720-891-1663

When Will They Ever Learn?

The title comes from a folk song written by Pete Seeger in the 1950s, but apparently, software developers are not into folk music. In this case, security researchers are warning that developers are leaving security credentials in public repositories. They found these creds in repositories run by IBM, Digital Ocean, AWS, Gitlab, and others. The […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Boston’s Transit Authority – Lessons Learned, Maybe

In 2008 a group of MIT students were going to present a paper at the hacking convention Defcon on vulnerabilities in the Boston Transit (called the MBTA) fare card. The MBTA sued Defcon and the presentation was cancelled. But not before the slides for the presentation were published online. While this is an alternative to […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Bites for the Week Ending July 14, 2023

OpenAI and Meta Both Sued for Copyright Infringement Over AI Tools Even though the courts, with minor exception, are technologically uneducated, they are going to have to make some very important decisions. Law.com is reporting that OpenAI is being sued by book authors, including comedian Sarah Silverman over misappropriation of their copyrighted works to be […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Bites for the Week Ending May 26, 2023

Sometimes a Patch Goes Sideways HP is working to figure out how to deal with a firmware update to a number of Office Jet printers that “bricked” the printers, meaning that these printers are only useful as a brick or paperweight. The will not boot and all the user gets is a blue screen with […]

Continue reading → [DISPLAY_ACURAX_ICONS]

This is Why the Feds are Very Scared About Supply Chain Attacks

Last week it was revealed that VoIP communications company 3CX was compromised and was distributing a malicious version of their desktop software to hundreds of thousands of paying customers. This is not an attack where users go to find sketchy websites and download “free” software that should be paid for. Rather, this is licensed software […]

Continue reading → [DISPLAY_ACURAX_ICONS]