ICT Security-Sécurité PC et Internet
87.1K views | +0 today
Follow
ICT Security-Sécurité PC et Internet
ICT Security + Privacy + Piracy + Data Protection - Censorship - Des cours et infos gratuites sur la"Sécurité PC et Internet" pour usage non-commercial... (FR, EN+DE)...
Curated by Gust MEES
Your new post is loading...
Your new post is loading...
Scooped by Gust MEES
February 6, 2018 11:54 AM
Scoop.it!

Grammarly user? Patch now to stop crooks stealing all your data… | #CyberSecurity #DataBreaches #Awareness #Privacy #Updates

Grammarly user? Patch now to stop crooks stealing all your data… | #CyberSecurity #DataBreaches #Awareness #Privacy #Updates | ICT Security-Sécurité PC et Internet | Scoop.it
Have you watched a YouTube video lately in a country where English is widely used?

If so, we’re willing to bet that you’ve seen an advert for Grammarly, an online spelling and grammar checker.

In fact, we’ll suggest you’ve seen the Grammarly ad many times, perhaps even very many times – we certainly have.

The ads seem to be working, with the product currently closing in on 1,000,000 installs in Firefox, and already claiming more than 10,000,000 in Chrome.

As the product pitch in the Firefox add-on store explains:

Once you register your new account, you will start to receive weekly emails with personalized insights and performance stats (one of our most popular new features). Working on a large project, an essay, or a blog post? No sweat. You can create and store all of your documents in your new online editor.

In other words, your Grammarly account ends up knowing a lot about you, and holding copies of a lot of what you’ve written.

A security hole in Grammarly could therefore tell crooks much more about you than you’d like them to know.

 

Learn more / En savoir plus / Mehr erfahren.

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=Grammarly

 

 

Gust MEES's insight:
Have you watched a YouTube video lately in a country where English is widely used?

If so, we’re willing to bet that you’ve seen an advert for Grammarly, an online spelling and grammar checker.

In fact, we’ll suggest you’ve seen the Grammarly ad many times, perhaps even very many times – we certainly have.

The ads seem to be working, with the product currently closing in on 1,000,000 installs in Firefox, and already claiming more than 10,000,000 in Chrome.

As the product pitch in the Firefox add-on store explains:

Once you register your new account, you will start to receive weekly emails with personalized insights and performance stats (one of our most popular new features). Working on a large project, an essay, or a blog post? No sweat. You can create and store all of your documents in your new online editor.

In other words, your Grammarly account ends up knowing a lot about you, and holding copies of a lot of what you’ve written.

A security hole in Grammarly could therefore tell crooks much more about you than you’d like them to know.

 

Learn more / En savoir plus / Mehr erfahren.

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=Grammarly

 

 

No comment yet.
Scooped by Gust MEES
December 2, 2015 12:21 PM
Scoop.it!

Hacker erbeuten Vtech-Profile von 509.000 Kindern aus Deutschland | DataBreaches

Hacker erbeuten Vtech-Profile von 509.000 Kindern aus Deutschland | DataBreaches | ICT Security-Sécurité PC et Internet | Scoop.it
Hacker haben einige Hunderttausend Vtech-Profile von Kindern und Eltern aus Deutschland erbeutet.




Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Vtech


 http://www.scoop.it/t/securite-pc-et-internet/?tag=DATA-BREACHES



Gust MEES's insight:
Hacker haben einige Hunderttausend Vtech-Profile von Kindern und Eltern aus Deutschland erbeutet.




Learn more / En savoir plus / Mehr erfahren:


http://www.scoop.it/t/securite-pc-et-internet/?tag=Vtech


 http://www.scoop.it/t/securite-pc-et-internet/?tag=DATA-BREACHES


No comment yet.
Scooped by Gust MEES
November 30, 2015 9:34 AM
Scoop.it!

Kundendaten des Spielzeugherstellers Vtech gestohlen

Kundendaten des Spielzeugherstellers Vtech gestohlen | ICT Security-Sécurité PC et Internet | Scoop.it
Der chinesische Spielzeughersteller Vtech, der mit vielen Produkten vor allem für kleine Kinder auch hierzulande vertreten ist, hat eine erfolgreiche Hacker-Attacke eingeräumt, bei der Millionen von Kundendaten geklaut wurden. Dazu zählen Informationen wie Namen, Postadressen, E-Mail-Adressen, Passwörter, Sicherheitsfragen und zugehörige Antworten sowie IP-Adressen und Download-Chronik.

