Money (That's what email attackers want)

Cybercriminal with cash

A new report from email security and cyber resilience company Mimecast, released to coincide with this year's virtual Black Hat conference, reveals that threat actors are motivated by monetary gain more than stealing data or intellectual property.

It also finds that COVID-19 continues to be a major theme in current attacks, especially in certain sectors, and that opportunistic and malware-based campaigns are being launched at volumes never seen before, with manufacturing, retail/wholesale, finance/insurance, and media and publishing being the hardest hit.

Continue reading

First time SOC staff frustrated by routine tasks

Frustrated computer user

Half of first-time security analysts working in Security Operations Centers (SOCs) plan to leave after just three months in the job, according to a study from SIRP Labs.

None of them plan to remain in their current role for longer than 18 months, and of all the 250 security analysts interviewed nearly half (48 percent) are considering leaving their role, within 11 months. The average amount of time spent in the same post is just 30 months.

Continue reading

Using the HOSTS file to block Windows 10 telemetry? Microsoft now flags it as a severe security risk

Microsoft building in California

The telemetry features that are built into Windows 10 have people falling into one of a few camps. There are those who don't even know what telemetry is, those who know but don’t care that Microsoft is gathering data from their computer, and those who know what it is and consider it to be a massive invasion of privacy.

For anyone who counts themselves in this last group, there are numerous settings, tools and techniques that can be used to block telemetry in Windows 10. One of the more ingenious is making use of the HOSTS file (used to resolve hostnames), but now Microsoft has updated its Defender tool so this is detected as a "severe" risk, specifically "SettingsModifier:Win32/HostsFileHijack".

Continue reading

Alexa, play a podcast on Pandora

echo_dot_amazon_alexa_woman_girl

Podcasts have been steadily gaining in popularity over the last several years, but thanks to COVID-19, it feels like interest has exploded recently. After all, people are stuck indoors -- whether unemployed or working from home -- and listening to a podcast is a great way to pass the time. Don't forget, Spotify recently paid Joe Rogan $100 million to get his podcast, The Joe Rogan Experience, on its platform exclusively.

Pandora may not be the most popular platform for listening to podcasts, but some people do, in fact, use it for that purpose. If you are one of those people, I have great news -- you can now start and listen to your favorite podcasts on Pandora using Amazon Alexa.

Continue reading

Google Pixel 4a makes OnePlus Nord irrelevant -- if you don't care about 5G

pixel4a-01

If you are a hardcore Android fan, you should buy a Pixel. Google’s phones may not always have the best specs, but they do offer the purest experience. They are the only way to truly experience Android as Google intends it, including timely OS updates. They are free of bloat, unlocked, and often very affordable. Best of all, they offer a remarkable photography experience.

Today, Google officially announces the highly anticipated Pixel 4a. It isn’t a flagship device, but with a $349 price, the Android 10 smartphone is an amazing value -- as long as you don’t care about 5G.

Continue reading

The Linux Foundation aims to improve open source software security

open source

Open source software has become commonplace in all sorts of environments. But its very nature means that those responsible for their users' or organization's security need to be able to understand and verify its security.

Today The Linux Foundation is announcing the formation of the Open Source Security Foundation (OpenSSF). This is a cross-industry collaboration that brings together leaders to improve the security of open source software by building a broader community with targeted initiatives and best practices.

Continue reading

Get the new Windows 10 Start menu -- and other Insider features -- without being an Insider

shh_finger_on_lips

Being a Windows Insider obviously carries some risks. You may install a build which doesn’t play at all nicely on your PC, resulting in features breaking, or worse. The plus side is you do get to try out cool new features before anyone else.

Recently Microsoft introduced an updated Start menu with theme-aware tiles, and an improved Alt-Tab experience which shows all open tabs from Microsoft Edge. Although you officially need to be an Insider to enjoy these, there is a sneaky workaround that will allow you to get them without having to join the program.

