Internet-connected Peloton workout equipment is impacted by multiple security risks, such as having USB debugging enabled.
The post Multiple Security Issues Identified in Peloton Fitness Equipment appeared first on SecurityWeek.
Internet-connected Peloton workout equipment is impacted by multiple security risks, such as having USB debugging enabled.
The post Multiple Security Issues Identified in Peloton Fitness Equipment appeared first on SecurityWeek.
New US cyber program will label smart devices that are considered safer and less vulnerable to attacks.
The post White House Unveils Cybersecurity Labeling Program for Smart Devices appeared first on SecurityWeek.
Weekly cybersecurity news roundup that provides a summary of noteworthy stories that might have slipped under the radar for the week of June 19, 2023.
The post In Other News: Microsoft Win32 App Isolation,Tsunami Hits Linux Servers, ChatGPT Credentials Exposed on Dark Web appeared first on SecurityWeek.
Enphase Energy has ignored CISA requests to fix remotely exploitable vulnerabilities in Enphase products.
The post Enphase Ignores CISA Request to Fix Remotely Exploitable Flaws appeared first on SecurityWeek.
New research conducted by IOActive shows the potential of electromagnetic fault injection (EMFI) attacks against drones.
The post New Research Shows Potential of Electromagnetic Fault Injection Attacks Against Drones appeared first on SecurityWeek.
The FTC charged Amazon-owned Ring with failing to implement basic protections to stop hackers or employees from accessing people’s devices or accounts.
The post Amazon Settles Ring Customer Spying Complaint appeared first on SecurityWeek.
FDA and CISA notify healthcare providers about a component used by several Illumina medical devices being affected by serious vulnerabilities that can allow remote hacking.
The post FDA, CISA: Illumina Medical Devices Vulnerable to Remote Hacking appeared first on SecurityWeek.
CISA has described and published a set of principles for the development of security-by-design and security-by-default cybersecurity products.
The post CISA Introduces Secure-by-design and Secure-by-default Development Principles appeared first on SecurityWeek.
Hikvision patches CVE-2023-28808, a critical authentication bypass vulnerability that exposes video data stored on its Hybrid SAN and cluster storage products.
The post Critical Vulnerability in Hikvision Storage Solutions Exposes Video Security Data appeared first on SecurityWeek.
An innocent-looking portable speaker can hide a hacking device that launches CAN injection attacks, which have been used to steal cars.
The post Thieves Use CAN Injection Hack to Steal Cars appeared first on SecurityWeek.