Skip to main content

Ubiquiti: Change Your Password1

Ubiquiti, a major vendor of cloud-enabled Internet of Things (IoT) devices such as routers, network video recorders, security cameras and access control systems, is urging customers to change their passwords and enable multi-factor authentication. The company says an incident at a third-party cloud provider may have exposed customer account information and credentials used to remotely […]

Sealed U.S. Court Records Expo1

The ongoing breach affecting thousands of organizations that relied on backdoored products by network software firm SolarWinds may have jeopardized the privacy of countless sealed court documents on file with the U.S. federal court system, according to a memo released Wednesday by the Administrative Office (AO) of the U.S. Courts. The judicial branch agency said […]

All Aboard the Pequod!

Like countless others, I frittered away the better part of Jan. 6 doomscrolling and watching television coverage of the horrifying events unfolding in our nation’s capital, where a mob of President Trump supporters and QAnon conspiracy theorists was incited to lay siege to the U.S. Capitol. For those trying to draw meaning from the experience, […]

Library Professionals Saving T1

On this week’s Princh Library Blog post guest writer Anne Reddacliff, Australian librarian, shares the initiatives of the ALIA Sustainable Libraries Group to save the planet. The group saving the planet At ALIA Sustainable Libraries Group our aim is not just to help libraries and librarians with green initiatives but to help them save the […]

Hamas May Be Threat to 8chan, 1

In October 2020, KrebsOnSecurity looked at how a web of sites connected to conspiracy theory movements QAnon and 8chan were being kept online by DDoS-Guard, a dodgy Russian firm that also hosts the official site for the terrorist group Hamas. New research shows DDoS-Guard relies on data centers provided by a U.S.-based publicly traded company, […]

Happy 11th Birthday, KrebsOnSe1

Today marks the 11th anniversary of KrebsOnSecurity! Thank you, Dear Readers, for your continued encouragement and support! With the ongoing disruption to life and livelihood wrought by the Covid-19 pandemic, 2020 has been a fairly horrid year by most accounts. And it’s perhaps fitting that this was also a leap year, piling on an extra […]

Volunteer Vignette: We’re all

In today’s post, Sam Schireson interviews a By the People volunteer, Judith, who has gone above and beyond! By the People is a crowdsourced transcription program launched in 2018 at the Library of Congress. Volunteer-created transcriptions are used to make digitized collections more accessible and discoverable on loc.gov. You can read our other Volunteer Vignette on the Signal […]

VMware Flaw a Vector in SolarW1

U.S. government cybersecurity agencies warned this week that the attackers behind the widespread hacking spree stemming from the compromise at network software firm SolarWinds used weaknesses in other, non-SolarWinds products to attack high-value targets. According to sources, among those was a flaw in software virtualization platform VMware, which the U.S. National Security Agency (NSA) warned […]

Can you help? Seeking people t1

Experimenting toward the Digital Strategy Visualization of the American English Dialect Recordings Collection (held by the American Folklife Center) in Citizen DJ, a recent experiment from LC Labs. In LC Labs we work collaboratively across the Library of Congress, and with external partners, to advance and the agency’s Digital Strategy. We do this through experimentation, […]

Silver Linings

On this week’s Princh Library Blog post we have guest writer Stephen Abram sharing his thoughts on how the ongoing Covid-19 pandemic has affected libraries, and how libraries can adopt to create the “new norm”. What we learnt A few things are clear now: The COVID-19 crisis and the attendant behavioural changes will last a […]

Malicious Domain in SolarWinds1

A key malicious domain name used to control potentially thousands of computer systems compromised via the months-long breach at network monitoring software vendor SolarWinds was commandeered by security experts and used as a “killswitch” designed to turn the sprawling cybercrime operation against itself, KrebsOnSecurity has learned. Austin, Texas-based SolarWinds disclosed this week that a compromise […]

SolarWinds Hack Could Affect 11

The still-unfolding breach at network management software firm SolarWinds may have resulted in malicious code being pushed to nearly 18,000 customers, the company said in a legal filing on Monday. Meanwhile, Microsoft should soon have some idea which and how many SolarWinds customers were affected, as it recently took possession of a key domain name […]

U.S. Treasury, Commerce Depts.1

Communications at the U.S. Treasury and Commerce Departments were reportedly compromised by a supply chain attack on SolarWinds, a security vendor that helps the federal government and a range of Fortune 500 companies monitor the health of their IT networks. Given the breadth of the company’s customer base, experts say the incident may be just […]

Preliminary report on Lighting1

The Lighting the Way project team is pleased to announce the publication of Lighting the Way: A Preliminary Report on the National Forum on Archival Discovery and Delivery, which summarizes and synthesizes the activities and outcome from the event hosted by Stanford Libraries in February 2020. The Forum focused on information sharing and collaborative problem […]

Payment Processing Giant TSYS:1

Payment card processing giant TSYS suffered a ransomware attack earlier this month. Since then reams of data stolen from the company have been posted online, with the attackers promising to publish more in the coming days. But the company says the malware did not jeopardize card data, and that the incident was limited to administrative […]

Leadership for University Libr1

Academic librarianship has faced a great amount of change during the past two decades. Libraries from the higher education system, along with those outsides of it, have handled multiple technological and socio-cultural paradigm shifts, by changing their organizational strategies and services. For example, information today is created, shared, and stored differently than is has been […]

That’s a wrap! 2020 Staff Inno

The 2020 Staff Innovator project brought together two different parts of the Library of Congress—the Library Collections and Services Group (LCSG) and the Office of the Chief Information Officer (OCIO).  LCSG sponsored a 120-day detail that temporarily placed a staff member from LCSG in my team, LC Labs to work together on a problem that […]

Patch Tuesday, Good Riddance 21

Microsoft today issued its final batch of security updates for Windows PCs in 2020, ending the year with a relatively light patch load. Nine of the 58 security vulnerabilities addressed this month earned Microsoft’s most-dire “critical” label, meaning they can be abused by malware or miscreants to seize remote control over PCs without any help […]