Poorly Configured Apache Airflow Instances Leak Credentials for Popular ServicesThe Hacker News
Cybersecurity researchers on Monday discovered misconfigurations across older versions of Apache Airflow instances belonging to a number of high-profile companies across various sectors, resulting in the exposure of sensitive credentials for popular platforms and services such as Amazon Web Services...
A New APT Hacking Group Targeting Fuel, Energy, and Aviation IndustriesThe Hacker News
A previously undocumented threat actor has been identified as behind a string of attacks targeting fuel, energy, and aviation production industries in Russia, the U.S., India, Nepal, Taiwan, and Japan with the goal of stealing data from compromised networks.
Cybersecurity company...
The Shortfalls of Mean Time Metrics in CybersecurityThe Hacker News
Security teams at mid-sized organizations are constantly faced with the question of "what does success look like?". At ActZero, their continued data-driven approach to cybersecurity invites them to grapple daily with measuring, evaluating, and validating the work they do on...
Acquisizione di tabulati telefonici: che cambia col nuovo decreto-leggeMassimo Borgobello
Data retention e data protection irrompono nelle aule dei tribunali, ricordando che il processo inquisitorio deve comunque cedere al superiore valore giuridico delle fonti Ue. Cosa prevede il decreto legge relativo all’acquisizione dei tabulati telefonici e le conseguenze sui processi...
Apple Pay Can be Abused to Make Contactless Payments From Locked iPhonesThe Hacker News
Cybersecurity researchers have disclosed an unpatched flaw in Apple Pay that attackers could abuse to make an unauthorized Visa payment with a locked iPhone by taking advantage of the Express Travel mode set up in the device's wallet.
"An attacker only...

