TikTok Bug Could Have Exposed Users’ Profile Data and Phone Numbers

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers on Tuesday disclosed a now-patched security flaw in TikTok that could have potentially enabled an attacker to build a database of the app’s users and their associated phone …

vCISO Shares Most Common Risks Faced by Companies With Small Security Teams

Blog WriterThe Hacker News - Original news source is thehackernews.com

Most companies with small security teams face the same issues. They have inadequate budgets, inadequate staff, and inadequate skills to face today’s onslaught of sophisticated cyberthreats. Many of these companies …

N. Korean Hackers Targeting Security Experts to Steal Undisclosed Researches

Blog WriterThe Hacker News - Original news source is thehackernews.com

Google on Monday disclosed details about an ongoing campaign carried out by a government-backed threat actor from North Korea that has targeted security researchers working on vulnerability research and development. …

Pen Testing By Numbers: Tracking Pen Testing Trends and Challenges

Blog WriterThe Hacker News - Original news source is thehackernews.com

Over the years, penetration testing has had to change and adapt alongside the IT environments and technology that need to be assessed. Broad cybersecurity issues often influence the strategy and growth of …

Experts Detail A Recent Remotely Exploitable Windows Vulnerability

Blog WriterThe Hacker News - Original news source is thehackernews.com

More details have emerged about a security feature bypass vulnerability in Windows NT LAN Manager (NTLM) that was addressed by Microsoft as part of its monthly Patch Tuesday updates earlier this month. …

Beware! Fully-Functional Exploit Released Online for SAP Solution Manager Flaw

Blog WriterThe Hacker News - Original news source is thehackernews.com

Cybersecurity researchers have warned of a publicly available fully-functional exploit that could be used to target SAP enterprise software. The exploit leverages a vulnerability, tracked as CVE-2020-6207, that stems from a …