Geek-Guy.com

Category: Global Security News

SoundCloud introduces a cheaper plan for artists

Music streaming platform SoundCloud announced Tuesday that it is introducing a new, cheaper paid plan for artists simply called Artist, while renaming its Next Pro plan to Artist Pro. The new basic tier will cost $39 per year and put some limits on features like track amplification, distribution, monetization, and AI mastering. Artists subscribing to…

FTC bans hidden junk fees in short-term lodging, live-event ticket prices

The U.S. Federal Trade Commission passed a rule on Tuesday banning hidden “junk fees” for live events, hotels, and vacation rentals. The agency says the new rule prohibits “bait-and-switch pricing,” and other practices that hide total prices and bury junk fees in the live-event ticketing and short-term lodging industries, noting that these “unfair and deceptive”…

Shein must cede Indians’ data, control of local ops to re-enter India

Shein must surrender all data of Indian customers and control of its local operations to its partner, Reliance Retail, and keep operations fully local to re-enter the Indian market, according to new government disclosures that reveal how the apparel and accessories retailer secured a rare exception to India’s ban on Chinese-linked apps. In a parliamentary…

Databricks raises $10B as it barrels toward an IPO

Databricks, the data analytics platform, has raised $10 billion in a funding round that values the company at $62 billion (up from $43 billion). Backers include Thrive Capital, Andreessen Horowitz, DST Global, GIC, and Iconiq Growth. The round is one of the largest venture rounds in history, and will drive future future mergers and acquisitions,…

Wyebot Partners With Zebra Technologies To Automate WiFi Intelligence

Network automation vendor Wyebot announced recently it has joined the Zebra PartnerConnect program. The partnership will bring Wyebot’s Wireless Intelligence Platform to Zebra customers and give Wyebot access to Zebra’s portfolio, along with training, marketing, sales, and technical benefits. “As a PartnerConnect member, Wyebot now has access to industry-leading solutions, training and tools that will…

Hackers Use Microsoft MSC Files to Deploy Obfuscated Backdoor in Pakistan Attacks

A new phishing campaign has been observed employing tax-themed lures to deliver a stealthy backdoor payload as part of attacks targeting Pakistan. Cybersecurity company Securonix, which is tracking the activity under the name FLUX#CONSOLE, said it likely starts with a phishing email link or attachment, although it said it couldn’t obtain the original email used…

Popular LatAm digital payment service AstroPay launches multi-currency wallet

AstroPay has been around since 2009. The bootstrapped company currently has 320 employees and is profitable. And yet, it’s not a name that comes up often in startup news. The company originally started its life as a payment service provider focused on Latin America — an alternative payment method that you would find next to the…

Seamless API Threat Detection and Response: Integrating Salt Security and CrowdStrike NG-SIEM

APIs are essential for modern digital business operations, enabling smooth connectivity and data exchange between applications. However, the growing dependence on APIs has unintentionally widened the attack surface, making strong API security a vital concern for organizations. Traditional security measures often prove inadequate in effectively safeguarding this changing landscape. To address this challenge, integrating specialized…

Meta fined $263M over 2018 security breach that affected ~3M EU users

Meta has been fined €251 million (around $263 million) in the European Union for a Facebook security breach that affected millions of users which the company disclosed back in September 2018. The penalty, issued on Tuesday by Ireland’s Data Protection Commission (DPC) — enforcing the bloc’s General Data Protection Regulation (GDPR) — is far from…

Nuon helps companies deploy their software into their customers’ cloud accounts

Jon Morehouse launched PowerTools in 2019 to help companies ship static sites and serverless apps to their cloud accounts on providers like AWS and Azure. When a customer asked him if they could use PowerTools to deploy their software into one of their customer’s cloud accounts, Morehouse was skeptical. Morehouse told TechCrunch that after that…

CyberArk Unveils Breakthrough Open-Source Tool That Helps Organisations Safeguard Against AI Model Jailbreaks

CyberArk (NASDAQ: CYBR), the global leader in identity security, announced the launch of FuzzyAI, a cutting-edge open-source framework that has jailbroken every tested AI model. Fuzzy AI helps organisations identify and address AI model vulnerabilities, like guardrail bypassing and harmful output generation, in cloud-hosted and in-house AI models.  FuzzyAI’s fully extensible framework is available as open-source…

Pineapple on pizza is delicious — and if you disagree, you can’t log in to WordPress.org

There are few matters in life that divide a room more than the prudence of putting pineapple on pizza. But if you’re of the persuasion that tropical fruit has no place on a pie, you’ll have to swallow a bitter pill — if you want to access the WordPress.org developer portal and forum, at least.…

