WeLiveSecurity
from WeLiveSecurity https://ift.tt/UHbNjfk
via IFTTT
A global network of inauthentic news sites present themselves as independent news outlets, offering content favoring China’s government and articles critical of the US.
from Dark Reading https://ift.tt/V36zEPJ
via IFTTT
In the last month, “Pl0xP” cloned several GitHub repositories, adding malicious code to the forks that would attempt to infect developer systems and steal sensitive files that included software keys.
from Dark Reading https://ift.tt/Fso1G4x
via IFTTT
It’s a myth that consuming and processing alerts qualifies as security. Today’s technology allows better detection and prevention, rather than accepting the low bar for protection set by ingrained incident response reactions.
from Dark Reading https://ift.tt/bXyi5NJ
via IFTTT