Continue reading

New platform helps businesses make better security decisions

security meter

Businesses were already facing increasingly complex security environments thanks to cloud use and digital transformation projects, and with the advent of COVID-19 things have become more difficult still.

Breach and attack simulation specialist AttackIQ is launching its new Security Optimization Platform to equip cybersecurity leaders with better insights and help them make better decisions and improve business outcomes.

Continue reading

HyperX launches affordable Cloud Core Gaming Headset + 7.1

B525A25E-84C4-4959-96C7-0C394EBE9658

If it feels like HyperX releases a lot of gaming headsets, that's because it does. Yeah, Kingston's gaming brand seems to like having a large offering of headsets for some reason. While that can be confusing for some consumers, ultimately, having choice and a diverse product line is a good thing. It ensures there are models for all budgets and needs.

Today, HyperX launches the Cloud Core Gaming Headset + 7.1. As the name implies, it offers virtual 7.1 surround sound. The wired headset looks to be attractive and comfortable too. It even comes with a USB breakout box with controls. Best of all, it is very much affordable at less than $70.

Continue reading

Mobile device use opens up businesses to extra risk

business mobile

Mobile devices have become an extension of our everyday lives, but if they are used to access business networks they could be exposing sensitive information to risk.

A new report from Gigamon reveals that most mobile devices run an average of 60-90 applications, facilitating access to email, SaaS-based solutions, cloud storage, social networks, games, news feeds and more.

Continue reading

Microsoft releases KB4568831 update to fix printing issues, connectivity problems and more in Windows 10

Colorful Microsoft logo

Microsoft is continuing its ongoing game of cat and mouse with itself, releasing updates to fix problems introduced by previous updates. The latest to be released is KB4568831 and it addresses a range of issues.

Among the fixes this particular update brings are issues with LTE connectivity in Windows 10 version 2004, problems with Bluetooth headsets, and issues with printing.

Continue reading

Microsoft releases PowerToys v0.20.0 with new Color Picker utility and more

PowerToys reboot

As recently promised, Microsoft has released PowerToys v0.20.0. This release sees the arrival of a new utility in the form of Color Picker for grabbing hex and RGB color values from anywhere on screen. There are other changes and fixes too.

There are now eight utilities available in PowerToys, and with this release Microsoft has made numerous improvements to those that were already in the collection. This includes adding SVG icon rendering to File Explorer, as well as improvements to Keyboard Manager.

Continue reading

Ancestry.com claims no harm from security vulnerability in Family Tree Maker

Windows relief

If you’re at all familiar with genealogy then you'll likely know both Ancestry and Family Tree Maker -- they an integral part of the pastime. Unfortunately, independent review site WizCase recently discovered an open and unencrypted ElasticSearch server that belonged to Software MacKiev, the owners of Family Tree Maker.

The leak exposed thousands of records including email addresses, user locations, and other sensitive personal information. FTM was owned by Ancestry.com until 2016 when Software MacKiev took it over, and the software is still used to upload databases to the Ancestry online trees.

Continue reading

Philo gets Google Chromecast support

Screenshot_Android-tablet_Power

Around the world, many consumers are cutting cable, opting instead for online TV streaming services such as YouTube TV, Sling TV, and Hulu+Live TV to name a few. Another streaming TV service, Philo, isn't the most comprehensive option, but it is one of the cheapest at just $20 monthly for more than 50 channels.

Today, Philo gets a new feature that subscribers should absolutely love -- Chromecast support. Called "Philo Connect," subscribers can now choose to "cast" what they are watching on an Android device to their TV via a Chromecast dongle (or television with integrated Chromecast).

Continue reading

Microsoft fixes issue with Edge crashing when you type in the address bar

Microsoft Edge on laptop and smartphone

If you're using Microsoft Edge, you may have noticed that the browser crashes when you type in the address bar. You are not alone -- many people are experiencing this exact problem.

Microsoft has spent some time looking into the cause of the issue which seems to have been affecting people who were now only using Edge, but who have Google set as their default search engine.

Continue reading

Load More Articles