This Week’s [in]Security – Issue 163
17 May 2020.
Welcome to This Week’s [in]Security. Trending: Coronavirus: Visualizing the spread. Infection and governments. Lockdown and reopening. Weird tech. Pool-noodle-hats. Vaccines, anti-bodies, treatments. More good, bad, and ugly. Masks, anti-maskers, and distancing. Confused AIs. PCI updated FAQs. The Unattributable 23M record breach. Celebrity law firm. 2nd grader pwns school board. More ransomware information sales. More contact tracing. Huawei export restrictions. Windows packet sniffer. Win-DoHs. Defcon & Blackhat cancelled. Thunderspy. Apples XML trouble. Ancient Windows bug. Attacking smart factories. Crypto-agility. Rash of supercomputer hacks. Exfiltrating over air gaps. New electronic warfare platform. Conspiracy theories. Election insecurity. And more.
Now here's this week’s selection of news, opinions, and research. Quickly skim annotated links organized by topic: compliance and payment security, breaches, regulation, bugs, privacy, hacking/malware, other security & risk, and more. We hope you enjoy and find them useful.
New - Emerging Issues and Trending Stories
Coronavirus updates. We recently change the way we report COVID articles to you so it is less overwhelming. Many COVID articles will appear within our normal blog section headings each with a sub-group dedicated to COVID-19. For example:
- Facts about its spread, direct impact, and how people react will continue under Trending.
- Regulations and restrictions to counter the virus will be under Regulations.
- Privacy Implications, PCI/Payments, Cybercrime under their respective sections
- Treatments, Vaccines, Innovations, Coping methods under Defense
- Information on how/why it spreads, improvements understanding it, etc. under Vulnerabilities
- Economic impact and articles that don't fit into the other categories will be under Other Risk.
- Breaches (and Ransomware) under Breaches.
Our first regular reports on coronavirus can be found at https://controlgap.com/blog/this-weeks-insecurity-issue-147. And our first use of the trending topic section can be found https://controlgap.com/blog/this-weeks-insecurity-issue-149.
-
The spread and the curve:
- Unnerving Video Shows Just How Easily an Infection Can Spread Through Contact https://www.sciencealert.com/this-demonstration-shows-just-how-easily-an-infection-spreads-through-contact
- Armed forces personnel sent into long term care homes infected https://toronto.citynews.ca/2020/05/15/armed-forces-long-term-care-homes-coronavirus/
- (Nice graphic) The Countries Where Coronavirus Cases Are Increasing And Decreasing, Visualized https://digg.com/2020/countries-where-coronavirus-cases-are-increasing-and-decreasing-visualized
- Canada’s daily coronavirus death toll is lowest since late April https://globalnews.ca/news/6950854/canada-coronavirus-cases-deaths-may-15/
- Ontario reports 258 new coronavirus cases, lowest number since late March https://globalnews.ca/news/6942518/ontario-coronavirus-cases-may-14-covid19/ then 391 new coronavirus cases, 33 deaths as total cases top 22,300 https://globalnews.ca/news/6952465/ontario-coronavirus-cases-may-16-covid19/
- Testing suggests 3% of NHS hospital staff may be unknowingly infected with coronavirus https://scienmag.com/testing-suggests-3-of-nhs-hospital-staff-may-be-unknowingly-infected-with-coronavirus/
- How Virginia Juked Its COVID-19 Statistics https://www.theatlantic.com/health/archive/2020/05/covid-19-tests-combine-virginia/611620/
- Moscow attributes 60% of coronavirus deaths to other causes https://globalnews.ca/news/6942020/russia-coronavirus-death-toll/
- Vladimir Putin’s spokesman hospitalized with coronavirus https://globalnews.ca/news/6933997/vladimir-putin-spokesman-coronavirus/
- Sweden's per-capita coronavirus death toll is among the highest in the world https://www.businessinsider.com/sweden-coronavirus-per-capita-death-rate-among-highest-2020-5
- The CDC now forecasts 100,000 US coronavirus deaths by June 1 https://www.businessinsider.com/cdc-forecasts-100000-coronavirus-deaths-by-june-1-2020-5
