安全SNAFUs? How bad is it so far this year? Well, let’s start with Snapchat’s 4.6 million user database SNAFU, followed by a parade of retail stores including Neiman Marcus and Sally Beauty Holdings, telling their customers how their payment card information had been hacked. The hacker group Syrian Electronic Army was also busy tormenting Microsoft, among many others. And there’s plenty of other mischief, such as denial-of-service attacks and cyber-espionage to round out what’s only the first half of the year.
该Syrian Electronic Army黑客集团认为是忠于叙利亚President al_Assad, continued its attacks, hacking the official Facebook and Twitter pages of Skype and the website’s blog telling users not to use Microsoft’s e-mail service Outlook claiming Microsoft sells user information to the government. The Syrian hacker group also hacked @XboxSupport Twitter pages, and the official Microsoft Office Blog. Besides Microsoft, it also hit CNN by hacking the official Twitter account and posting messages of the Syrian flag, which CNN quickly removed. Later in the year, the hacker group also hacked the websites of eBay and Paypal UK, the DNS of Facebook which Facebook quickly restored, and the Forbes website and their Twitter accounts, among others.
该Veterans of Foreign Wars美国的通报其成员老将55000,它在四月了解到,攻击者可能来自中国寻求军事信息,已经获得了其系统包含姓名,地址和社会安全号码下载表格访问。这种攻击利用了恶意软件,作为远程访问木马,VFW的说。
执法惊动俄勒冈州波特兰市, - 基于Central City Concern,协助那些无家可归,贫穷和毒品挣扎,一个前CCC员工曾错误地复制从什么被发现是为了尝试和大约17914客户记录个人信息的人CCC试图名工艺虚假的纳税申报帮帮我。
可口可乐said a former employee in Atlanta stole 55 laptops that had contained unencrypted personal information on about 74,000 people, most of them Coca-Cola employees. The company didn’t say how it had regained the laptops but acknowledged to the Wall St. Journal that company policy requires laptops to be encrypted but these stolen laptops weren’t.
AOL说网络攻击有妥协的客户的电子邮件帐户,可能是数以千万计的人,并敦促AOL用户更改他们的密码。
加拿大警方逮捕了一名19岁男子涉嫌利用的心脏出血漏洞错误窃取约纳税人的数据。他们表示,伦敦,安大略省斯蒂芬Arthuro索利斯 - 雷耶斯了该漏洞的利用窃取的信息Canada Revenue Agency’s website, including Social Insurance Numbers for about 900 people there.
在心脏出血漏洞的Bug,在OpenSSL的代码中的一些版本中的缺陷声,掀起了全球范围内踩踏更新影响漏洞的服务器和其他设备。但也有沿途的一些失误。Akamai Technologies公司, whose networks handles up to 30% of all Internet traffic, said it was re-issuing all SSL certificates and security keys used to created encrypted connections between its customers’ websites and visitors to those sites after a researcher found fault in custom code the company thought had shielded most of its customers from the Heartbleed Bug.
疑似伊朗黑客组织接种Facebook和LinkedInwith bogus profiles of attractive women and even created a fake online news organization to get digitally close to more than 2,000 people whom it wanted to spy on. Once they had befriended their targets through fake profiles, the people were emailed malicious links designed primarily to steal email account credentials, according to details provided by security consultancy iSight Partners.