Das Perfide an diesem Hack: Vtech hat viele Daten über Kinder gesammelt, die nun auch in den Händen der Kriminellen sind.
(Quelle: Troy Hunt )Die Daten stammen von der „Learning Lodge“-Webseite des Unternehmens, auf der sich Kunden registrieren konnten, um Apps, Lernspiele, E-Books und andere Inhalte herunterzuladen. Derzeit ist die Learning Lodge nicht mehr erreichbar. Nach Angaben von Vtech wurden auf der Seite keine Kreditkartendaten erhoben, deswegen wurden auch keine entsprechenden Daten gestohlen. Zahlungen waren zwar vorgesehen, wurden laut Vtech aber über einen Drittanbieter abgewickelt.


Learn more / En savoir plus / Mehr erfahren:

 http://www.scoop.it/t/securite-pc-et-internet/?tag=DATA-BREACHES


http://www.scoop.it/t/securite-pc-et-internet/?tag=Vtech


Gust MEES's insight:

Der chinesische Spielzeughersteller Vtech, der mit vielen Produkten vor allem für kleine Kinder auch hierzulande vertreten ist, hat eine erfolgreiche Hacker-Attacke eingeräumt, bei der Millionen von Kundendaten geklaut wurden. Dazu zählen Informationen wie Namen, Postadressen, E-Mail-Adressen, Passwörter, Sicherheitsfragen und zugehörige Antworten sowie IP-Adressen und Download-Chronik.

Das Perfide an diesem Hack: Vtech hat viele Daten über Kinder gesammelt, die nun auch in den Händen der Kriminellen sind.
(Quelle: Troy Hunt )Die Daten stammen von der „Learning Lodge“-Webseite des Unternehmens, auf der sich Kunden registrieren konnten, um Apps, Lernspiele, E-Books und andere Inhalte herunterzuladen. Derzeit ist die Learning Lodge nicht mehr erreichbar. Nach Angaben von Vtech wurden auf der Seite keine Kreditkartendaten erhoben, deswegen wurden auch keine entsprechenden Daten gestohlen. Zahlungen waren zwar vorgesehen, wurden laut Vtech aber über einen Drittanbieter abgewickelt.


Learn more / En savoir plus / Mehr erfahren:

 http://www.scoop.it/t/securite-pc-et-internet/?tag=DATA-BREACHES


http://www.scoop.it/t/securite-pc-et-internet/?tag=Vtech



No comment yet.
Scooped by Gust MEES
September 4, 2012 9:56 AM
Scoop.it!

Hacker veröffentlichen 1 Million iOS-Nutzer-Daten

Hacker veröffentlichen 1 Million iOS-Nutzer-Daten | ICT Security-Sécurité PC et Internet | Scoop.it
Wer ein iPhone oder ein iPad sein eigen nennt, findet sich vielleicht auf einer im Netz veröffentlichten Liste wieder. Noch brisanter ist aber die Herkunft der Daten.

 

 

 

 

Mehr erfahren:

http://www.pcwelt.de/news/Apple-Hacker-erbeuten-Millionen-iOS-UDIDs-6549560.html?r=461529423205685&lid=194328

 

No comment yet.
Scooped by Gust MEES
February 6, 2018 11:31 AM
Scoop.it!

Grammarly's flawed Chrome extension exposed users' private documents | #CyberSecurity #Privacy #DataBreaches #DataBreaches #Awareness

Grammarly's flawed Chrome extension exposed users' private documents | #CyberSecurity #Privacy #DataBreaches #DataBreaches #Awareness | ICT Security-Sécurité PC et Internet | Scoop.it


Grammarly has fixed a security bug in its Chrome extension that inadvertently allowed access to a user's account -- including their private documents and data.

Tavis Ormandy, a security researcher at Google's Project Zero who found the "high severity" vulnerability, said the browser extension exposed authentication tokens to all websites.

That means any website can access a user's documents, history, logs, and other data, the bug report said.

"I'm calling this a high severity bug, because it seems like a pretty severe violation of user expectations," said Ormandy, because "users would not expect that visiting a website gives it permission to access documents or data they've typed into other websites."

In proof-of-concept code, he explained how to trigger the bug in four lines of code.

More than 22 million users have installed the grammar-checking extension.

Ormandy filed his bug report Friday, subject to a 90-day disclosure deadline -- as is the industry standard. Grammarly issued an automatic update Monday to fix the issue.