- The coronavirus model used by the White House now estimates 147,000 deaths by August https://www.businessinsider.com/coronavirus-model-used-by-white-house-estimates-147000-deaths-2020-5
- Oklahoma nail salon worker contracted the coronavirus shortly after the business reopened https://www.businessinsider.com/oklahoma-nail-salon-worker-infected-with-coronavirus-after-reopening-2020-5
- A New York barber who defied lockdown and ‘illicitly’ cut hair tests positive for the coronavirus https://www.washingtonpost.com/nation/2020/05/15/new-york-barber-coronavirus/
- After Wisconsin court ruling, crowds liberated and thirsty descend on bars https://www.washingtonpost.com/nation/2020/05/14/wisconsin-bars-reopen-evers/
- As the White House coronavirus outbreak spreads, Trump encourages states to reopen https://globalnews.ca/news/6931168/trump-coronavirus-outbreaks/
-
Lockdown and reopening:
- Mixed messages, frustration with lockdowns fuel some skepticism about pandemic https://www.cbc.ca/news/technology/psychology-covid-19-1.5561847
- This is what is will take for the US to solve its testing problem and actually get everyone back to work safely https://www.businessinsider.com/coronavirus-reopening-testing-plan-covid19-antibody-pcr-problems-solutions-2020-4
- Two Coasts. One Virus. How New York Suffered Nearly 10 Times the Number of Deaths as California https://www.propublica.org/article/two-coasts-one-virus-how-new-york-suffered-nearly-10-times-the-number-of-deaths-as-california
- What Americans Need to Understand About the Swedish Coronavirus Experiment https://gen.medium.com/what-americans-need-to-understand-about-the-swedish-coronavirus-experiment-50417cc20994
- Germany is reopening with one of the lowest death rates in the world https://www.businessinsider.com/coronavirus-germany-reopening-low-deaths-testing-lockdown-2020-5
- The CDC released a flowchart to determine if a restaurant or bar should reopen https://www.businessinsider.com/follow-cdcs-flow-chart-see-if-restaurant-bar-should-reopen-2020-5
- Baltic states open a pandemic 'travel bubble' https://www.bbc.com/news/world-europe-52673373
- Putin eases Russian lockdown as cases rise https://www.bbc.com/news/world-europe-52620015
- Canada, U.S. working on extending border closure agreement until June 21 https://globalnews.ca/news/6941869/coronavirus-canada-us-border-extension/
- How Hong Kong Did It https://www.theatlantic.com/technology/archive/2020/05/how-hong-kong-beating-coronavirus/611524/
- Hair salons and barber shops are reopening — but your visit won’t be the same https://globalnews.ca/news/6928644/hair-salon-barber-shop-safe/
- NY, Mass Plan Phased Reopenings As Robots, Recommerce Show Promise https://www.pymnts.com/coronavirus/2020/ny-mass-plan-phased-reopenings-as-robots-recommerce-show-promise/
- Airport tests 'smart helmet' that will spot coronavirus carriers and stop them travelling https://www.independent.co.uk/life-style/gadgets-and-tech/news/coronavirus-airports-smart-helmet-covid-19-temperature-scan-rome-a9512976.html
- TTC riders weary of public transit until COVID-19 vaccine available https://globalnews.ca/news/6936256/coronavirus-ttc-public-transit-vaccine-covid-19/
-
Treatments, Testing, Triage, and Trials, and things we learned:
- Bill Gates is working to fix a surprising problem hindering a COVID-19 vaccine: finding enough glass vials https://www.businessinsider.com/bill-gates-buying-glass-vials-for-billions-of-coronavirus-vaccines-2020-5
- Fast at-home coronavirus test just got emergency approval from the FDA https://www.businessinsider.com/at-home-coronavirus-test-kit-gets-emergency-fda-approval-2020-5
- Covid antibody test a 'positive development' https://www.bbc.com/news/health-52656808
- Canada authorizes use of first blood tests to detect COVID-19 antibodies https://globalnews.ca/news/6936914/coronavirus-canada-blood-serological-test/
- Health Canada approves first clinical trial for possible coronavirus vaccine https://globalnews.ca/news/6952634/coronavirus-vaccine-trials-trudeau/
- Coronavirus vaccine being tested in China could be tested in Canada soon https://globalnews.ca/news/6932713/coronavirus-vaccine-china-canada-trial/
