Geek-Guy.com

Category: North America

Honda and Acura EV owners to gain access to Tesla Superchargers this June

Honda and its luxury brand, Acura, are set to join the growing list of automakers providing EV owners access to Tesla’s Supercharger network in North America. Starting in June, owners of the Honda Prologue and Acura ZDX electric vehicles will be able to charge at Tesla’s stations. Those EVs are built with CCS charging ports…

TikTok to start pushing Amber Alerts to users’ For You feeds

TikTok is partnering with the National Center for Missing & Exploited Children (NCMEC) to bring real-time Amber Alerts directly to users’ For You feeds in the United States, the company announced on Thursday. With this new feature, if an Amber Alert is activated by law enforcement and you are in the designated search area, the…

Capital One hacker Paige Thompson got too light a sentence, appeals court rules

A federal appeals court overruled a district court judge’s sentence for Capital One hacker Paige Thompson this week, deciding that the sentence of five years’ probation plus time served was too lenient. Describing the hack as the “second largest data breach in the United States at the time, causing tens of millions of dollars in…

Google now lets kids use Google Wallet for in-store payments in select countries

Google announced on Wednesday that kids with Android phones can now tap to pay at stores using Google Wallet in the United States, United Kingdom, Australia, Spain, and Poland. Parents and guardians in these countries can now allow their children to access digital payments on their Android devices with supervision. Kids can also use Google…

Elon Musk’s DOGE leadership likely violates constitution’s appointments clause, judge says

Elon Musk’s role overseeing the Department of Government Efficiency is likely a violation of the United States constitution’s appointments clause, a federal judge wrote Tuesday. Theodore Chuang, a judge in the U.S. District Court for the District of Maryland, wrote in an opinion there is more than enough evidence — mostly from statements made by…

White House exempts cyber pros from mass layoffs; Judge reinstates CISA firings

The tide may be turning for US federal cybersecurity professionals who have faced job cuts or the threat thereof at the hand of Elon Musk’s Department of Government Efficiency (DOGE). Last week the US District Court of Maryland ordered the Trump administration to rehire federal government employees previously fired via DOGE initiatives, including probationary employees…

Backblaze to Deploy Services at Cologix Toronto Data Center

Network-neutral data center provider, Cologix, recently announced that Backblaze, a cloud storage company, will be deploying its services at Cologix’s TOR3 digital edge data center in Toronto. Partnership brings data storage compliant with Canadian regulations The collaboration on the deployment will feature “a high-capacity setup with dedicated power and a direct fiber connection to Cologix’s…

California’s legal push on geolocation data collection must take aim at the right targets, privacy experts say

The attorney general for California announced this week a wide-ranging investigation into the way companies collect, process and use consumer location data. The investigation will include scrutiny of advertising networks, mobile app providers and data brokers whose practices may violate the California Consumer Privacy Act (CCPA), one of the strictest state privacy laws in the…

Water utilities would get cybersecurity boost under bipartisan Senate bill

Small water and wastewater utilities would get a boost to their cybersecurity defenses under a bipartisan Senate bill that a pair of lawmakers re-introduced Thursday. Sens. Catherine Cortez Masto, D-Nev., and Mike Rounds, R-S.D., are taking another swing at the Cybersecurity for Rural Water Systems Act after the legislation stalled out in the 118th Congress.…

Meta is launching Community Notes in the US next week

Next week, Meta will begin one of the company’s most significant overhauls ever for how it fact-checks information on its platforms. On March 18, Meta will start releasing its version of Community Notes for Facebook, Instagram, and Threads users in the United States. The program copies a crowdsourced fact-checking system that Twitter unveiled in 2021…

U.S. Secret Service Seizes Russian Garantex Crypto Exchange Website

A coalition of international law enforcement agencies has seized the website associated with the cryptocurrency exchange Garantex (“garantex[.]org”), nearly three years after the service was sanctioned by the U.S. Treasury Department in April 2022. “The domain for Garantex has been seized by the United States Secret Service pursuant to a seizure warrant obtained by the…

It’s Tax Season — The Perfect Time for Trump to Sell This “Critical” IRS Computing Center

The Trump administration is planning to sell a major IRS computing center crucial to processing the tax returns of millions of Americans — just in time for tax season. The IRS Enterprise Computing Center in Martinsburg, West Virginia, is included on a list of over 400 “empty and underutilized” federal properties marked for liquidation. It…

