Accountant ordered to pay ex-employer after bossware shows “time theft”

Categories: News

Tags: Karlee Besse

Tags: Reach CPA

Tags: time theft

Tags: bossware

Tags: TimeCamp

Tags: Court Order Interest Act

Tags: COIA

Tags: Civil Resolution Tribunal

Tags: CRT

Bossware helped an employer fire an accountant for not working during work time. The accountant sued for wrongful termination.

(Read more…)

The post Accountant ordered to pay ex-employer after bossware shows “time theft” appeared first on Malwarebytes Labs.

Read more

Law enforcement app SweepWizard leaks data on crime suspects

Categories: News

Tags: Erik McCauley

Tags: SweetWizard

Tags: law enforcement app

Tags: ODIN Intelligence

Tags: Wired

SweepWizard, an app designed to assist law enforcement is causing a bit of trouble, was found inadvertently leaking sweeping data for years.

(Read more…)

The post Law enforcement app SweepWizard leaks data on crime suspects appeared first on Malwarebytes Labs.

Read more

Google to support the use of Rust in Chromium

Categories: News

Tags: Google

Tags: Chromium

Tags: Rust

Tags: memory safety

Tags: rule of two

Google has announced that it will support the use of third-party Rust libraries in Chromium which is a step forward in memory safety for the browsers.

(Read more…)

The post Google to support the use of Rust in Chromium appeared first on Malwarebytes Labs.

Read more

A week in security (January 9—15)

Categories: News

Tags: AWIS

Tags: weekly blog roundup

Tags: week in security

Tags: Slack

Tags: GitHub

Tags: Magecart

Tags: Microsoft

Tags: Pokemon NFT

Tags: Facebook

Tags: Instagram

Tags: Snapchat

Tags: TikTok

Tags: YouTube

Tags: Google

Tags: Meta

Tags: identity theft

Tags: Maternal & Family Health Services

Tags: 2023 predictions

Tags: Royal Mail

Tags: K-12 security

Tags: K-12

Tags: WhatsApp

Tags: NSO Group

Tags: Department of Interior

Tags: weak passwords

Tags: Vice Society

Tags: ransomware. Vice Society ransomware

The most interesting security related news from the week of January 9—15.

(Read more…)

The post A week in security (January 9—15) appeared first on Malwarebytes Labs.

Read more

Timely patching is good, but sometimes it’s not enough

Categories: News

Categories: Ransomware

Tags: Lorenz

Tags: ransomware

Tags: CVE-2022-29499

Tags: Mitel

Tags: backdoor

Tags: web shell

A recent case-study showed once again that timely patching is important, but it’s not a silver bullet for stopping ransomware.

(Read more…)

The post Timely patching is good, but sometimes it’s not enough appeared first on Malwarebytes Labs.

Read more

Multiple schools hit by Vice Society ransomware attack

Categories: News

Tags: ransomware

Tags: high society

Tags: compromise

Tags: school

Tags: schools

Tags: learning

Tags: documents

Tags: data

Tags: leak

We take a look at reports of 14 schools being compromised by ransomware group Vice Society.

(Read more…)

The post Multiple schools hit by Vice Society ransomware attack appeared first on Malwarebytes Labs.

Read more

US Department of the Interior’s passwords “easily cracked”

Categories: News

Tags: US department of the interior

Tags: password

Tags: hashes

Tags: cracking

Tags: requirements

Tags: MFA

A recent audit cracked 21 percent of the department’s passwords.

(Read more…)

The post US Department of the Interior’s passwords “easily cracked” appeared first on Malwarebytes Labs.

Read more

WhatsApp lawsuit against NSO Group greenlit by Supreme Court

Categories: News

Tags: Pegasus

Tags: spyware

Tags: Pegasus spyware

Tags: NSO Group

Tags: NSO

Tags: Apple

Tags: WhatsApp

Tags: Meta

Tags: Foreign Sovereign Immunity Act

The US Supreme Court essentially gave Meta’s WhatsApp the go ahead to pursue their case against Pegasus’s NSO Group.

(Read more…)

The post WhatsApp lawsuit against NSO Group greenlit by Supreme Court appeared first on Malwarebytes Labs.

Read more

Update now! Patch Tuesday January 2023 includes one actively exploited vulnerability

Categories: Exploits and vulnerabilities

Categories: News

Tags: patch Tuesday

Tags: CVE-2023-21674

Tags: APLC

Tags: CVE-2023-21743

Tags: Sharepoint

Tags: CVE-2023-21563

Tags: BitLocker

The second Tuesday of the year brings us many updates, including one for an actively exploited vulnerability that could lead to elevation of privileges

(Read more…)

The post Update now! Patch Tuesday January 2023 includes one actively exploited vulnerability appeared first on Malwarebytes Labs.

Read more