- Vaccine tested on Macaque monkeys offers hope https://www.bbc.com/news/health-52674739
- Men’s blood contains greater concentrations of enzyme that helps COVID-19 infect cells https://scienmag.com/mens-blood-contains-greater-concentrations-of-enzyme-that-helps-covid-19-infect-cells/
- Blood Clots Are Mysteriously Tied to Many Coronavirus Problems https://www.nature.com/articles/d41586-020-01403-8
- It's beginning to look like there may be a weird relationship between cigarettes-and-COVID https://nationalpost.com/opinion/colby-cosh-where-theres-smoke-the-cigarettes-and-covid-story-is-growing-harder-to-ignore
- Researchers Find Another Virus in Bats That's Closely Related to SARS-CoV-2 https://www.sciencealert.com/researchers-have-found-another-close-relative-of-sars-cov-2-in-bats
- The coronavirus 'may never go away' if clusters of anti-vaxxers oppose a vaccine https://www.businessinsider.com/who-coronavirus-may-never-go-away-vaccine-years-off-2020-5
- 72% of Canadians support mandatory coronavirus vaccine, Ipsos poll suggests https://globalnews.ca/news/6932834/mandatory-coronavirus-covid-19-vaccine-ipsos/
- Toronto’s Canadian National Exhibition cancelled for 2nd time in history https://globalnews.ca/news/6934138/coronavirus-cne-cancelled/
- A scientifically accurate model of the SARS-CoV-2 virus https://scienmag.com/a-scientifically-accurate-model-of-the-sars-cov-2-virus/ and https://visual-science.com/projects/sars-cov-2/animation/
-
Guidance, Response and Recovery:
- Reopened stores putting returned items in quarantine before re-shelving due to coronavirus https://globalnews.ca/news/6929525/reopened-stores-putting-returned-items-in-quarantine-before-re-shelving-due-to-coronavirus/
-
Behaviour - the good, the bad, and the ugly:
- More than 16,000 people have shown support to being intentionally infected with the coronavirus to speed up vaccine development https://www.businessinsider.com/16000-people-willing-to-be-infected-with-coronavirus-for-vaccine-2020-5
- As coronavirus drags on, more Canadians https://globalnews.ca/news/6934752/canadians-coronavirus-physical-distancing-ipsos/
- Canadian-approved N95 mask targeted by Chinese counterfeiters https://www.cbc.ca/news/politics/chinese-masks-counterfeit-pandemic-covid-1.5568246
- Criminals look to avoid ‘cuffs with COVID-19 claims https://globalnews.ca/news/6930521/waterloo-criminals-covid-claims/
- US Senate intelligence chief steps down for FBI probe https://www.bbc.co.uk/news/world-us-canada-52668126
- U.S. Secret Service: “Massive Fraud” Against State Unemployment Insurance Programs https://krebsonsecurity.com/2020/05/u-s-secret-service-massive-fraud-against-state-unemployment-insurance-programs/
- Toronto woman charged with mischief after allegedly spitting on bank machine https://globalnews.ca/news/6937441/toronto-woman-charged-mischief-spitting-bank-machine/
- Our Behaviour in This Pandemic Has Seriously Confused AI Machine Learning Systems https://www.sciencealert.com/our-behaviour-in-this-pandemic-has-seriously-confused-ai-machine-learning-systems
-
Masks, anti-maskers, and distancing:
- German café asks patrons to wear pool-noodle hats to enforce social distancing https://globalnews.ca/news/6949120/pool-noodle-hats-social-distancing/
- Amsterdam trials 'Covid-safe' restaurant https://www.bbc.co.uk/news/av/world-europe-52663568/coronavirus-amsterdam-trials-covid-safe-restaurant
- Melitta Is Making Face Masks Shaped Like Its Coffee Filters https://www.mentalfloss.com/article/624455/melitta-making-coffee-filter-shaped-face-masks
- At the Height of the 1918 Flu Pandemic, the Anti-Mask League of San Francisco Formed to Protest PPE https://www.mentalfloss.com/article/624477/san-franciscos-anti-mask-league-during-1918-flu
- ‘Bug Zapper’ uses UV-C light to enable the sterilization and reuse of N95 masks https://scienmag.com/bug-zapper-uses-uv-c-light-to-enable-the-sterilization-and-reuse-of-n95-masks/
PCI Compliance and Payments
News and announcements relating to Payment Security, PCI, Card Brands, Payments, Payment Malware and Fraud.
