Reuters reports: Apple Inc (AAPL.O) said on Thursday it has found “no evidence” a flaw in its email app for iPhones and iPads has been used against customers, and that it believes the flaw does “not pose an immediate risk to our users”. Read more on Reuters.
Category: Business Sector
FTC Settles with Company Over Alleged Deceptive Security Practices
Kari Rollins and Julia Kadish of Sheppard Mullin write: The FTC recently settled with smart lock maker Tapplock, Inc., a Canadian company, over allegations that it deceived consumers with false claims about its product’s security practices. These allegations arose based on vulnerabilities that a security researcher demonstrated – not in the aftermath of a data security breach…
Two iOS zero-days used in limited mail attacks
Dennis Fisher writes: Attackers have been exploiting a pair of dangerous vulnerabilities in the default mail app in Apple’s iOS software since at least January 2018 simply by sending specially formatted emails to target devices. The flaws are unpatched and have been present since iOS 6 was released in 2012. The two vulnerabilities have been…
Danish Agro’s computer systems hacked
Jane Byrne reports: Agribusiness group, Danish Agro, was the target of a ransomware attack on Sunday, April 19. Read more on FeedNavigator.
Security researcher discloses four IBM zero-days after company refused to patch
Catalin Cimpanu reports: A security researcher has published today details about four zero-day vulnerabilities impacting an IBM security product after the company refused to patch bugs following a private bug disclosure attempt. The bugs impact the IBM Data Risk Manager (IDRM), an enterprise security tool that aggregates feeds from vulnerability scanning tools and other risk management…
UniCredit Hackers Try to Sell Employee Data on Cyber-Crime Forums
Daniele Lepido and Sonia Sirletti report: Data on about 3,000 UniCredit SpA employees was put up for sale on cyber-crime forums after a hacking attack. The data went on sale on April 19 and contained what the hacker said was information on UniCredit workers, including emails, phone numbers, encrypted passwords and names, Telsy, a unit…