Security

Google and Apple roll out emergency security updates after zero-day attacks

Apple and Google have released several software updates to protect against a hacking campaign targeting an unknown number of their users. On Wednesday, Google released patches for a handful of security bugs in its Chrome browser, noting that one of the bugs was being actively exploited by hackers before the company had time to patch […]

Google and Apple roll out emergency security updates after zero-day attacks Read More »

Home Depot exposed access to internal systems for a year, says researcher

A security researcher said Home Depot exposed access to its internal systems for a year after one of its employees published a private access token online, likely by mistake. The researcher found the exposed token and tried to privately alert Home Depot to its security lapse, but was ignored for several weeks.  The exposure is

Home Depot exposed access to internal systems for a year, says researcher Read More »

Flaw in photo booth maker’s website exposes customers’ pictures

A company that makes photo booths is exposing pictures and videos of its customers online thanks to a simple flaw in its website where the files are stored, according to a security researcher.   The researcher, who goes by Zeacer, alerted TechCrunch to the security issue in late November after reporting the vulnerability in October to

Flaw in photo booth maker’s website exposes customers’ pictures Read More »

Security flaws in Freedom Chat app exposed users’ phone numbers and PINs

Messaging app Freedom Chat has fixed a pair of security flaws: one that allowed a security researcher to guess registered users’ phone numbers, and another that exposed user-set PINs to others on the app. Freedom Chat, released in June, bills itself as a secure messaging app, and claims on its website that users’ phone numbers

Security flaws in Freedom Chat app exposed users’ phone numbers and PINs Read More »

CEO of South Korean retail giant Coupang resigns after massive data breach

Park Dae-jun has resigned as chief executive of South Korean retail giant Coupang after a data breach exposed the personal information of more than half of the country’s population. In a statement, Park apologized for the breach, citing a “deep sense of responsibility for the outbreak and the subsequent recovery process.” Coupang has replaced Park

CEO of South Korean retail giant Coupang resigns after massive data breach Read More »

Petco takes down Vetco website after exposing customers’ personal information

Pet wellness company Petco has taken a portion of its Vetco Clinics website offline after a security lapse exposed reams of customers’ personal information to the open web.  After TechCrunch alerted the company to the exposed data relating to Vetco customers and their pets, Petco confirmed in a statement that it was investigating the data

Petco takes down Vetco website after exposing customers’ personal information Read More »

Petco’s security lapse affected customers’ SSNs, drivers’ licenses and more 

Last week, pet products and services giant Petco confirmed that it experienced a data breach involving customers’ personal information, without specifying what type of data was affected. On Friday, in a legally required filing with Texas’ attorney general’s office, Petco reported that the affected data included: names, Social Security numbers, driver’s license numbers, financial information

Petco’s security lapse affected customers’ SSNs, drivers’ licenses and more  Read More »

Petco confirms security lapse exposed customers’ personal data

Pet products and services giant Petco disclosed a data breach on Wednesday in a filing with California’s attorney general, which the company says involves the personal information of its customers. The state published a sample of the notification letter that Petco is sending to customers affected by the breach. In the letter, Petco said that

Petco confirms security lapse exposed customers’ personal data Read More »

Sanctioned spyware maker Intellexa had direct access to government espionage victims, researchers say

Spyware maker Intellexa had remote access to some of its government customers’ surveillance systems, giving company staffers the ability to see the personal data of people whose phones had been hacked with its Predator spyware, according to new evidence published by Amnesty International.  On Thursday, Amnesty and a coalition of media partners, including Israeli newspaper

Sanctioned spyware maker Intellexa had direct access to government espionage victims, researchers say Read More »