Dragos Industrial Ransomware Analysis: Q3 2024

GUEST RESEARCH:  Dragos’s Industrial Ransomware Analysis Report Q3 2024  revealed that the ransomware threat ecosystem remained highly active, driven by the emergence of new groups, rebranding of existing entities, the expansion of initial access broker (IAB) operations, and the proliferation of illicitly traded tools. Operators demonstrated a growing ability to adapt to disruptions, leveraging technological advancements…

Remote enables USDC crypto payouts for contractors

Getting paid in cryptocurrencies may sound like a bad idea, but this could be an actually useful feature for international contractors. Remote, the company that lets you hire people and manage contractors all around the world, is introducing crypto payouts on Tuesday. Companies based in the U.S. can start paying their contractors with stablecoins in…

EU to investigate TikTok’s response to election security risks in Romania

TikTok is now subject to not one but two open Digital Services Act (DSA) investigations after the European Union announced on Tuesday that it has opened a formal proceeding focused on election risks — and specifically risks in the context of recent elections in Romania. The probe will focus on TikTok’s recommender systems — principally “risks…

Boomi Boosts Data Management Capabilities With Acquisition of Modern Data Integration Provider Rivery

Boomi, the intelligent integration and automation leader, today announced a definitive agreement to acquire Rivery, a modern data integration provider that offers cutting-edge Change Data Capture (CDC) for real-time, efficient data movement. Rivery’s skilled data management team will join Boomi, strengthening the company’s ability to deliver world-class solutions to customers and accelerate its trajectory as…

While some account-to-account payments players falter, Volume raises fresh cash

Online merchants can usually pay up to 8% of every sale on an item to companies like PayPal, Apple Pay, and Stripe — and those costs are usually passed to consumers. So-called ‘account-to-account’ or ‘A2A’ payments can cut transaction fees to below 1%, saving merchants and consumers quite a bit of cash. The difficulty has been…

Travel is back: Hostaway raises $365M at a $925M valuation

The tourism and travel industries — after several tough years that included not just a global health pandemic but economic and geopolitical upheaval — are finally back on track, expected to make a “full recovery” to pre-pandemic levels of activity, the UN said earlier this month. As an indicator of that, Hostaway, one of the…

Meta to set up $50M privacy payment scheme to settle Australian proceeding

Meta has agreed to a $50 million payment program to settle a long-running proceeding in Australia related to misuse of information for political ad targeting, the country’s information watchdog OAIC announced Tuesday. The settlement concerns the 2018 Cambridge Analytica scandal, when data on millions of Facebook users was exfiltrated without their knowledge or consent by…

HR professionals confident AI will improve organisational productivity and performance

But survey highlights industry concerns about regulatory changes, risks of bias, accuracy and discrimination HR professionals are overwhelmingly confident AI will boost productivity and performance but many are concerned about data and security, the latest research from the Australian HR Institute (AHRI) and Queensland University of Technology (QUT) shows.

Kakao Mobility hit with $10.5M antitrust fine for limiting rivals’ access

South Korea’s antitrust watchdog has fined Kakao Mobility, the ride-hailing unit of Korean tech firm Kakao, $10.5 million (KRW 15.1 billion) for limiting competitors’ access to its taxi app — lowering the penalty from an initial fine of $50.3 million (KRW 72.4 billion) as the earlier sanction was based on an overestimated calculation of the…

Kris Day Joins SentinelOne as Senior Vice President and General Manager Asia Pacific and Japan

COMPANY NEWS :  SentinelOne (NYSE: S), a global leader in AI-powered security, today announced the appointment of  Kris Day as Senior Vice President  and General Manager for Asia Pacific and Japan. Based in Singapore, Day is a proven leader with an extensive track record of broad-based achievement.  At SentinelOne, he will focus on charting the company’s go-to-market and growth…

US moves to tighten restrictions on China Telecom amid security fears

The US Commerce Department is intensifying its actions against China Telecom’s US unit over concerns that its cloud and internet services could be used to funnel American data to Beijing, according to a Reuters report. The department issued a preliminary finding last week, stating that China Telecom Americas’ involvement in US networks and cloud services presents…

Hackers Exploit Webview2 to Deploy CoinLurker Malware and Evade Security Detection

Bogus software update lures are being used by threat actors to deliver a new stealer malware called CoinLurker. “Written in Go, CoinLurker employs cutting-edge obfuscation and anti-analysis techniques, making it a highly effective tool in modern cyber attacks,” Morphisec researcher Nadav Lorber said in a technical report published Monday. The attacks make use of fake…

