Fake Job Ads to steal data from Applicants

Trend Micro recently discovered an active campaign that uses a fake employment  pretext to steal information from applicants. The ads are crafted to target Eastern Europeans working in the cryptocurrency industry. An executable disguised as a word document is...

Earthquake Relief Donation Scams Spotted

The significant earthquake in Turkey and Syria are being abused by scammers to steal relief donations. As government, businesses and charities are steeping up to raise funds and aids for victims, the scammers are wasting no time in targeting unsuspecting donors....

Reddit Security Incident

Reddit recently reported that they had suffered a security incident. The incident resulted in the exposure of some internal documents, code and hundreds of company contacts and employee information. The attacker gained access by stealing a single employee’s...

Toyota Supplier Portal Vulnerability Disclosure

A security researcher has disclosed a backdoor vulnerability that allowed access to Toyota’s Global Supplier Preparation Information Management System. All that is needed to gain access, is to know the email address of an existing user account. The security...

Beware of Donation Scams about Earthquake in Turkey and Syria

A significant earthquake recently struck Turkey and Syria. Based on past experiences, such disasters will often be abused. The most common scams are fake donation websites, followed by malware disguised as a video or images from the affect region. Be vigilant, only...

2FA Bypass for Facebook

A security researcher from Nepal has done a write up on how he was able to bypass the two factor authentication on Facebook. The vulnerability that was exploited was that the two factor code is 6 digits long and there isn’t any limits or rate limiting on the...