Ormandy has in recent months examined several vulnerable web browser extensions. Earlier this year, he found a remote code execution flaw in the Cisco WebEx Chrome extension, and a data-stealing bug in the popular LastPass password manager.

A spokesperson for Grammarly did not immediately return a request for comment.

 

Learn more / En savoir plus / Mehr erfahren:

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=DATA-BREACHES

 

 

Gust MEES's insight:

Grammarly has fixed a security bug in its Chrome extension that inadvertently allowed access to a user's account -- including their private documents and data.

Tavis Ormandy, a security researcher at Google's Project Zero who found the "high severity" vulnerability, said the browser extension exposed authentication tokens to all websites.

That means any website can access a user's documents, history, logs, and other data, the bug report said.

"I'm calling this a high severity bug, because it seems like a pretty severe violation of user expectations," said Ormandy, because "users would not expect that visiting a website gives it permission to access documents or data they've typed into other websites."

In proof-of-concept code, he explained how to trigger the bug in four lines of code.

More than 22 million users have installed the grammar-checking extension.

Ormandy filed his bug report Friday, subject to a 90-day disclosure deadline -- as is the industry standard. Grammarly issued an automatic update Monday to fix the issue.

Ormandy has in recent months examined several vulnerable web browser extensions. Earlier this year, he found a remote code execution flaw in the Cisco WebEx Chrome extension, and a data-stealing bug in the popular LastPass password manager.

A spokesperson for Grammarly did not immediately return a request for comment.

 

Learn more / En savoir plus / Mehr erfahren:

 

https://www.scoop.it/t/securite-pc-et-internet/?&tag=DATA-BREACHES

 

No comment yet.
Scooped by Gust MEES
November 30, 2015 10:12 AM
Scoop.it!

VTech toymaker hacked – millions of families have their personal info exposed

VTech toymaker hacked – millions of families have their personal info exposed | ICT Security-Sécurité PC et Internet | Scoop.it

VTech, a leading maker of electronic learning toys, has suffered a serious security breach, with hackers accessing a database containing information about customers and their children.

As a result, data including users’ email addresses, home addresses, security questions and answers, children’s names and dates of birth, and easily-reversible passwords have been accessed.


Learn more / En savoir plus / Mehr erfahren:

 http://www.scoop.it/t/securite-pc-et-internet/?tag=DATA-BREACHES


http://www.scoop.it/t/securite-pc-et-internet/?tag=Vtech



Gust MEES's insight:

VTech, a leading maker of electronic learning toys, has suffered a serious security breach, with hackers accessing a database containing information about customers and their children.

As a result, data including users’ email addresses, home addresses, security questions and answers, children’s names and dates of birth, and easily-reversible passwords have been accessed.


Learn more / En savoir plus / Mehr erfahren:

 http://www.scoop.it/t/securite-pc-et-internet/?tag=DATA-BREACHES


http://www.scoop.it/t/securite-pc-et-internet/?tag=Vtech


No comment yet.
Scooped by Gust MEES
September 4, 2012 11:26 AM
Scoop.it!

Herfordshire Police reports externally hosted database was hacked with data published

Herfordshire Police reports externally hosted database was hacked with data published | ICT Security-Sécurité PC et Internet | Scoop.it
The website of Hertfordshire Police has been hacked, with login details and passwords for dozens of officers published.

 

Read more:

http://www.scmagazineuk.com/herfordshire-police-reports-externally-hosted-database-was-hacked-with-data-published/article/257207/

 

No comment yet.
Scooped by Gust MEES
August 28, 2012 2:47 PM
Scoop.it!

University of Rhode Island server breach exposes staff and student data

University of Rhode Island server breach exposes staff and student data | ICT Security-Sécurité PC et Internet | Scoop.it
URI took a publicly available server offline after a breach compromised the information of faculty and students.

 

University of Rhode Island (URI) officials disabled the school's College of Business Administration computer server, after the personal information of more than 1,000 faculty and students, as well as students from another school, was publicly available.

How many victims?

 

About 1,000 current and former URI faculty members, in addition to 22 former students of the university and 80 students from an unnamed out-of-state school.

 

What type of personal information? The names, birth dates, Social Security numbers and some compensation information of faculty members.

 

Former URI students had their Social Security numbers and names exposed, while students from the out-of-state school had their grades, names and Social Security numbers posted to the server.

 

Read more:

http://www.scmagazine.com/university-of-rhode-island-server-breach-exposes-staff-and-student-data/article/256398/

 

No comment yet.