February M&A Roundup: Latest Moves Impacting the Channel

Organizations have kept the mergers and acquisitions (M&A) market alive at a steady pace to expand their capabilities and services. In February, several leaders in the channel joined forces to provide new and improved services. This latest recap on the M&A market features a number of strategic acquisitions and a merger uniquely positioned to propel…

Over 4,000 ISP IPs Targeted in Brute-Force Attacks to Deploy Info Stealers and Cryptominers

Internet service providers (ISPs) in China and the West Coast of the United States have become the target of a mass exploitation campaign that deploys information stealers and cryptocurrency miners on compromised hosts. The findings come from the Splunk Threat Research Team, which said the activity also led to the delivery of various binaries that…

Notorious Malware, Spam Host “Prospero” Moves to Kaspersky Lab

One of the most notorious providers of abuse-friendly “bulletproof” web hosting for cybercriminals has started routing its operations through networks run by the Russian antivirus and security firm Kaspersky Lab, KrebsOnSecurity has learned. Security experts say the Russia-based service provider Prospero OOO (the triple O is the Russian version of “LLC”) has long been a…

Army soldier linked to Snowflake attack spree allegedly tried to sell data to foreign spies

U.S. authorities say a 21-year-old U.S. Army soldier attempted to sell stolen sensitive information to a foreign intelligence service as part of a broader effort to extort victims and leak call records of high-ranking public officials. In November while on active duty, Cameron Wagenius made multiple attempts to extort $500,000 from a major telecommunications company…

Microsoft IDs developers behind alleged generative AI hacking-for-hire scheme

Microsoft has identified individuals from Iran, China, Vietnam and the United Kingdom as primary players in an alleged international scheme to hijack and sell Microsoft accounts that could bypass safety guidelines for generative AI tools. In December, Microsoft petitioned a Virginia court to seize infrastructure and software from 10 unnamed individuals who the company claims…

U.S. Soldier Charged in AT&T Hack Searched “Can Hacking Be Treason”

A U.S. Army soldier who pleaded guilty last week to leaking phone records for high-ranking U.S. government officials searched online for non-extradition countries and for an answer to the question “can hacking be treason?” prosecutors in the case said Wednesday. The government disclosed the details in a court motion to keep the defendant in custody…

New Linux Malware ‘Auto-Color’ Grants Hackers Full Remote Access to Compromised Systems

Universities and government organizations in North America and Asia have been targeted by a previously undocumented Linux malware called Auto-Color between November and December 2024, according to new findings from Palo Alto Networks Unit 42. “Once installed, Auto-color allows threat actors full remote access to compromised machines, making it very difficult to remove without specialized

Trump 2.0 Brings Cuts to Cyber, Consumer Protections

One month into his second term, President Trump’s actions to shrink the government through mass layoffs, firings and withholding funds allocated by Congress have thrown federal cybersecurity and consumer protection programs into disarray. At the same time, agencies are battling an ongoing effort by the world’s richest man to wrest control over their networks and…

Former NSA, Cyber Command chief Paul Nakasone says U.S. falling behind its enemies in cyberspace

The United States is falling “increasingly behind” its adversaries in cyberspace, a former Cyber Command and National Security Agency boss said Saturday. Speaking at the DistrictCon cybersecurity conference in Washington, D.C., retired Gen. Paul Nakasone said that “our adversaries are continuing to be able to broaden the spectrum of what they’re able to do to…

YouTube reportedly launching new ‘premium lite’ tier soon

YouTube is close to announcing a new lower-priced “premium lite” version of its subscription service, Bloomberg reports. The new tier is expected to launch in the United States, Australia, Germany, and Thailand “soon.” The tier will give users access to YouTube’s library of podcasts and how-to clips without ads, Bloomberg notes. Premium lite will be…

Mac users duped with FrigidStealer posing as browser updates

Hackers are seen dropping a new macOS infoStealer, FrigidStealer, on unsuspecting systems in a web inject campaign that uses fake browser updates to lure victims. Researchers at Proofpoint reported observing two new threat actors, TA2726 and TA2727, running this campaign to steal sensitive browser data. “Proofpoint identified and named two new cybercriminal threat actors operating…

Got a Microsoft Teams invite? Storm-2372 gang exploit device codes in global phishing attacks

Security experts have warned that a cybercriminal group has been running a malicious and inventive phishing campaign since August 2024 to break into organizations across Europe, North America, Africa, and the Middle East. Read more in my article on the Tripwire State of Security blog.

