Tag: finance
-
New Phishing Tactic Targets PayPal’s 434M Users
A new PayPal phishing scam adds attackers as secondary users, letting them drain accounts while evading traditional detection. First seen on esecurityplanet.com Jump to article: www.esecurityplanet.com/news/paypal-email-scam-2025/
-
Principal Financial pioneers biometric authentication to beat online fraud
Tags: attack, authentication, business, ciso, compliance, conference, crime, crimes, data, finance, fraud, government, privacy, risk, strategy, threat, tool, vulnerabilityImplementing quickly and decisively. Fraud was rising at an alarming pace, so speed mattered. Principal had to test, validate, and deploy a solution in months, not years.Balancing security with usability. Principal needed biometric authentication that was simple enough that customers wouldn’t get frustrated and abandon the process.Navigating uncharted territory. Principal was shifting to DIVA without…
-
Pressure on CISOs to stay silent about security incidents growing
Tags: access, breach, business, cio, ciso, corporate, credentials, credit-card, crowdstrike, cybersecurity, data, data-breach, email, finance, framework, group, hacker, iam, identity, incident response, insurance, law, mfa, ransomware, sap, security-incident, software, theft, threat, training‘Intense pressure’ to keep quiet about security incidents: CSO spoke to two other former CISOs who reported pressures to stay silent about suspected security incidents. Both CISOs requested to remain anonymous due to end-of-contract confidentiality agreements made with previous employers.”While working inside a Fortune Global 500 company in Europe, I witnessed this multiple times,” one…
-
New Scam Targets PayPal Users During Account Profile Setup
A highly sophisticated phishing campaign is targeting PayPal users with a deceptive email designed to grant scammers direct access to their accounts. The attack, which has been circulating for at least a month, uses a clever trick that bypasses traditional phishing detection methods by leading victims to the official PayPal website. The scam begins with…
-
FTC announces settlement with toy robot makers that tracked location of children
Apitor collected data without informing parents or asking for permission, the FTC said, violating federal parental consent requirements. First seen on cyberscoop.com Jump to article: cyberscoop.com/ftc-settlement-apitor-childrens-privacy-violation/
-
Court rules ‘fired’ FTC commissioners be reinstated, again
Tags: financeIn a 2-1 decision, an appeals court upheld a 1935 Supreme Court precedent restricting the president’s ability to fire FTC commissioners. First seen on cyberscoop.com Jump to article: cyberscoop.com/court-rules-ftc-commissioners-reinstated-again-rebecca-slaughter-alvaro-bedoya/
-
FTC fines toy manufacturer for allowing Chinese third-party to collect kids’ data
The complaint alleges that the toy manufacturer Apitor published a privacy policy saying that it complied with the Children’s Online Privacy Protection Rule, but in reality violated the law by collecting the location data from children without parental consent. First seen on therecord.media Jump to article: therecord.media/chinese-toy-manufacturer-fine-ftc-kids-data
-
Synack + Tenable: AI-Powered Partnership Translates Vulnerability Insights into Action
Tags: ai, attack, breach, cyber, cybersecurity, data, data-breach, defense, exploit, finance, firewall, flaw, group, hacker, infrastructure, intelligence, kev, penetration-testing, RedTeam, risk, service, skills, software, threat, tool, update, vulnerability, vulnerability-management, zero-dayThe combined Synack/Tenable solution reduces alert noise for overloaded security teams, isolating the most exploitable threats so they can proactively close security gaps faster. Vulnerability Assessment 🤠Penetration Testing Vulnerability assessment, including automated scanning, is a great first step in identifying potential security risks. However, massive amounts of data can make it tricky for security…
-
Synack + Tenable: AI-Powered Partnership Translates Vulnerability Insights into Action
Tags: ai, attack, breach, cyber, cybersecurity, data, data-breach, defense, exploit, finance, firewall, flaw, group, hacker, infrastructure, intelligence, kev, penetration-testing, RedTeam, risk, service, skills, software, threat, tool, update, vulnerability, vulnerability-management, zero-dayThe combined Synack/Tenable solution reduces alert noise for overloaded security teams, isolating the most exploitable threats so they can proactively close security gaps faster. Vulnerability Assessment 🤠Penetration Testing Vulnerability assessment, including automated scanning, is a great first step in identifying potential security risks. However, massive amounts of data can make it tricky for security…
-
Hackers Grab $130M Using Brazil’s Real-Time Payment System
HSBC and Another Firm Hit After Service Provider Breached; Some Funds Recovered. Attackers on Friday used valid credentials for financial technology provider Sinqia to steal $130 million from two financial services firms in Brazil, using the country’s real-time payment system Pix. The Brazilian Central Bank moved quickly to freeze the funds and has recovered some…
-
Alternativen gesucht: Paypal-Chaos offenbart gefährliche Zahlungsabhängigkeit
Tags: financeDer Ausfall von Paypal zeigt, dass Europa eigene Alternativen bei Online-Zahlungen bräuchte. Allerdings wird es für neue Anbieter schwierig, die US-Dominanz zu durchbrechen. First seen on golem.de Jump to article: www.golem.de/news/alternativen-gesucht-paypal-chaos-offenbart-gefaehrliche-zahlungsabhaengigkeit-2509-199744.html
-
