Duncan Riley
Latest from Duncan Riley
Db2 shared memory vulnerability opened door to attackers, but IBM issued a patch
Users of IBM Db2 data management software are being warned of a shared-memory vulnerability that could allow an attacker to gain read and write access and perform unauthorized actions on a targeted system. Discovered by security researcher Martin Rakhmanov at Trustwave, who revealed the details today, the issue affects IBM Db2 versions for Linux, Unix ...
Cryptocurrency lending firm BlockFi raises $50M ahead of bitcoin rewards card release
Cryptocurrency lending firm BlockFi Lending LLC announced today it has raised $50 million in new funding to support its upcoming release of a bitcoin rewards credit card. The Series C round was led by Morgan Creek Digital and included Valar Ventures, CMT Digital, Castle Island Ventures, Winklevoss Capital, SCB 10X, Avon Ventures, Purple Arch Ventures, Kenetic Capital, HashKey and ...
Former Uber security chief Joe Sullivan charged in coverup of 2016 data breach
Former Uber Technologies Inc. Chief Security Officer Joe Sullivan has been charged in relation to covering up a security breach in 2016 that saw the theft of data relating to some 57 million Uber passengers and drivers. Sullivan (pictured) was charged Wednesday with obstruction of justice and “misprision” or concealment of a felony by the U.S. ...
Mark Zuckerberg testifies at FTC hearing for antitrust investigation
Facebook Inc. Chief Executive Officer Mark Zuckerberg has testified at a U.S. Federal Trade Commission hearing for an antitrust investigation that is looking at the company’s practices. First reported by Politico, the testimony is said to have been conducted under oath remotely over two days this week, according to people familiar with the case. FTC ...
Millions of IoT devices exposed to serious vulnerability in Cinterion connectivity modules
X-Force Red, International Business Machine Corp.’s team of hackers today revealed the details of a serious vulnerability in a series of “internet of things” connectivity chips that leaves millions of devices open to attackers. The vulnerability was initially found in Cinterion EHS8 M2M modules manufactured by Thales SA. They’re used to create secure communication channels for industrial ...
235M user profiles scraped from Instagram, TikTok and YouTube found exposed online
Some 235 million profiles of users of Instagram, YouTube and TikTok compiled by a social media marketing company have been found online on a publicly exposed database. Discovered and publicized today by Bob Diachenko at Comparitech, the database was traced to a company called Social Data that sells data on social media influencers to marketers. The data, ...
FritzFrog botnet targets SSH servers belonging to government and enterprises
A newly discovered sophisticated botnet campaign that is targeting government offices and enterprises was detailed today for the first time. Dubbed “FritzFrog” by security researchers at Guardicore Ltd., which reported the peer-to-peer botnet today, it’s believed to have been actively breaching SSH servers since January. The botnet executes a worm malware written in the Go ...
Airbnb finally files paperwork for an initial public offering
Airbnb Inc. has finally filed its paperwork for an initial public offering nearly a year after saying it had plans to do so in 2020. In a statement today, Airbnb said that it had confidentially submitted a Form S-1 to the U.S. Securities and Exchange Commission while noting that the number of shares to be offered and ...
Cloud security firm Lacework launches new continuous host vulnerability monitoring
Cloud cybersecurity firm Lacework Inc. today announced new continuous host vulnerability monitoring, preflight checks and continuous integration and deployment automation workflows to its security offering. The new features will allow existing customers to accelerate threat investigation and remediation as well as easily prioritize response to the most critical and active security threats, the company said. ...
Cyware raises $10M to enhance its threat intelligence and security solutions
Cybersecurity startup Cyware Labs Inc. said Tuesday it has raised $10 million in new funding to enhance its threat intelligence automation, threat response and security orchestration solutions. The Series A round was led by the Prelude Fund and Tanium and included Emerald Development Managers and Great Road Holdings. Founded in 2016, Cyware offers what it describes as ...