The IRS Is Buying an AI Supercomputer From Nvidia

As the Trump administration and its cadre of Silicon Valley machine-learning evangelists attempt to restructure the administrative state, the IRS is preparing to purchase advanced artificial intelligence hardware, according to procurement materials reviewed by The Intercept. With Elon Musk’s so-called Department of Government Efficiency installing itself at the IRS amid a broader push to replace…

Getaround abruptly shuts down US car-sharing operations

Getaround, a company that helps vehicle owners rent out their cars, trucks and SUVs to other peers, is shutting down its U.S. operations one year after cutting 30% of its North American workforce as part of a restructuring. Its HyreCar business, which it acquired in 2023 for $9.45 million, is also closing. The company said…

HPE Files Answer to DOJ Complaint on Juniper Acquisition

Hewlett Packard Enterprises (HPE) has responded to the U.S. Department of Justice (DOJ) by filing an answer to the department’s complaint seeking to block HPE’s acquisition of Juniper Networks, a networking products maker. According to the answer, HPE denies “each and every allegation” that the DOJ has levied against the IT vendor. Response says blocking…

HPE Files Answer to DOJ Complaint on Juniper Acquisition

Hewlett Packard Enterprises (HPE) has responded to the U.S. Department of Justice (DOJ) by filing an answer to the department’s complaint seeking to block HPE’s acquisition of Juniper Networks, a networking products maker. According to the answer, HPE denies “each and every allegation” that the DOJ has levied against the IT vendor. Response says blocking…

Authorities seize Phobos and 8Base ransomware servers, arrest 4 suspects

Law enforcement agencies from 14 countries collaborated in an investigation against the related Phobos and 8Base ransomware operations, arresting four suspects and seizing 27 servers, including the data leak and ransom negotiation websites. On Tuesday, the US Department of Justice also announced indictments against two Russian nationals who operated the “8Base” and “Affiliate 2803” affiliate…

Microsoft powers AI ambitions with 400 MW solar purchase

Microsoft has added another 389 megawatts of renewable power to its portfolio as the tech giant scrambles to meet the power demands required to match its AI ambitions.  The additional renewable power spans three solar projects developed by EDP Renewables North America — two in southern Illinois and one outside Austin, Texas. Microsoft is buying…

Bipartisan Senate bill would strengthen cybercrime penalties

Cybercrimes could be punished more harshly under a new bill from a pair of senators that seeks to amend U.S. criminal code on computer fraud. The Cyber Conspiracy Modernization Act from Sens. Mike Rounds, R-S.D., and Kirsten Gillibrand, D-N.Y., would modify the Computer Fraud and Abuse Act (CFAA) to establish a specific penalty for conspiracy…

U.S. sanctions bulletproof hosting provider for supplying LockBit infrastructure

A consortium of U.S., Australian and U.K. officials announced coordinated sanctions Tuesday against Zservers, a Russia-based bulletproof hosting provider. The action targets the company for its role in facilitating ransomware attacks, most notably those conducted by the LockBit ransomware-as-a-service (RaaS) group. Officials detailed that Zservers has long been linked to cybercriminal forums, where it has…

ICE Wants to Know If You’re Posting Negative Things About It Online

Amid anger and protest over the Trump administration’s plan to deport millions of immigrants, U.S. Immigration and Customs Enforcement plans to monitor and locate “negative” social media discussion about the agency and its top officials, according to contract documents reviewed by The Intercept. Citing an increase in threats to ICE agents and leadership, the agency…

Teen on Musk’s DOGE Team Graduated from ‘The Com’

Wired reported this week that a 19-year-old working for Elon Musk‘s so-called Department of Government Efficiency (DOGE) was given access to sensitive US government systems even though his past association with cybercrime communities should have precluded him from gaining the necessary security clearances to do so. As today’s story explores, the DOGE teen is a…

Police arrest teenager suspected of hacking NATO and numerous Spanish institutions

Spain‘s National Police, in a joint operation with the Civil Guard, has arrested an 18-year-old suspected of being the hacker going by aliases including “Natohub,” and known for hacking the computer services of private companies and Spanish institutions such as the Civil Guard, the Ministry of Defense, the National Mint, and the Ministry of Education,…

Lawmakers fear Elon Musk, DOGE not adhering to privacy rules

Congress is getting vocal about the privacy and security implications of Elon Musk and his cohorts at the Department of Government Efficiency accessing federal systems. Democrats on the House Homeland Security Committee said Wednesday DOGE must comply with security and privacy laws as they obtain access to federal systems, something the lawmakers say they don’t…

Barracuda Introduces Updates to Email Protection Solution

Barracuda Networks, Inc. recently announced advancements to Barracuda Email Protection, a solution that provides AI-powered protection against advanced threats. Email security enhancements target complex threats The updates to the email protection solution include flexible deployment options, enhanced security capabilities, and more advancements to make it easier for organizations of varying sizes and IT environments to…