-
Updated FAQs
- 1339 https://pcissc.secure.force.com/faq/articles/Frequently_Asked_Question/Are-POI-devices-with-only-PTS-approved-firmware-i-e-no-additional-software-eligible-for-use-in-a-PCI-P2PE-solution
- 1367 https://pcissc.secure.force.com/faq/articles/Frequently_Asked_Question/Can-PCI-listed-P2PE-v2-0-applications-be-used-in-PCI-P2PE-v3-solutions-components
- 1368 https://pcissc.secure.force.com/faq/articles/Frequently_Asked_Question/Can-PCI-listed-P2PE-v3-applications-be-used-in-PCI-P2PE-v2-listed-solutions-components
- 1369 https://pcissc.secure.force.com/faq/articles/Frequently_Asked_Question/Does-PCI-P2PE-allow-for-partial-assessments-of-third-parties-with-services-that-will-be-used-in-one-or-more-P2PE-solutions
- 1457 https://pcissc.secure.force.com/faq/articles/Frequently_Asked_Question/Are-either-Software-based-PIN-Entry-on-COTS-Solutions-or-Contactless-Payments-on-COTS-Solutions-eligible-for-a-P2PE-Solution-approval
- Discover extends EMV liability date for gas stations until April https://www.mobilepaymentstoday.com/news/discover-extends-emv-liability-date-for-gas-stations-until-april/
- Visa Seeks Patent On System To Turn Government Currencies Into Digital Blockchain Versions https://www.pymnts.com/blockchain/2020/visa-seeks-patent-digital-blockchain-system/
- PCI Password Requirements: Is It Enough? https://www.datex.ca/blog/pci-password-requirements-is-it-enough
Breaches / Ransomware / Leaks
Covering breaches, leaks, data exposures, ransomware (as potential breach), and their fallout.
- The Unattributable "db8151dd" Data Breach https://www.troyhunt.com/the-unattributable-db8151dd-data-breach/ - 23M accounts added to HIBP https://haveibeenpwned.com/PwnedWebsites#db8151dd
- Brit defense contractor hacked, up to 100,000 past and present employees https://www.theregister.co.uk/2020/05/15/interserve_breach/
- Hackers steal information on up to 100,000 Interserve employees https://www.databreaches.net/hackers-steal-information-on-up-to-100000-interserve-employees/
- Personal info on over 12,000 people leaked after Nikkei comes under cyberattack https://www.databreaches.net/personal-info-on-over-12000-people-leaked-after-nikkei-comes-under-cyberattack/
- Latest N.S. privacy breach reveals names, medical conditions, sexual abuse details https://www.cbc.ca/news/canada/nova-scotia/nova-scotia-government-saying-little-privacy-breach-1.5566936
- Security Firm claims to have discovered ‘Huge security breach at European Parliament’ that Parliament denies https://www.databreaches.net/security-firm-claims-to-have-discovered-huge-security-breach-at-european-parliament-that-parliament-denies-is-theirs/
- Stop & Shop Warns Customers Of Potential Data Security Issue At Five Stores https://www.databreaches.net/stop-shop-warns-customers-of-potential-data-security-issue-at-five-stores/
- Wright County notifies residents of 2019 email hack https://www.databreaches.net/wright-county-notifies-residents-of-2019-email-hack-covid-19-response-somewhat-delayed-notification/
- Hackers hit A-list law firm of Lady Gaga, Drake and Madonna https://www.bbc.co.uk/news/technology-52632729, demand $42M of celebrity law firm and threaten to publish dirt on Trump https://www.databreaches.net/multi-millions-sodinokibi-attackers-demand-42-million-of-celebrity-law-firm-and-untold-amount-not-to-publish-dirt-they-claim-to-have-on-president-trump/
- (Update1) The Palm Beach County School District suffers massive pwd breach after second grader hacks them https://www.databreaches.net/the-palm-beach-county-school-district-suffers-massive-pwd-breach-after-second-grader-hacks-them/
- Aeries Student Information System discloses breach https://www.databreaches.net/aeries-student-information-system-discloses-breach/
- Texas Says Court System Was Subject to Ransomware Attack https://www.databreaches.net/texas-says-court-system-was-subject-to-ransomware-attack/
- Pitney Bowes Battles Second Ransomware Attack https://www.bankinfosecurity.com/pitney-bowes-battles-second-ransomware-attack-a-14261
- Ransomware Hit ATM Giant Diebold Nixdorf https://www.databreaches.net/ransomware-hit-atm-giant-diebold-nixdorf/