Nach Zahlungsblockaden: Paypal warnt Nutzer vor unzureichender Kontodeckung
Tags: financePaypal verunsichert Nutzer nach einer Störung von Ende August mit Warnmeldungen. In der Regel besteht jedoch kein Handlungsbedarf. First seen on golem.de Jump to article: www.golem.de/news/nach-zahlungsblockaden-paypal-warnt-nutzer-vor-unzureichender-kontodeckung-2509-199733.html
-
Who watches the watchmen? Surveillanceware firms make bank, avoid oversight
Enough governments love it and it’s highly lucrative First seen on theregister.com Jump to article: www.theregister.com/2025/09/02/commercial_surveillanceware_safe/
-
Who watches the watchmen? Surveillanceware firms make bank, avoid oversight
Enough governments love it and it’s highly lucrative First seen on theregister.com Jump to article: www.theregister.com/2025/09/02/commercial_surveillanceware_safe/
-
OT Security Financial Risk Report von Dragos – Cyberangriffe auf Industrieanlagen Schäden in Milliardenhöhe
First seen on security-insider.de Jump to article: www.security-insider.de/cyberangriffe-industrieanlagen-finanzielle-risiken-schutzmassnahmen-a-9be6367f5023ce3185e25817cb0a2443/
-
OT Security Financial Risk Report von Dragos – Cyberangriffe auf Industrieanlagen Schäden in Milliardenhöhe
First seen on security-insider.de Jump to article: www.security-insider.de/cyberangriffe-industrieanlagen-finanzielle-risiken-schutzmassnahmen-a-9be6367f5023ce3185e25817cb0a2443/
-
Lazarus Hackers Exploit 0-Day to Deploy Three Remote Access Trojans
Over the past two years, Fox-IT and NCC Group have tracked a sophisticated Lazarus subgroup targeting financial and cryptocurrency firms. This actor overlaps with AppleJeus, Citrine Sleet, UNC4736 and Gleaming Pisces campaigns and leverages three distinct remote access trojans (RATs)”, PondRAT, ThemeForestRAT and RemotePE”, to infiltrate and control compromised systems. In a 2024 incident response…
-
Are You Fully Satisfied with Your Secrets Rotation?
Are Your Secrets Rotation Standards Meeting Expectations? Does your organization have a comprehensive secrets rotation system that instills confidence and satisfaction? Secrets rotation is a pivotal aspect of data management, especially concerning Non-Human Identities (NHIs). NHIs and secrets security management is a hot topic in every industry, from finance and healthcare to DevOps and SOC……
-
Scammer Spoofs a City Supplier, Steals $1.5 Million from Baltimore
A scammer that spoofed a city supplier convinced employees in the City of Baltimore’s Accounts Payable Department to send two EFT payments totaling more than $1.5 million to a bank account they controlled and illustrating the ongoing threat posed by BEC fraud. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/09/scammer-spoofs-a-city-supplier-steals-1-5-million-from-baltimore/
-
Are You Fully Satisfied with Your Secrets Rotation?
Are Your Secrets Rotation Standards Meeting Expectations? Does your organization have a comprehensive secrets rotation system that instills confidence and satisfaction? Secrets rotation is a pivotal aspect of data management, especially concerning Non-Human Identities (NHIs). NHIs and secrets security management is a hot topic in every industry, from finance and healthcare to DevOps and SOC……
-
Scammer Spoofs a City Supplier, Steals $1.5 Million from Baltimore
A scammer that spoofed a city supplier convinced employees in the City of Baltimore’s Accounts Payable Department to send two EFT payments totaling more than $1.5 million to a bank account they controlled and illustrating the ongoing threat posed by BEC fraud. First seen on securityboulevard.com Jump to article: securityboulevard.com/2025/09/scammer-spoofs-a-city-supplier-steals-1-5-million-from-baltimore/
-
Super-Apps and Embedded Finance: The Innovation Battle for Customer Wallets
Tags: financeForget downloading ten different apps for ten different needs. In 2025, the battle for your customer’s wallet isn’t happening in banks or retail stores. It…Read More First seen on securityboulevard.com Jump to article: https://securityboulevard.com/2025/09/super-apps-and-embedded-finance-the-innovation-battle-for-customer-wallets/
-
PayPal-Zahlungsausfälle: Verbraucherzentrale NRW gibt Betroffenen Empfehlungen
Tags: financeFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/paypal-zahlungsausfaelle-verbraucherzentrale-nrw-betroffene-empfehlungen
-
PayPal-Zahlungsausfälle: Verbraucherzentrale NRW gibt Betroffenen Empfehlungen
Tags: financeFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/paypal-zahlungsausfaelle-verbraucherzentrale-nrw-betroffene-empfehlungen
-
PayPal-Zahlungsausfälle: Verbraucherzentrale NRW gibt Betroffenen Empfehlungen
Tags: financeFirst seen on datensicherheit.de Jump to article: www.datensicherheit.de/paypal-zahlungsausfaelle-verbraucherzentrale-nrw-betroffene-empfehlungen
-
Nach Paypal-Chaos: BSI warnt vor Risiken bei Zahlungsdienstleistern
Was passiert mit den Daten, werden bei Ausfällen Gründe genannt? Ohne Paypal zu nennen, ruft das BSI auf, nicht nur nach der Usability auszuwählen. First seen on golem.de Jump to article: www.golem.de/news/transparenz-und-kommunikation-bsi-raet-indirekt-von-weiterer-paypal-nutzung-ab-2508-199663.html
-
Fraudulent Scholarship Apps Target Students in “Defarud” Scam Campaign
An Android malware tracker named SikkahBot, active since July 2024 and explicitly targeting students in Bangladesh. Disguised as applications from the Bangladesh Education Board, SikkahBot lures victims with promises of scholarships, coerces them into sharing sensitive information, and requests high-risk permissions. Once installed, it harvests personal and financial data, intercepts SMS messages, abuses the Accessibility…

