10th Indian Delegation to Dubai, Gitex & Expand North Star – World’s Largest Startup Investor Connect
Tech

PC streaming service Shadow discloses security breach

Shadow, which offers services that let you stream a Windows PC, has disclosed a security breach that led an attacker taking some private customer data. The company is sending emails to customers notifying them that a bad actor was able to extract their first and last name, email address, date of birth, billing address, and credit card expiration date.

Shadow’s CEO confirmed the breach in a statement to The Verge. “We were recently the victim of a highly sophisticated social engineering attack which led to the exfiltration of the database of one of our service providers, resulting in the unauthorized exposure of certain customer data,” Eric Sele says. “We have since then taken immediate steps to secure our systems, including reinforcing the security protocols we apply with all our service providers. Most importantly, no passwords or financial data have been compromised.”

Here’s what happened, according to the email sent to customers (which you can see on Reddit):

At the end of September, we were the victim of a social engineering attack targeting one of our employees. This highly sophisticated attack began on the Discord platform with the downloading of malware under cover of a game on the Steam platform, proposed by an acquaintance of our employee, himself a victim of the same attack.

Our security team took immediate action. Despite our actions, the attacker was able to exploit one of the stolen cookies to connect to the management interface of one of our SaaS providers. Thanks to this cookie, now deactivated, the attacker was able to extract, via our SaaS provider’s API, certain private information about you.

The company says it has “reinforced the security protocols we apply with all our SaaS providers” and that it will be “upgrading our internal systems to render compromised workstations harmless.”

A since-removed Reddit post from a user that identifies as a community manager also included instructions to delete your Shadow account and advises users to “take proactive steps to enhance your online privacy and identity protection.” You can see that post on the Wayback Machine.

by Siliconluxembourg

Would-be entrepreneurs have an extra helping hand from Luxembourg’s Chamber of Commerce, which has published a new practical guide. ‘Developing your business: actions to take and mistakes to avoid’, was written to respond to  the needs and answer the common questions of entrepreneurs.  “Testimonials, practical tools, expert insights and presentations from key players in our ecosystem have been brought together to create a comprehensive toolkit that you can consult at any stage of your journey,” the introduction… Source link

by WIRED

B&H Photo is one of our favorite places to shop for camera gear. If you’re ever in New York, head to the store to check out the giant overhead conveyor belt system that brings your purchase from the upper floors to the registers downstairs (yes, seriously, here’s a video). Fortunately B&H Photo’s website is here for the rest of us with some good deals on photo gear we love. Save on the Latest Gear at B&H Photo B&H Photo has plenty of great deals, including Nikon’s brand-new Z6III full-frame… Source link

by Gizmodo

Long before Edgar Wright’s The Running Man hits theaters this week, the director of Shaun of the Dead and Hot Fuzz had been thinking about making it. He read the original 1982 novel by Stephen King (under his pseudonym Richard Bachman) as a boy and excitedly went to theaters in 1987 to see the film version, starring Arnold Schwarzenegger. Wright enjoyed the adaptation but was a little let down by just how different it was from the novel. Years later, after he’d become a successful… Source link