- Ransomware Attackers Exfiltrate Data From Magellan Health https://www.bankinfosecurity.com/ransomware-attackers-exfiltrate-data-from-magellan-health-a-14277
- ‘Shiny Hunters’ Offers Another 27 Million Records for Sale https://www.bankinfosecurity.com/hacking-group-offers-another-27-million-records-for-sale-report-a-14259
- Chatbooks Confirms Breach After ‘Shiny Hunters’ Sell Data https://threatpost.com/chatbooks-confirms-breach-after-shiny-hunters-sell-data/155646/
Privacy
Articles about privacy related news, risks, and trends.
-
COVID-19 Contact tracing:
- Utah Says No to Apple/Google COVID-19 Tracing; Debuts Startup App https://threatpost.com/utah-apple-google-covid-19-tracing-startup-app/155742/
- Vint Cerf suggests GDPR could hurt coronavirus vaccine development https://www.theregister.co.uk/2020/05/15/vint_cerf_coronavirus_gdpr/
- Iceland had the most-downloaded contact-tracing app for its population size https://www.businessinsider.com/iceland-contact-tracing-not-gamechanger-2020-5
- Governments Shouldn’t Use “Centralized” Proximity Tracking Technology https://www.eff.org/deeplinks/2020/05/governments-shouldnt-use-centralized-proximity-tracking-technology
- EPIC to Argue for Disclosure of FAA Drone Committee Records https://epic.org/2020/05/epic-to-argue-for-disclosure-o-1.html
Laws & Regulations / Standards
News about laws, regulations, and standards affecting security, privacy, technology, and public interest.
- The Very Real Problem of Both Trump and Pence Getting COVID-19 at the Same Time https://www.theatlantic.com/ideas/archive/2020/05/what-if-both-trump-and-pence-get-covid-19/611632/
- US targets Huawei with tighter chip export rules https://www.bbc.co.uk/news/business-52681414
- Senate Narrowly Rejects New Limits on Internet Surveillance https://www.securityweek.com/senate-narrowly-rejects-new-limits-internet-surveillance
- FTC Assessing Whether Its Health Data Breach Rule Is Stale https://www.bankinfosecurity.com/ftc-assessing-whether-its-health-data-breach-rule-stale-a-14260
- Another California Data Privacy Law https://www.schneier.com/blog/archives/2020/05/another_califor.html
- The LawBytes Podcast, Episode 50: Ariel Katz on the Long-Awaited York University v. Access Copyright Ruling https://www.michaelgeist.ca/2020/05/lawbytes-podcast-episode-50/
Defense / Techniques / Solutions
Covering developments and opportunities that may help improve security.
- Paying Ransomware Crooks Doubles Clean-up Costs https://threatpost.com/paying-ransomware-crooks-doubles-clean-up-costs-report/155767/
- Mastercard Provides Free Cybersecurity Tools for Small Businesses in Canada https://www.newswire.ca/news-releases/mastercard-provides-free-cybersecurity-tools-for-small-businesses-in-canada-863853511.html
- Windows 10 has a secret network packet sniffer — here’s where to find it and how to use it https://betanews.com/2020/05/18/windows-10-secret-network-packet-monitor/
- Microsoft Adds DNS-Over-HTTPS Support for Windows 10 Insiders https://threatpost.com/microsoft-dns-over-https-windows-10/155746/
- Microsoft and Intel project converts malware into images before analyzing it https://www.zdnet.com/article/microsoft-and-intel-project-converts-malware-into-images-before-analyzing-it/
- Quantifying the Security Cost of Migrating Protocols to Practice https://eprint.iacr.org/2020/573
- RSA presentation on Crypto-Agility - being ready for the next crypto-changes https://www.youtube.com/watch?v=8pGJVTekDyM
- How to Avoid Spam—Using Disposable Contact Information https://www.wired.com/story/avoid-spam-disposable-email-burner-phone-number/
- How to see if an app is spying on you https://www.comparitech.com/blog/vpn-privacy/app-spying-on-you/
- Google Chrome ad update will save users' battery life and data https://www.independent.co.uk/life-style/gadgets-and-tech/news/google-chrome-update-battery-life-data-network-usage-a9516016.html
- CISSP Comparable to U.K. Master’s Degree Standard https://blog.isc2.org/isc2_blog/2020/05/cissp-comparable-to-uk-masters-degree-standard.html vs.
