Security vulnerabilities stories - Page 12
Will 2023 be a pivot year for cybersecurity?
Thu, 2nd Feb 2023
#
cybersecurity
#
skills gap
#
security vulnerabilities
In the past, mega vulnerabilities happened once a quarter, but this past year we've been dealing with critical vulnerabilities almost weekly in some cases.
Service meshes are an emerging way for application teams to implement Zero Trust
Thu, 2nd Feb 2023
#
advanced persistent threat protection
#
zero trust security
#
cybersecurity
Zero Trust is revolutionizing cybersecurity, treating every component as if it's continuously exposed to potential threats. Implementation varies.
China-based threat group targeting public cloud - Radware
Fri, 20th Jan 2023
#
malware
#
ransomware
#
public cloud
China's 8220 Gang has targeted public cloud environments with a custom-built crypto miner and IRC bot, warns Radware.
Trustwave provides new feature for threat hunting platform
Thu, 19th Jan 2023
#
advanced persistent threat protection
#
cybersecurity
#
trustwave
Trustwave has relaunched its Advanced Continual Threat Hunting platform, resulting in a 3x increase in threat findings.
Claroty’s Team82 finds vulnerabilities in historian server
Thu, 19th Jan 2023
#
breach prevention
#
cybersecurity
#
data breach
Claroty's research team, Team82, has examined the GE Proficy Historian, finding five exploitable vulnerabilities capable of causing damage to the system.
Data breach in 2023 to exceed US$5 million/incident: Acronis
Thu, 29th Dec 2022
#
ransomware
#
phishing
#
email security
Between July and October, Acronis found that the proportion of phishing attacks has risen by 1.3, accounting for 76% of all attacks.
GreyNoise Intelligence identifies exploitation threats for 2023
Fri, 23rd Dec 2022
#
uc
#
advanced persistent threat protection
#
cybersecurity
GreyNoise Intelligence unveils its 2022 Mass Exploitation Report, delving deep into threat detection events from the past year.
Iran-sponsored group using GitHub to deploy custom malware
Tue, 13th Dec 2022
#
advanced persistent threat protection
#
apm
#
software development
The Secureworks Counter Threat Unit (CTU) has uncovered a subgroup of Iranian Cobalt Mirage using GitHub to store and deploy malware.
China-based threat group targeting SE Asia, says Mandiant
Fri, 9th Dec 2022
#
malware
#
advanced persistent threat protection
#
cybersecurity
Identified as UNC4191, this cyber espionage threat leverages USB devices as an initial infection vector, concentrates on the Philippines, and has a China nexus.
ASX 200 companies on-par with FTSE 350, Fortune 500 - report
Mon, 5th Dec 2022
#
email security
#
healthtech
#
asx
ASX 200 companies have a good security posture, on-par with global counterparts, according to a new report by Rapid7.
Rapid7 unveils new capabilities to simplify CDR at AWS event
Thu, 1st Dec 2022
#
hyperscale
#
public cloud
#
advanced persistent threat protection
Rapid7 showcases new capabilities at AWS re:Invent 2022 to make cloud detection and response and vulnerability assessments easier.
Varonis Systems launches new program through HackerOne
Thu, 1st Dec 2022
#
saas
#
cloud security
#
advanced persistent threat protection
Data security and analytics pioneer Varonis Systems has launched its public vulnerability disclosure program through HackerOne.
Forescout’s Vedere Labs details OT vulnerabilities in latest study
Wed, 30th Nov 2022
#
it in manufacturing
#
iot security
#
forescout technologies
Forescout’s Vedere Labs disclosed an update to its OT:ICEFALL study distributed in June 2022, which detailed vulnerabilities found in thousands of OT devices.
Gallagher named Security Software Manufacturer of the Year
Mon, 28th Nov 2022
#
advanced persistent threat protection
#
integrated products
#
security vulnerabilities
Global security manufacturer Gallagher has been awarded the Security Software Manufacturer of the Year accolade at the 2022 Security & Fire Excellence Awards.
Application Portfolio Management: A quick win today or a crisis tomorrow
Wed, 23rd Nov 2022
#
digital transformation
#
it debt
#
security vulnerabilities
It’s highly likely that Application Portfolio Management (APM) isn’t at the top of your to-do list. It may not even be on your list anymore.
HackerOne launches Gold Standard Safe Harbour statement
Thu, 17th Nov 2022
#
apm
#
software development
#
customers
The GSSH is a short, broad, easily-understood safe harbour statement that’s simple for customers to adopt, HackerOne states.
Genetec warns against cyber crime risk from older systems
Thu, 17th Nov 2022
#
hcm
#
advanced persistent threat protection
#
risk & compliance
With the ever-increasing rise in cyber crime, Genetec is cautioning organisations of all sizes to be vigilant about the cybersecurity risk.
Varonis Labs discovers SQLi and access flaws in Zendesk
Wed, 16th Nov 2022
#
firewalls
#
network security
#
breach prevention
Varonis helped solve an SQLi vulnerability and an access control flaw in Zendesk Explore that would have allowed a threat actor to leak data.
Aqua Security unveils new Lightning Enforcer offering
Wed, 16th Nov 2022
#
application security
#
advanced persistent threat protection
#
cybersecurity
Aqua Security launches Lightning Enforcer, an eBPF-based technology that provides real-time protection against zero-day attacks.
Building on the ‘Essential Eight’ with a people-centric approach to cybersecurity
Wed, 16th Nov 2022
#
iot
#
breach prevention
#
risk & compliance
Organisations often combat threats by placing too much emphasis on technology alone and too little emphasis on people and their behaviour.