Global Cyber News Digest

Daily News Digest

Stay current on the global cyber threat landscape and industry developments with CCOE’s daily digest and library of cybersecurity news and articles.

  • Ring updates privacy features in wake of data breach
    • Ring, the Amazon-owned company that provides home security services, is updating its privacy features in the wake of a recent data breach.
    • Ring says new privacy and security settings have been developed and will be added to users' dashboards in the weeks ahead. The new security features should be available for both iOS and Android users by the end of the month.

      Consumer Affairs - Mark Huffman | January 7, 2020
    consumeraffairs.comJanuary 7, 2020
  • The Iran Cyber Warfare Threat: Everything You Need To Know
    • When news emerged that Iranian general Qassem Soleimani had been killed in a U.S. airstrike on January 3, speculation about an imminent cyberattack was rife.
    • And for a short moment in the early hours of Sunday, it seemed like the first Iranian-led cyberattack might have arrived.
    • The Federal Depository Library Program website had been defaced by hackers claiming to be working for the Iranian government.
    • But there was no proof to link the hackers to Iran.

      Forbes - Kate O'Flaherty | January 6, 2020
    forbes.comJanuary 6, 2020
  • The types of data you really don't want stolen in a hack
    • About a year after Equifax's monster security breach that compromised 147 million people's data, more news came out about exactly how damaging the hack was for those involved.
    • According to Jason Glassberg, co-founder of Casaba Security, your Social Security number is probably the worst thing to get compromised, and it was the most affected part of the Equifax breach.
    • It's very difficult to get a new Social Security number, though it is possible.
    • According to the Social Security Administration, it "may assign a new Social Security number to you if you are being harassed, abused, or are in grave danger when using the original number, or if you can prove that someone has stolen your number and is using it."

      Yahoo! Money - Ethan Wolff-Mann | January 6, 2020
    money.yahoo.comJanuary 6, 2020
  • After data breach, should Wawa bosses get the Target treatment?
    • What happens to executives of retail companies such as Wawa Inc. when they acknowledge a data breach that exposed customer data that should have stayed private?
    • Pennsylvania, where Wawa is based, has a more conditional data breach notification requirement: A company has to tell customers when it decides the loss of personal information is likely to "cause loss or injury" _ which potentially gave Wawa more time to delay disclosure, according to a data-management company founder who asked that he not be identified by name because he has business ties to Wawa.

      Reading Eagle - Joseph DiStefano | January 6, 2020
    readingeagle.comJanuary 6, 2020
  • Accused of spying, popular Mideast app ToTok back on Google Play
    • The popular UAE-developed mobile application ToTok has returned to the Google Play Store after it was removed on claims it was being used for government spying, the company said Saturday.
    • Google and Apple removed the app from their online marketplaces last month after the New York Times reported ToTok allowed the UAE government to track the conversations, movements and other details of people who installed it on their phone.

      Asia One | January 6, 2020
    asiaone.comJanuary 6, 2020
  • New phishing scam revealed, using date-based domains
    • A new variant of this attack seems to be using date-based domain names.
    • The message reads "EE: We were unable to process your latest bill. In order to avoid fees, update your billing information via https://ee.co.uk.billing-update-jan02.info"

      Reclaim the Net - Carl Sinclair | January 5, 2020
    reclaimthenet.orgJanuary 5, 2020
  • US on high alert for Iran-backed cyber attacks
    • The US public and private sector are on high alert for cyber retaliation from Iranian state-backed hackers following the killing of the country's top military commander Qassem Soleimani in a US drone strike last week.
    • Government officials and cyber security experts are anticipating this may come in the form of cyber attacks focused on disrupting anything from corporate and municipal IT systems to transit, logistics, healthcare or US military facilities.

      Financial Times - Hannah Murphy | January 5, 2020
    ft.comJanuary 5, 2020
  • Data breach alert: Popular restaurant chains hit by card-stealing malware
    • When hackers attack a business, they're often after data that can put money in their pockets.
    • Typically, this comes in the form of the credit card data that passes through a business's point of sale system (POS) every day.
    • According to new reports from BleepingComputer, POSs belonging to the Landry's restaurant group were targeted in a large, coordinated malware attack between March 2019 and October 2019.

      Komando - James Gelinas | January 2, 2020
    komando.comJanuary 2, 2020
  • Travelex forced to take down website after cyber-attack
    • Currency specialist says no customer data appears to have been compromised by virus.
    • Some observers pointed out on Twitter that, prior to news of the virus emerging, Travelex had posted messages on some of its websites claiming the reason services were unavailable was "due to planned maintenance".

      The Guardian - Rupert Jones | January 2, 2020
    theguardian.comJanuary 2, 2020
  • The California Consumer Privacy Act officially takes effect today
    • California's much-debated privacy law officially takes effect today, a year and a half after it was passed and signed -- but it'll be six more months before you see the hammer drop on any scofflaw tech companies that sell your personal data without your permission.
    • The California Consumer Privacy Act, or CCPA, is a state-level law that requires, among other things, that companies notify users of the intent to monetize their data, and give them a straightforward means of opting out of said monetization.

      TechCrunch - Devin Coldewey | January 1, 2020
    techcrunch.comJanuary 1, 2020