The PCI Security Standards Council has expanded its PIN entry device security requirements program to two new types of devices: Unattended payment terminals (such as ticket kiosks) and hardware security modules (used for card personalization and PIN translation). The devices can now be rigorously tested for approval by the Council's labs to ensure compliance with PCI Standards, according to a statement. — CAM
Qualcomm on Tuesday disclosed nearly two dozen security vulnerabilities in its chipsets, including the company’s flagship suite of SnapDragon processor chips and affecting products that range from cars to powerline communications.
Open source software utilization has been scaled back by nearly 40% of industry professionals due to security concerns, with more than 50% reducing open source usage following the emergence of the widespread Log4j vulnerability, The Register reports.
New security vulnerabilities have been added by Keksec threat group, also known as Kek Security, FreakOut, and Necro, to its Enemybot Linux-based botnet to attack web servers, content management systems, and Android devices, reports The Hacker News.
Get daily email updates
SC Media's daily must-read of the most current and pressing daily news