Secure Equipment Repair Policy and Confidentiality Agreement

Organizations must frequently work with third parties to repair laptops, desktops, tablets, smartphones, servers, and other IT equipment.  This customizable policy, written by Erik Eckel and Mark W. Kaelin for TechRepublic Premium, ensures an organization maintains regulatory and best business practice security compliance while tracking systems when they are being repaired. Featured text from the…

Agave, the startup behind Find the Cat, finds $18M

A startup out of Turkey that has built a hit casual mobile game where you have to find cats in Where’s Wally-style drawings of increasing complexity has found something else: $18 million in funding. Agave Games, the creator of Find the Cat, will be using the Series A to build out the team and to…

Alphabet-backed Indian lender files for IPO

Alphabet’s CapitalG-backed Aye Finance, a lender focused on India’s micro, small, and medium enterprises, is seeking to raise $171 million from its initial public offering, it disclosed in a filing Tuesday. The offering comprises a $104 million fresh share issue and a $67 million secondary sale by existing investors, with proceeds aimed at expanding the…

LW ROUNDTABLE — How 2024’s cyber threats will transform the security landscape in 2025

Continuing our look back at 2024, part two of Last Watchdog’s year-ender roundtable turns its focus to emerging threats vs. evolving defense tactics. Part two of a four-part series The explosion of AI-driven phishing, insider threats, and business logic abuse … (more…) The post LW ROUNDTABLE — How 2024’s cyber threats will transform the security…

Nubank leads $250M round in African digital bank Tyme at $1.5B valuation

Tyme Group, a South African-born fintech operating in the African country and the Philippines, has secured $250 million in a Series D round, pushing its valuation to $1.5 billion. The funding was led by Nu Holdings (which owns NuBank), Latin America’s most valuable fintech, which invested $150 million for a 10% stake. M&G Catalyst Fund…

Top 10 cybersecurity misconfigurations: Nail the setup to avoid attacks

While cybersecurity headlines are often dominated by the latest zero-day or notable vulnerability in a vendor’s software/product or open-source software library, the reality is that many significant data breaches have been and will continue to be due to misconfigurations. To underscore the serious of this issue, the US National Security Agency (NSA) and the Cybersecurity…

Hexa, the startup studio behind Aircall and Swan, unveils its next batch of startups

Hexa, a Paris-based startup studio that has launched dozens of B2B software companies, is sharing a list of its next batch of projects that are soon going to become independent startups. Hexa originally started its life in 2011 as eFounders, a startup studio focused on B2B software-as-a-service products. Hexa usually comes up with the ideas…

CISA and FBI Raise Alerts on Exploited Flaws and Expanding HiatusRAT Campaign

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Monday added two security flaws to its Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation in the wild. The list of flaws is below – CVE-2024-20767 (CVSS score: 7.4) – Adobe ColdFusion contains an improper access control vulnerability that could allow an attacker to…

Data Security Predictions for 2025: Putting Protection and Resilience at Center Stage

Data Security Predictions for 2025: Putting Protection and Resilience at Center Stage madhav Tue, 12/17/2024 – 05:10 Cybersecurity is a remarkably dynamic industry. New trends, technologies, and techniques reshape the landscape at an extraordinary pace, meaning keeping up can be challenging. Protecting data, the driving force of modern businesses, will continue to be the primary…

DORA steht vor der Tür

srcset=”https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?quality=50&strip=all 12500w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=300%2C168&quality=50&strip=all 300w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=768%2C432&quality=50&strip=all 768w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=1024%2C576&quality=50&strip=all 1024w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=1536%2C864&quality=50&strip=all 1536w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=2048%2C1152&quality=50&strip=all 2048w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=1240%2C697&quality=50&strip=all 1240w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=150%2C84&quality=50&strip=all 150w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=854%2C480&quality=50&strip=all 854w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=640%2C360&quality=50&strip=all 640w, https://b2b-contenthub.com/wp-content/uploads/2024/12/shutterstock_1942670248.jpg?resize=444%2C250&quality=50&strip=all 444w” width=”1024″ height=”576″ sizes=”(max-width: 1024px) 100vw, 1024px”>DORA soll die Cybersicherheit in der Finanzbranche erhöhen. Vector Image Plus – Shutterstock.com Ab 17. Januar 2025 sind alle Finanzdienstleister in der EU verpflichtet, den Digital Operational Resilience…

Mark Zuckerberg says Threads now has 100M daily active users

Meta’s X rival Threads is growing steadily with more than 100 million people using the service daily, the company’s CEO Mark Zuckerberg said Monday. Zuckerberg also noted that Threads now has 300 million monthly active users, up from 275 million monthly active users in November. While Meta has regularly released updated numbers about monthly active…