- Someone with a lesser opinion, that CISSP is at most equivalent to a 2-year associates degree https://blog.erratasec.com/2020/05/cissp-is-at-most-equivalent-to-2-year.html
Bugs / Design Flaws / Vulnerabilities / Research
Articles about newly discovered vulnerabilities and research.
- Defcon and Blackhat are Canceled https://www.wired.com/story/defcon-is-canceled/
- Patch or Perish: Nation-State Hacker Edition https://www.bankinfosecurity.com/patch-or-perish-nation-state-hacker-edition-a-14275
- Thunderspy: Thunderbolt Flaws Expose Millions of PCs to Hands-On Hacking - it’s not scary, and what to do about it https://arstechnica.com/information-technology/2020/05/thunderspy-what-is-is-why-its-not-scary-and-what-to-do-about-it/ and https://www.wired.com/story/thunderspy-thunderbolt-evil-maid-hacking/
- Patch Tuesday Revisited - CVE-2020-1048 isn't as "Medium" as MS Would Have You Believe https://isc.sans.edu/diary.html?storyid=26124 and https://krebsonsecurity.com/2020/05/microsoft-patch-tuesday-may-2020-edition/
- iOS XML Bug - Why XML is ripe for insecurity and the problem of multiple libraries https://www.schneier.com/blog/archives/2020/05/ios_xml_bug.html
- PrintDemon vulnerability impacts all Windows versions https://www.zdnet.com/article/printdemon-vulnerability-impacts-all-windows-versions/
- Vulnerability Spotlight: Remote code execution vulnerabilities in Adobe Acrobat Reader https://blog.talosintelligence.com/2020/05/vulnerability-spotlight-remote-code.html
- 'Smart' Factories Could Face Unique Attacks https://www.bankinfosecurity.com/smart-factories-could-face-unique-attacks-report-a-14280
- Estimated 24,000 Android apps expose user data through Firebase blunders https://www.comparitech.com/blog/information-security/firebase-misconfiguration-report/
- Vulnerabilities in 'Page Builder' Plugin Expose 1 Million WordPress Websites https://www.securityweek.com/vulnerabilities-page-builder-plugin-expose-1-million-wordpress-websites
- Data Leak, Phishing Flaws Disclosed In Oracle iPlanet Web Server https://www.zdnet.com/article/data-leak-phishing-security-flaws-exposed-in-oracle-iplanet-web-server/
- Login with Facebook Bug Earns $20K Bounty https://threatpost.com/login-facebook-bug-20k-bounty/155732/
- A Tesla owner thwarted an attempted carjacking by remotely locking the suspect inside his Model 3 https://www.businessinsider.com/tesla-owner-traps-suspected-thief-locking-model-3-iphone-app-2020-5
Hacking / Malware / Cybercrime / Exploitation
News covering active trends and events.