Trump pauses on grants, aid leaves federal cyber programs in state of confusion

A series of Trump administration maneuvers to freeze federal aid has thrown cybersecurity grant programs into doubt for recipients ranging from state governments to small businesses to foreign allies. An Office of Management and Budget memo sent Monday and that went into effect Tuesday directs federal agencies to “temporarily pause all activities related to obligations…

Lucid Gravity SUV owners will gain access to Tesla Superchargers on Jan 31

Owners of the electric Lucid Gravity SUV will gain access to Tesla’s Supercharging network starting January 31.  The Gravity is Lucid’s second vehicle model in its lineup after its flagship Air sedan series, and the first to be built with charge ports compatible with Tesla’s NACS (North American Charging Standard) charge plugs. Lucid Air owners will…

A Tumultuous Week for Federal Cybersecurity Efforts

Image: Shutterstock. Greg Meland. President Trump last week issued a flurry of executive orders that upended a number of government initiatives focused on improving the nation’s cybersecurity posture. The president fired all advisors from the Department of Homeland Security’s Cyber Safety Review Board, called for the creation of a strategic cryptocurrency reserve, and voided a…

The Pentagon says AI is speeding up its ‘kill chain’

Leading AI developers, such as OpenAI and Anthropic, are threading a delicate needle to sell software to the United States military: make the Pentagon more efficient, without letting their AI kill people. Today, their tools are not being used as weapons, but AI is giving the Department of Defense a “significant advantage” in identifying, tracking,…

TikTok is restoring service in the US

Barely more than 12 hours after TikTok went dark in the United States, the video-sharing app is coming back online. “In agreement with our service providers, TikTok is in the process of restoring service,” the company said in a statement. “We thank President Trump for providing the necessary clarity and assurance to our service providers…

TikTok is restoring service in the US

Barely more than 12 hours after TikTok went dark in the United States, the video-sharing app is coming back online. “In agreement with our service providers, TikTok is in the process of restoring service,” the company said in a statement. “We thank President Trump for providing the necessary clarity and assurance to our service providers…

TikTok says it will go dark Sunday unless Biden offers ‘definitive statement’

It remains unclear whether TikTok will still be available in US app stores Sunday, with the company claiming that President Joe Biden’s outgoing administration needs to offer “definitive” assurances that it won’t enforce the ban. On Friday, the Supreme Court upheld a law that would effectively ban TikTok in the United States if the app’s…

Treasury sanctions North Korea over remote IT worker schemes

The U.S. Treasury Department announced sanctions Thursday against two individuals and four entities allegedly involved in generating revenue for North Korea through illicit remote IT workforce operations, the latest salvo in ongoing efforts to disrupt financial streams that support Pyongyang’s weapons programs. The sanctions focus on efforts in which North Korea sent thousands of skilled…

CIA nominee tells Senate he, too, wants to go on cyber offense

CIA director nominee John Ratcliffe said during testimony on Capitol Hill that if confirmed, he hopes to develop offensive cyber tools and supports the creation of a cyber-specific deterrence strategy. Ratcliffe, who served as director of national intelligence and in the House of Representatives for Texas, drew a comparison to the concerns over physical, territorial…

CISA’s AI cyber collaboration playbook aims to spur information-sharing

The Cybersecurity and Infrastructure Security Agency is making one last push before the change in administration for increased information sharing between the public and private sectors, releasing an artificial intelligence-focused playbook Tuesday that aims to foster “a unified approach” to handling AI-related cyber threats. The agency’s AI Cybersecurity Collaboration Playbook was developed with the FBI,…

Second Biden cyber executive order directs agency action on fed security, AI, space

A draft cybersecurity executive order would tackle cyber defenses in locations ranging from outer space to the U.S. federal bureaucracy to its contractors, and address security risks embedded in subjects like cybercrime, artificial intelligence and quantum computers. The draft, a copy of which CyberScoop obtained, constitutes one big last stab at cybersecurity in the Biden…

China is reportedly open to Elon Musk acquiring TikTok US

Chinese government officials have reportedly discussed a scenario where ByteDance sells TikTok’s United States arm to Elon Musk, should the Supreme Court uphold the law banning the app on January 19. Bloomberg reports that China would strongly prefer for TikTok to stay under ByteDance’s ownership, but says government officials have considered a sale to Musk…

Trump and others want to ramp up cyber offense, but there’s plenty of doubt about the idea