FakeCaptcha scams—When the “I’m not a robot” button is a trap

How many times you’ve clicked the “I’m not a robot” CAPTCHA checkbox without a second thought? We’ve all done it … countless times. It’s such a familiar step that we don’t question it. And, cybercriminals have taken note of that.   The post FakeCaptcha scams—When the “I’m not a robot” button is a trap appeared first…

Waymo robotaxis are coming to Tokyo in 2025

Waymo will begin testing its autonomous vehicle technology in Tokyo in early 2025, the first time the Alphabet company’s robotaxis have driven on public roads outside the U.S. The move to Japan is part of Waymo’s so-called “road trips,” a development program that involves bringing and testing its technology in a variety of cities —…

Jay Z’s Marcy Venture Partners merges with investment arm of Pendulum Holdings

Jay Z’s venture capital firm, Marcy Venture Partners, has merged with another Black-owned investment firm, Pendulum Holding’s investment arm Pendulum Opportunities, to form MarcyPen Capital Partners, a MarcyPen spokesperson confirmed to TechCrunch. The newly formed MarcyPen Capital Partners has $900 million in assets under management, according to Pitchbook.  MarcyPen’s spokesperson declined to comment further on…

Security Vendor Dashlane Launches First Formal Partner Program

Credential-based threat defender Dashlane has worked with channel businesses for several years and has now launched the organization’s Dashlane Partner Program to formalize the benefits for various reseller partners worldwide. “Our partner program is foundational to our growing investment in the channel and our mission to deliver the credential security that enterprises and their employees…

iRobot co-founder’s new home robot startup hopes to raise $30M

Colin Angle, one of the co-founders of Roomba maker iRobot, is raising cash for a home robotics venture. A filing with the U.S. Securities and Exchange Commission reveals that Angle’s new company, Familiar Machines & Magic, is trying to raise $30 million. So far, it has raised $15 million from a group of eight investors.…

TuSimple drama heats up ahead of pivotal shareholder meeting

TuSimple co-founder and former CEO Xiaodi Hou is on a war path in the lead up to Friday’s annual shareholder meeting that will decide the makeup of the company’s board of directors.  Over the past several weeks, Hou has sued TuSimple for control of his voting rights, demanded the company immediately liquidate and return all…

Arctic Wolf acquires Cylance from BlackBerry for $160 million

Minnesota-based Arctic Wolf, a cybersecurity operations firm, announced an agreement Monday to acquire BlackBerry’s Cylance business for $160 million, a stark drop from the $1.4 billion BlackBerry initially paid to acquire the startup in 2018.  Arctic Wolf is integrating Cylance’s AI-powered endpoint security technology into its platform to broaden its security solutions. With this acquisition,…

When & Why to Hand Over the Keys to Your Kubernetes Infrastructure

In the constantly maturing landscape of cloud-native technologies, Kubernetes reigns as the de facto standard for container orchestration. However, managing Kubernetes infrastructure can be a complex and resource-intensive task, particularly if your organization doesn’t have a bench of Kubernetes experts in-house (and few do). There are many benefits to handing over the keys to your…

TikTok asks Supreme Court for a lifeline as sell-or-ban deadline approaches

TikTok and ByteDance asked the United States Supreme Court to block the law that forces TikTok to be sold off or banned in the United States, according to an emergency filing with America’s top court on Monday. The social media company requested that the Supreme Court consider blocking the sell-or-ban law passed earlier this year…

CISA pitches updated cyber incident response plan as an ‘agile, actionable’ framework

The Cybersecurity and Infrastructure Security Agency on Monday opened a month-long public comment period for its updated draft plan detailing how the public and private sectors should respond to significant cyber incidents. The revamped National Cyber Incident Response Plan — an effort from CISA, the agency’s Joint Cyber Defense Collaborative and the Office of the…

DEF CON 32 – Iconv, Set The Charset To RCE Exploiting glibc To Hack The PHP Engine

Author/Presenter: Charles Fox Our sincere appreciation to DEF CON, and the Presenters/Authors for publishing their erudite DEF CON 32 content. Originating from the conference’s events located at the Las Vegas Convention Center; and via the organizations YouTube channel. Permalink The post DEF CON 32 – Iconv, Set The Charset To RCE Exploiting glibc To Hack…

OpenAI brings its AI-powered web search tool to more ChatGPT users

ChatGPT Search, OpenAI’s AI-powered web search experience, is now live for all ChatGPT users — with several new features in tow. By default, ChatGPT will automatically determine which questions to route through ChatGPT Search, or users can tap a new “Search the web” icon in the ChatGPT interface. ChatGPT Search shows summarized answers from different…

WordPress Appliance - Powered by TurnKey Linux