-
COVID-19 Crime and Cybercrime:
- Why The Largest Cyberattack In History Will Happen Within Six Months https://www.forbes.com/sites/stephenmcbride1/2020/05/14/why-the-largest-cyberattack-in-history-will-happen-within-six-months/
- 'Security Incident' Knocks UK's ARCHER Supercomputer Offline https://www.bankinfosecurity.com/security-incident-knocks-uks-archer-supercomputer-offline-a-14290
- US Says Chinese Hacking Vaccine Research https://www.securityweek.com/us-says-chinese-hacking-vaccine-research-reports
- New US Electronic Warfare Platform https://www.schneier.com/blog/archives/2020/05/new_us_electron.html
- Supercomputers hacked across Europe to mine cryptocurrency https://www.zdnet.com/article/supercomputers-hacked-across-europe-to-mine-cryptocurrency/
- 'Ramsay' Espionage Framework Can Exfiltrate Data From Air-Gapped Networks https://www.securityweek.com/ramsay-espionage-framework-can-exfiltrate-data-air-gapped-networks
- HTTP Status Codes Command This Malware How to Control Hacked Systems https://thehackernews.com/2020/05/malware-http-codes.html
- Accesss to 43K ervers for sale https://www.zdnet.com/article/a-cybercrime-store-is-selling-access-to-more-than-43000-hacked-servers
- There's Norway you're going to believe this: Government investment fund conned out of $10m in cyber-attack https://www.theregister.co.uk/2020/05/14/norway_investment_fund_hack/
- Vegas woman charged with running ID theft lab https://www.databreaches.net/vegas-woman-charged-with-running-id-theft-lab/
- Old School)Suspects ripped ATM out of Brampton grocery store with long cable https://globalnews.ca/news/6933732/atm-theft-brampton-grocery-store/
- On Marcus Hutchins malware author and WannaCry[pt] defender https://www.schneier.com/blog/archives/2020/05/on_marcus_hutch.html
Other Security / Risk
Articles covering other types of risks.
-
COVID-19 Other risks and impact:
- Burnout in health care workers during COVID-19 https://scienmag.com/infecting-the-mind-burnout-in-health-care-workers-during-covid-19/
- The Amazon Could Easily Be The Next Source of Coronaviruses https://www.sciencealert.com/amazon-could-be-next-virus-hot-zone-scientist
- Linux not Windows: Why Munich is shifting back from Microsoft to open source – again https://www.zdnet.com/article/linux-not-windows-why-munich-is-shifting-back-from-microsoft-to-open-source-again/
- “Shadowland”: A New Project From The Atlantic on the Power and Danger of Conspiracy https://www.theatlantic.com/press-releases/archive/2020/05/shadowland-on-the-power-and-danger-of-conspiracy/611641/
- U.S. Government Agencies Warn That Internet Voting Poses Significant Security Risk https://epic.org/2020/05/us-government-agencies-warn-th.html
- Putin Is Well on His Way to Stealing the Next Election https://www.theatlantic.com/magazine/archive/2020/06/putin-american-democracy/610570/
- A Giant Piece of a Chinese Rocket Just Smashed Down to Earth in an Uncontrolled Fall https://www.sciencealert.com/uncontrolled-descent-of-chinese-rocket-represents-largest-fall-from-orbit-in-decades
- The real Lord of the Flies: what happened when six boys were shipwrecked for 15 months https://www.theguardian.com/books/2020/may/09/the-real-lord-of-the-flies-what-happened-when-six-boys-were-shipwrecked-for-15-months
Off-Topic / Science & Tech / Lighter Side
A variety of scientific, technical, historical, and more light-hearted news.
- Scientists successfully develop ‘heat resistant’ coral to fight bleaching https://scienmag.com/scientists-successfully-develop-heat-resistant-coral-to-fight-bleaching/
- Physicists Just Built The First Working Prototype Of A 'Quantum Radar' https://www.sciencealert.com/physicists-are-investigating-ways-to-use-entanglement-as-a-fancy-new-kind-of-radar
- Nasa makes landmark announcement about plan to return to the moon https://www.independent.co.uk/life-style/gadgets-and-tech/news/nasa-moon-mission-artemis-accords-us-china-a9517091.html
- Lunar Gateway Could be Built With the Falcon Heavy https://www.universetoday.com/146008/lunar-gateway-could-be-built-with-the-falcon-heavy/
- Was Betelgeuse Formed by Merging Stars? https://www.universetoday.com/146071/was-betelgeuse-formed-by-merging-stars/
- Astronomers Make Incredibly Rare Detection of Earth-Like Planet 25,000 Light-Years Away https://www.sciencealert.com/a-rare-super-earth-planet-has-been-found-almost-25-000-light-years-away