$2.2 Billion in Cryptocurrency Stolen from Platforms in 2023, Reports Chainalysis

This year, criminals have managed to steal $2.2 billion from crypto platforms, mainly due to compromised private keys, according to blockchain analysis company Chainalysis based on its own research. The $2.2 billion is an increase of 21 percent compared to the $1.8 billion stolen last year, but less than the record year of 2022, when […]

$2.2 Billion in Cryptocurrency Stolen from Platforms in 2023, Reports Chainalysis Read More »

McDonald’s India Exposes Customer and Delivery Personnel Data Due to API Vulnerability

McDonald’s India has leaked customer and delivery person data due to a vulnerability in an API (Application Programming Interface) used. In addition, it was possible to hijack customer orders, place orders for just one cent, provide feedback on other customers’ orders, view details of each order, and download invoices. This involved the name, email address,

McDonald’s India Exposes Customer and Delivery Personnel Data Due to API Vulnerability Read More »

BeyondTrust Confirms Intrusion Incident Affecting Customer Remote Support SaaS Instances

In short: Key Point Details Company Affected BeyondTrust Type of Attack Break-in into customers’ Remote Support SaaS instances Discovery Date Potentially suspicious behavior noted on December 2, confirmed on December 5 Vulnerabilities Identified Two vulnerabilities found, including CVE-2024-12356 with a severity rating of 9.8/10 Government Warning CISA warns of exploitation of CVE-2024-12356; no confirmation that

BeyondTrust Confirms Intrusion Incident Affecting Customer Remote Support SaaS Instances Read More »

Security company: 100,000 Yandex smart TVs infected with Android malware

About a hundred thousand smart TVs from manufacturer Yandex are supplied with pre-installed Android malware called BadBox, security company Bitsight claims based on its own research. In total, the company counted 192,000 Android devices infected with BaxBox. Once active, the malware can steal two-factor keys, install additional malware and attack other devices on the network,

Security company: 100,000 Yandex smart TVs infected with Android malware Read More »

OpenAI trained ChatGPT without a valid basis with personal data

OpenAI used personal data to train ChatGPT without having a valid basis for doing so. In addition, the organization concealed a data breach, was not transparent towards users, lacked age verification and the mandatory information provision was inadequate, according to the Italian privacy regulator GPDP. It imposed a fine of fifteen million euros on OpenAI

OpenAI trained ChatGPT without a valid basis with personal data Read More »

WordPress.org is temporarily not accepting new plugins and account registrations

WordPress.org is temporarily not accepting new plugins, new plugin reviews, new themes, new photos and new account registrations, Matt Mullenweg, the owner of WordPress.org, has announced. Mullenweg and WordPress host Automattic are involved in a legal battle with WP Engine, which also offers WordPress hosting. Customers can start their own WordPress site via the WP

WordPress.org is temporarily not accepting new plugins and account registrations Read More »