• Log In
  • Skip to primary navigation
  • Skip to main content
  • Skip to primary sidebar
  • Home
  • About
  • Structure
  • Gradebook

ITACS 5211: Introduction to Ethical Hacking

Wade Mackey

Donald Hoxhaj

Amazon’s Whole Foods Market Suffers Credit Card Breach In Some Stores

September 30, 2017 by Donald Hoxhaj 2 Comments

https://thehackernews.com/2017/09/amazon-whole-foods.html

Amazon’s Whole Foods Market Suffers Credit Card Breach In Some Stores

This article talks about the following: Whole Foods Market was acquired by Amazon for 13.7 billion in late August, Whole Foods Market was become a victim of credit card security breach, hacker were able to gain unauthorized access to credit card information for its customers who made purchases at certain venues like taproom and full table series restaurant located within some stores, company has not disclosed details about the total number of stores that were targeted and total number of customers affected by the breach, company did mention that the hacker targeted their point of sale terminals in attempt to steal customer data including credit details, Whole Foods market has hired cybersecurity firm to help with the investigation of the credit card breach and contacted law enforcement authorities of this incident, finally Whole Foods Market is the latest victim of the high-profile cyber-attacks earlier this month Global Tax and Deloitte suffered a cyber-attack.

It will be interesting to see how things unfold in the future. It seems like there is a cyber-attack almost every day but we do not see much action from the government or big organization. Is there a way to minimize or fully eliminate the risk of data breach?

Apple macOS High Sierra Exploit Lets Hackers Steal Keychain Passwords in Plaintext

September 30, 2017 by Donald Hoxhaj Leave a Comment

https://thehackernews.com/2017/09/macos-high-sierra-keychain.html

Apple macOS High Sierra Exploit Lets Hackers Steal Keychain Passwords in Plaintext

This article talks about the following: Apple rolled out a new version of its macOS operation system and a few hours before a hack publicly disclosed the details of critical vulnerability that affects Sierra as well as all earlier versions of macOS, Patrick Wardle the hacker found a critical zero-day vulnerability in macOS that allows any installed application to steal usernames and plaintext password of online accounts stored in the macOS Keychain, macOS Keychain is a build-in password management system that allows users to securely store username and passwords for online application, servers, websites, and credit card information, there is a flaw where malicious non-privileged code in app could programmatically access the Keychain and dump all this data including your plain text passwords, finally Patrick Wardle has release a proof of concept video that demonstrated how the hack can be used to exhilarate every single plaintext password from Keychain.

If you interested on the video -> https://vimeo.com/235313957

Behind-the-Scenes Cryptocurrency Mining Discovered on Showtime Sites

September 30, 2017 by Donald Hoxhaj 1 Comment

https://www.technewsworld.com/story/84838.html

Behind-the-Scenes Cryptocurrency Mining Discovered on Showtime Sites

This article talks about the following: Showtime is a premium television network that operates under CBS, Showtime networks has mined the websites of online viewers using the same Coinhive technology that the pirate bay recently used in test run site, Coinhive JavaScript miner was being used to hijack the CPU of site visitors, Showtime was mining the emerging cryptocurrency Monero, it is unclear whether ShowTime was aware or involved in planting the Coinhive mining technology into its source code, in addition source code found on the site appeared to be lined to the web analytics firm New Relic, the JavaScript miner targets compromised websites and uses social engineering to lures and make users pay for illegitimate tech support, cryptocurrencies like Bitcoin, Monero, and LiteCoin are operating in a kind of wild west environment where the rules are still not quite settled, and finally companies like Showtime and Pirate Bay are seeing what they can get away with.

It will be interesting to see how things unfold in the future. Most importantly, what the future holds for cryptocurrencies, will they continue to go up? Also, once they do will they be regulated by the government? Finally, will cryptocurrencies start to compete with the big banks?

Consumers Gain More Power to Seek Data Breach Damages

September 24, 2017 by Donald Hoxhaj 1 Comment

http://www.technewsworld.com/story/84747.html

Consumers Gain More Power to Seek Data Breach Damages

This article talks about the following: The federal apples court decision handed down earlier this month, significantly expand the circumstances under which consumers may pursue class actions against companies, CareFirst which had an cyberattack was found not liable for the damage caused to the consumers but the ruling was later overruled by the U.S court of Appeals, with the new ruling companies face massive settlements, and finally companies must up their cybersecurity game or if not they will face litigation which can be very costly.

It will be interesting to see how things unfold in the future. Will companies up their security to prevent from data beaches or take the risk of getting sued? If they decide to up their security, how is that going to affect the daily operation? Also, will we see more pressure from the government where they up the regulation?

Credit Agency Equifax Cracked, 143 Million Consumers Exposed

September 24, 2017 by Donald Hoxhaj 1 Comment

http://www.technewsworld.com/story/84795.html

Credit Agency Equifax Cracked, 143 Million Consumers Exposed

This article talks about the following: Equifax suffered a major criminal data breach that exposed personal information of as many as 143 million consumers in U.S, sensitive personal data, including names, addresses, social security number, birth dates, and driver license number were exposed, Equifax took action as soon as they found out about the attack, Equifax responded well to the attack, they accepted full responsibility and immediately started to work on the issue, and finally consumers should check the Equifax site to insure that their data has not been exposed.

It will be interesting to see how things unfold in the upcoming months. Are there other companies that might be affected due to doing business with Equifax? Did Equifax have the right controls in place to prevent the attack or were they negligent? Also, will they be held accountable and what will the cost be?

  • « Go to Previous Page
  • Page 1
  • Page 2
  • Page 3
  • Page 4

Primary Sidebar

Weekly Discussions

  • Uncategorized (33)
  • Week 01: Overview (2)
  • Week 02: TCP/IP and Network Architecture (2)
  • Week 03: Reconnaisance (11)
  • Week 04: Vulnerability Scanning (14)
  • Week 05: System and User Enumeration (13)
  • Week 06: Sniffers (17)
  • Week 07: NetCat and HellCat (17)
  • Week 08: Social Engineering, Encoding and Encryption (21)
  • Week 09: Malware (14)
  • Week 10: Web Application Hacking (17)
  • Week 11: SQL Injection (13)
  • Week 12: Web Services (18)
  • Week 13: Evasion Techniques (13)
  • Week 14: Review of all topics (11)

Copyright © 2025 · Magazine Pro Theme on Genesis Framework · WordPress · Log in