In recent months, incoming Trump administration national security adviser Mike Waltz and some lawmakers have suggested that in response to Chinese cyber breaches, the United States needs to prioritize taking more aggressive offensive actions in cyberspace rather than emphasizing defense. It’s been said before. And it’s easier said than done. Experts that spoke with reporters…

Microsoft moves to disrupt hacking-as-a-service scheme that’s  bypassing AI safety measures

Microsoft is petitioning a Virginia court to seize software and shut down internet infrastructure that they allege is being used by a group of foreign cybercriminals to bypass safety guidelines for generative AI systems. In a filing with the Eastern District Court of Virginia, Microsoft brought a lawsuit against ten individuals for using stolen credentials…

Mirai Botnet Variant Exploits Four-Faith Router Vulnerability for DDoS Attacks

A Mirai botnet variant has been found exploiting a newly disclosed security flaw impacting Four-Faith industrial routers since early November 2024 with the goal of conducting distributed denial-of-service (DDoS) attacks. The botnet maintains approximately 15,000 daily active IP addresses, with the infections primarily scattered across China, Iran, Russia, Turkey, and the United States.

Delta SkyMiles members can now earn miles riding with Uber, ending its deal with Lyft

Uber announced during CES 2025 a multi-year exclusive partnership with Delta Air Lines that allows SkyMiles members to earn miles when they ride with Uber or order delivery through Uber Eats in the United States. The deal means an end of Delta’s partnership with Lyft. The Uber partnership will launch in the spring, giving Uber…

After UN adoption, controversial cybercrime treaty’s next steps could prove vital

A divisive United Nations cybercrime treaty — one that critics say is a huge danger to human rights and that the United States cautiously agreed to advance — is now in the hands of member nations. The U.N. General Assembly adopted the treaty without a vote last week, leaving ratification to individual states. If the…

Chinese APT Exploits BeyondTrust API Key to Access U.S. Treasury Systems and Documents

The United States Treasury Department said it suffered a “major cybersecurity incident” that allowed suspected Chinese threat actors to remotely access some computers and unclassified documents.  “On December 8, 2024, Treasury was notified by a third-party software service provider, BeyondTrust, that a threat actor had gained access to a key used by the vendor to…

U.S. Army Soldier Arrested in AT&T, Verizon Extortions

Federal authorities have arrested and indicted a 20-year-old U.S. Army soldier on suspicion of being Kiberphant0m, a cybercriminal who has been selling and leaking sensitive customer call records stolen earlier this year from AT&T and Verizon. As first reported by KrebsOnSecurity last month, the accused is a communications specialist who was recently stationed in South…

New HIPAA Rules Mandate 72-Hour Data Restoration and Annual Compliance Audits

The United States Department of Health and Human Services’ (HHS) Office for Civil Rights (OCR) has proposed new cybersecurity requirements for healthcare organizations with an aim to safeguard patients’ data against potential cyber attacks. The proposal, which seeks to modify the Health Insurance Portability and Accountability Act (HIPAA) of 1996, is part of a broader…

Trump asks Supreme Court to pause imminent TikTok ban

Attorneys representing President-elect Donald Trump have asked the Supreme Court to pause a law that would force TikTok-owner ByteDance to sell the short-form video app or see it banned from the United States. If the app isn’t sold, the ban is set to take effect in just a few weeks, on January 19. ByteDance is…

Brazilian Hacker Charged for Extorting $3.2M in Bitcoin After Breaching 300,000 Accounts

A Brazilian citizen has been charged in the United States for allegedly threatening to release data stolen by hacking into a company’s network in March 2020. Junior Barros De Oliveira, 29, of Curitiba, Brazil has been charged with four counts of extortionate threats involving information obtained from protected computers and four counts of threatening communications,…

Hyundai is giving away free Tesla NACs adapters to its EV customers

Hyundai said Monday it will send customers who have bought or leased an EV before January 31 a free charging adapter that will let them access Tesla’s supercharging network. The Hyundai-authorized adapter will give CCS-port-equipped Hyundai EV drivers access to more than 20,000 Tesla Superchargers in the United States, according to Hyundai. Free adapters will…

Judge grants ruling in favor of WhatsApp against spyware firm NSO Group

A federal judge has dealt the first major legal blow against spyware maker NSO Group, ruling in favor of WhatsApp in a five-year-old lawsuit against the Israeli firm over allegations that it hacked the chat service. Northern California District Court Judge Phyllis Hamilton made her ruling on Friday as a summary judgment, thus not requiring…

WordPress Appliance - Powered by TurnKey Linux