Duncan Riley
Latest from Duncan Riley
Attendees warned not to download Qatar’s World Cup apps amid privacy concerns
Security experts and regulators are warning attendees of the World Cup not to download Qatar’s World Cup apps for visitors because of serious privacy concerns. The latest warning comes from the German Federal Data Protection Authority, which said in a statement Tuesday that the two apps visitors are being asked to download go much further than the ...
Intel FakeCatcher detects deepfakes with a 96% accuracy rate
The rise of artificial-intelligence-created videos, while technically impressive, has raised serious concerns around the use of the technology for nefarious purposes, such as fake porn. As AI technology continues to improve, identifying what is real and what isn’t has become increasingly difficult, but Intel Corp. says it now has a solution. Launched Monday, Intel’s new ...
Meta reportedly fires employees for account takeovers and accepting bribes
Meta Platforms Inc. has reportedly fired more than two dozen staff and contractors in the last year for improperly taking over accounts and, in some cases, taking bribes. The Wall Street Journal, referencing people familiar with the matter, today reported that some of those fired were contractors working as security guards at Meta facilities. They were ...
Cloudflare Workers Launchpad program grows to $2B, adds 14 new partners
Content delivery network provider Cloudflare Inc. today announced that its Workers Launchpad funding program has grown to $2 billion for potential investments in startups and has added 14 new partners. The program launched in September with $1.25 billion in funding for startups that use the Cloudflare Workers platform. It enables the instant deployment of serverless ...
Amazon RDS snapshots found to be leaking personal information
Thousands of databases hosted on Amazon Web Services Inc.’s Relational Database Service have been found to be leaking personally identifiable information, providing a potential treasure trove for threat actors. Discovered and detailed today by researchers at Mitiga Security Inc., the exposure comes through a snapshot feature in Amazon RDS that is used to back up the ...
Iranian hackers breach Federal Civilian Executive Branch using Log4Shell vulnerability
The U.S. Cybersecurity and Infrastructure Agency today disclosed that an Iranian government-sponsored advanced persistent threat group hacked the Federal Civilian Executive Branch. The breach, which dates back to February, was first detected in mid-June, and CISA conducted an incident response engagement with the FCEB through mid-July. The Iranian hackers gained access to the network through ...
22 years after it was founded, Evernote to be acquired by Italian technology firm
Web 2.0-era personal productivity app maker Evernote Corp., said today it has entered an agreement to be acquired by Italian technology company Bending Spoons S.p.A. for an undisclosed price. Founded in 2000, the year of the dot-com crash, Evernote builds apps and products that are claimed to define the way individuals and teams work together ...
New image-based scam bypasses filtering, encourages victims to call attacker
Researchers at INKY Technology Corp. today detailed a new image-based phishing scam that uses brand impersonation to encourage a victim to contact those behind the scam by phone rather than click on a link or download a file. INKY researchers have observed bad actors adopting a technique called image-based phishing in phone scams. The technique ...
As SaaS app usage soars, consolidation and security concerns drive change
Cloud service management company BetterCloud Inc. has found that organizations are using more software-as-a-service apps than ever, but there are changes afoot in the industry amid consolidation and concerns with app security. The findings were one of several in BetterCloud’s 10th annual State of SaaSOps report based on a survey of 742 IT and security professionals. ...
DevSecOps automation platform startup BoostSecurity launches with $12M in new funding
DevSecOps automation platform startup BoostSecurity.io Inc. today launched out of stealth mode with $12 million in new funding to accelerate the platform’s go-to-market and engineering initiatives. Sorenson Capital led the seed round, with Hoxton Ventures, Golden Ventures, Firebolt Ventures and Transform VC also participating. Founded in 2020, BoostSecurity aims to solve problems plaguing organizations that are trying to ...