News, sports websites vulnerable to cyber attacks: study

June 11, 2017

London, Jun 11: News and sports websites have some of the lowest levels of security adoption, making them vulnerable to cyber attacks, a new study has found.newsweb

Researchers looked at the security protocols used by the top 500 sites in various industries and online sectors. They found that fewer than 10 per cent of news and sports websites used basic security protocols such as Transport Layer Security (TLS).

Even those that do are not always using the "latest or strongest protocols", researchers said.

"It is like news and sport content providers do not value the security of their content," said Professor Alan Woodward, a cyber-security expert at the University of Surrey in the UK. "They are leaving themselves vulnerable to attacks like cross-site scripting, where an attacker can pretend something has come from a website when it has not," said Woodward.

The study shows that some sectors seem much more security-conscious than others, 'BBC News' reported.

The websites of computer and technology companies and financial organisations showed a much higher level of adoption than shopping and gaming sites, for example.

A quarter of the shopping sites studied were using TLS, which offers tools including digital certificates, remote passwords, and a choice of ciphers to encrypt traffic between a website and its visitors. The study was published in the Journal of Cyber Security Technology.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 13,2020

New Delhi, Jul 13: The Income Tax Department has facilitated a new functionality for banks and post offices to ascertain TDS applicability rates on cash withdrawal of above Rs 20 lakh in case of a non-filer of the income-tax return and that of above Rs 1 crore in case of a filer of the income-tax return.

In a statement, the Central Board of Direct Taxes (CBDT) said that now banks and post offices have to only enter the PAN of the person who is withdrawing cash for ascertaining the applicable rate of TDS.

So far, more than 53,000 verification requests have been executed successfully on this facility, a statement by the CBDT said.

"CBDT today said that this functionality available as 'Verification of applicability u/s 194N' on www.incometaxindiaefiling.gov.in since 1st July 2020, is also made available to the Banks through web-services so that the entire process can be automated and be linked to the Bank's internal core banking solution," it said.

On entering PAN by the bank or the post office, a message will be instantly displayed on the departmental utility: "TDS is deductible at the rate of 2 per cent if cash withdrawal exceeds Rs 1 crore", in case the person withdrawing cash is a filer of the income-tax return.

In case the person withdrawing cash is a non-filer of income tax return, the message shown would be: "TDS is deductible at the rate of 2 per cent if cash withdrawal exceeds Rs 20 lakh and at the rate of 5 per cent if it exceeds Rs 1 crore."

The CBDT said that the data on cash withdrawal indicated that huge amount of cash is withdrawn by the persons who have never filed income-tax returns.

To ensure filing of return by these persons and to keep track on cash withdrawals by the non-filers, and to curb black money, the Finance Act, 2020 with effect from July 1, 2020 further amended IT Act to lower threshold of cash withdrawal to Rs 20 lakh for the applicability of this TDS for the non-filers and also mandated TDS at the higher rate of 5 per cent on cash withdrawal exceeding Rs 1 crore by the non-filers.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
May 27,2020

Due to impacts of COVID-19, shipments of total mobile phones are forecast to decline 14.6% in 2020, while smartphone shipments will achieve a slightly slower decline of 13.7 % year over year to total 1.3 billion units this year, according to a Gartner forecast on Tuesday.

"While users have increased the use of their mobile phones to communicate with colleagues, work partners, friends and families during lockdowns, reduced disposable income will result in fewer consumers upgrading their phones," Ranjit Atwal, Senior Research Director at Gartner, said in a statement.

"As a result, phone lifetimes will extend from 2.5 years in 2018 to 2.7 years in 2020," said Atwal.

In 2020, affordable 5G phones were expected to be the catalyst to increase phone replacements, but now it is unlikely to be the case.

5G phones are now forecast to represent only 11% of total mobile phone shipments in 2020.

"The delayed delivery of some 5G flagship phones is an ongoing issue," said Annette Zimmermann, Research Vice President at Gartner.

"Moreover, the lack of 5G geographical coverage along with the increasing cost of the 5G phone contract will impact the choice of a 5G phone."

Overall, spending on 5G phones will be impacted in most regions apart from China, where continued investment in 5G infrastructure is expected, allowing providers in China to effectively market 5G phones.

The combined global shipments PCs, tablets and mobile phones are on pace to decline 13.6% in 2020, according to the forecast.

PC shipments are expected to decline 10.5% this year. Shipments of notebooks, tablets and Chromebooks are forecast to decline slower than the PC market overall in 2020.

"The forecasted decline in the PC market in particular could have been much worse," said Atwal.

"However, government lockdowns due to COVID-19 forced businesses and schools to enable millions of people to work from home and increase spending on new notebooks, Chromebooks and tablets for those workers. Education and government establishments also increased spending on those devices to facilitate e-learning."

Gartner said that 48 per cent of employees will likely work remotely at least part of the time after the COVID-19 pandemic, compared to 30 % pre-pandemic.

Overall, the work from home trend will make IT departments shift to more notebooks, tablets and Chrome devices for work.

"This trend combined with businesses required to create flexible business continuity plans will make business notebooks displace desk based PCs through 2021 and 2022," said Atwal.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.
Agencies
July 18,2020

New Delhi, Jul 18: India's national cybersecurity agency CERT-in, has warned people of credit card skimming spreading across the world through e-commerce platforms.

Attackers are typically targeting e-commerce sites because of their wide presence, popularity and the environment LAMP (Linux, Apache, MySQL, and PHP), the Computer Emergency Response Team (CERT-In) said in a notice on Thursday.

Recently, attackers targeted sites which were hosted on Microsoft's IIS server running with the ASP.NET web application framework, it said.

Some of the sites affected by the attack were found to be running ASP.NET version 4.0.30319, which is no longer officially supported by Microsoft and may contain multiple vulnerabilities, CERT-In said.

The notice also included a list of best practices for website developers including the use of the latest version of ASP.NET web framework, IIS web server and database server.

The advisory is based on research by Malwarebytes which found that this skimming campaign likely began sometime in April this year.

Credit card skimming has become a popular activity for cybercriminals over the past few years, and the increase in online shopping during the pandemic means additional business for them, too, Malwarebytes said in a blog post, adding that attackers do not need to limit themselves to the most popular e-commerce platforms.

Researchers from global cybersecurity and anti-virus brand Kaspersky had warned in December last year that more cybercriminal groups will target online payment processing systems in 2020. 

It said that over the past couple of years, so-called JS-skimming (the method of stealing of payment card data from online stores), has gained immense popularity among attackers. 

Kaspersky researchers in their report said they are currently aware of at least 10 different actors involved in these type of attacks.

Their number will continue to grow during the next year, the report said, adding that the most dangerous attacks will be on companies that provide services such as e-commerce as-a-service, which will lead to the compromise of thousands of companies.

Comments

Add new comment

  • Coastaldigest.com reserves the right to delete or block any comments.
  • Coastaldigset.com is not responsible for its readers’ comments.
  • Comments that are abusive, incendiary or irrelevant are strictly prohibited.
  • Please use a genuine email ID and provide your name to avoid reject.