Researchers at firmware and hardware security company Eclypsium have identified several potentially serious vulnerabilities in baseboard management controller (BMC) firmware made by AMI (American Megatrends) and used by some of the world’s biggest server manufacturers.
Apple Faces Critics Over Its Privacy Policies
Apple presents itself as a white knight on the subject of privacy, but critics say its own advertising ambitions are built on anti-competitive practices.
Two developers going by the name ‘Mysk’ claimed last month that Apple was tracking users’ every tap on the App Store, with no way of disabling the function.
SIM Swapper Who Stole $20 Million Sentenced to Prison
Nicholas Truglia, of Florida, was sentenced to 18 months in prison last week for stealing more than $20 million in a SIM swapping scheme.
According to the indictment, in January 2018, Truglia, now aged 25, participated in a scheme to hack into online accounts in an effort to steal cryptocurrency. He pleaded guilty in late 2021.
Balance Theory Scores Seed Funding for Secure Workspace Collaboration
Balance Theory, a seed-stage startup working on technology to help security teams collaborate and manage data flows securely, has closed a $3 million funding round.
The Columbia, Maryland-based Balance Theory said the early-stage investment was led by DataTribe with participation from TEDCO.
Redigo: New Backdoor Targeting Redis Servers
Researchers at cloud security company Aqua Security are raising alarm on a newly identified backdoor targeting Redis servers.
Critical Vulnerabilities Force Twitter Alternative Hive Social Offline
Social media platform Hive Social has taken its servers offline after security researchers identified and reported critical vulnerabilities in its code.
US Agencies Told to Assess IoT/OT Security Risks to Boost Critical Infrastructure Protection
The US Government Accountability Office (GAO) has urged several federal agencies to conduct cybersecurity-related assessments in an effort to improve the protection of certain critical infrastructure sectors.
Cybersecurity M&A Roundup: 35 Deals Announced in November 2022
Google Patches Ninth Chrome Zero-Day of 2022
Google on Friday announced an emergency Chrome 108 update to patch a zero-day vulnerability in the browser, the ninth to be fixed this year.
Rackspace Shuts Down Hosted Exchange Systems Due to Security Incident
Cloud company Rackspace is investigating a cybersecurity incident that forced it to shut down its Hosted Exchange environment.













