720-891-1663

08.01.25 Security News Bites

Drug Cartels Use IT to Kill FBI Informants According to a newly published report, a Sinaloa cartel/El Chapo insider contacted the FBI in 2018 and told it of all the ways in which the cybercrook hired by the cartel helped it track down those who could give up key details about its operation and eliminate […]

Continue reading → [DISPLAY_ACURAX_ICONS]

As States Require Age Verification Google Tests Verification Strategy

In light of the Supreme Court saying that it it not invasive for web sites to collect your government ID to verify your age before letting you see their site, Google is trying a different, very interesting, tactic instead of requiring you to upload your government ID. The problems with web sites collecting your ID […]

Continue reading → [DISPLAY_ACURAX_ICONS]

It is the Supply Chain That is Being Attacked

I can’t say this enough. Supply chains are the weak spot and hackers know it and abuse it. Scattered Spider, the group responsible for attacks on US insurance firms Aflac, Philadelphia and Erie and British retailers like Marks & Spencer and others, uses supply chain attacks as their favorite method. After they use social engineering […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Why Storing Government IDs by Websites is a Problem

The Tea app, apparently, is a women-only dating safety app where members can share reviews about men, with access to the platform requiring a selfie and a government ID. The app, apparently, had a security problem. On Friday a user posted that there was an unsecured Firebase storage bucket with driver’s licenses, selfies and photos […]

Continue reading → [DISPLAY_ACURAX_ICONS]