News
US contractor pays $300k to settle accusation it didn't properly look after Medicare users' data
A US government contractor will settle claims it violated cyber security rules prior to a breach that compromised Medicare beneficiaries' personal data.…
Critical default credential bug in Kubernetes Image Builder allows SSH root access
A critical bug in Kubernetes Image Builder could allow unauthorized SSH access to virtual machines (VMs) thanks to default credentials being enabled during the image build process.…
Volkswagen monitoring data dump threat from 8Base ransomware crew
The 8Base ransomware crew claims to have stolen a huge data dump of Volkswagen files and is threatening to publish them, but the German car giant appears to be unconcerned.…
Critical hardcoded SolarWinds credential now exploited in the wild
A critical, hardcoded login credential in SolarWinds' Web Help Desk line has been exploited in the wild by criminals, according to the US Cybersecurity and Infrastructure Security Agency, which has added the security blunder to its Known Exploited Vulnerabilities (KEV) Catalog.…
China’s infosec leads accuse Intel of NSA backdoor, cite chip security flaws
A Chinese industry group has accused Intel of backdooring its CPUs, in addition to other questionable security practices while calling for an investigation into the chipmaker, claiming its products pose "serious risks to national security."…
Strengthen your cybersecurity with automation
Webinar In an era of ever-evolving cyber threats, staying ahead of potential security risks is essential.…
Internet Archive wobbles back online, with limited functionality
The Internet Archive has come back online, in slightly degraded mode, after repelling an October 9 DDoS attack and then succumbing to a raid on users' data.…
IBM acquires Indian SaaS startup Prescinto to shine a light on renewable energy assets
IBM announced on Tuesday it has acquired Prescinto – a Bangalore-based provider of asset performance management software for renewable energy.…
WhatsApp may expose the OS you use to run it – which could expose you to crooks
An analysis of Meta's WhatsApp messaging software reveals that it may expose which operating system a user is running, and their device setup information – including the number of linked devices.…
Cisco confirms 'ongoing investigation' after crims brag about selling tons of data
Cisco has confirmed it is investigating claims of stealing — and now selling — data belonging to the networking giant.…
Microsoft says more ransomware stopped before reaching encryption
Microsoft says ransomware attacks are up 2.75 times compared to last year, but claims defenses are actually working better than ever.…
AI amplifies systemic risk to financial sector, says India's Reserve Bank boss
The governor of India's Reserve Bank, Shri Shaktikanta Das, yesterday warned that AI – and the platforms that provide it – could worsen systemic risk to the nation's financial system.…
China again claims Volt Typhoon hack gang was invented by the US to discredit it
Chinese authorities have published another set of allegations that assert the Volt Typhoon threat actor is an invention of the US and its allies, and not a crew run by Beijing.…
US healthcare org admits up to 400,000 people's personal info was snatched
A Houston-based services provider to healthcare organizations says a crook may have grabbed up to 400,000 people's information after the miscreant accessed the systems of one of its customers.…
Leveraging AI/ML for next-gen SOC environments
Sponsored Post This article discusses some of the challenges traditional SOCs face and how integrating artificial intelligence/machine learning (AI/ML) modules could help solve the challenges faced by security professionals and organizations.…
Trump campaign arms up with 'unhackable' phones after Iranian intrusion
With less than a month to go before American voters head to the polls to choose their next president, the Trump campaign has been investing in secure tech to make sure it doesn't get hacked again.…
Thousands of Fortinet instances vulnerable to actively exploited flaw
More than 86,000 Fortinet instances remain vulnerable to the critical flaw that attackers started exploiting last week, according to Shadowserver's data.…
How to head off data breaches with CIAM
Sponsored Post Recent reports suggest that stolen identity and privileged access credentials now account for 61 percent of all data breaches.…
Crypto-apocalypse soon? Chinese researchers find a potential quantum attack on classical encryption
Chinese researchers claim they have found a way to use D-Wave's quantum annealing systems to develop a promising attack on classical encryption.…
Schools bombarded by nation-state attacks, ransomware gangs, and everyone in between
If we were to draw an infosec Venn diagram, with one circle representing "sensitive info that attackers would want to steal" and the other "limited resources plus difficult-to-secure IT environments," education would sit in the overlap. …