Guardian Newspaper Hit by Ransomware Attack

The Guardian newspaper has self reported that they have been hit by a serious IT incident which they believe is a ransomware attack. The impact is mostly with disruptions to behind the scene services and they believe that online and print publishing is largely...

GitHub to require 2FA for all user by end of 2023

In a move to help strengthen the open source third party supply chain, GitHub will be mandating all users who contribute code on the platform to enable two factor authentication by the end of 2023. This helps increase the security of the accounts by requiring an...

LastPass suffers second data breach this year

LastPass revealed that attackers had stolen customer vault data. Fortunately the stolen vaults had been encrypted using the customer’s master key, which is never known to LastPass. However the attackers might attempt to brute force the passwords to gain access...

Behind the scenes of Optus response’s to their data breach

The Australian Financial Review wrote an article providing a behind the scenes look at how the Optus data breach unfolded for the company and their CEO. This was the first of a number of major data breaches which eventually lead to changes to the Australian Privacy...

End-to-end Encryption Coming to Gmail

Google recently announced that it will be adding end-to-end encryption to Gmail on the web for its workspace users. Once enabled, it will ensure that any sensitive data delivered as part of the email’s body and attachments cannot be decrypted by Google. Users...

Malicious Cybersecurity SDK released to Developers

Threat actors have released a trojanised python package pretending to be the legitimate SDK for the trusted cybersecurity firm SentinelOne. The malware offers the expected functionality, allowing easy access to the SentinelOne API. However it has been trojanised to...