Security vulnerabilities stories - Page 3

Tenable discovers vulnerabilities in IaC & PaC platforms
Thu, 21st Nov 2024
#
malware
#
endpoint protection
#
cloud security
Tenable's Cloud Security Research team has uncovered critical vulnerabilities in policy-as-code frameworks, escalating risks of data breaches and leaks.

Critical needrestart vulnerabilities found in Ubuntu Servers
Wed, 20th Nov 2024
#
malware
#
cybersecurity
#
ubuntu
The Qualys Threat Research Unit has identified five critical vulnerabilities in needrestart used by Ubuntu Servers, risking unauthorized root access for users.

eBPF Foundation unveils security threat model & audit
Mon, 18th Nov 2024
#
supply chain & logistics
#
open source
#
cybersecurity
The eBPF Foundation has unveiled two reports on eBPF security, including a threat model and a verifier code audit, aiming to enhance safe deployment.

November Patch Tuesday reveals 90 vulnerabilities
Wed, 13th Nov 2024
#
cybersecurity
#
microsoft
#
internet explorer
Microsoft is rolling out patches for 90 vulnerabilities this November, including critical remote code execution flaws and several in-the-wild exploits.

Androxgh0st botnet expands with Mozi IoT capabilities
Wed, 13th Nov 2024
#
datacentre infrastructure
#
iot
#
advanced persistent threat protection
CloudSEK warns that the Androxgh0st botnet has significantly expanded its reach, now targeting critical vulnerabilities in various systems and IoT devices.

HackerOne report reveals AI risks dominate security concerns
Mon, 11th Nov 2024
#
blockchain
#
online services
#
security vulnerabilities
The latest Hacker-Powered Security Report reveals 48% of security professionals cite AI as their top threat, amid a surge in AI-related vulnerabilities.

Symbiotic Security secures $3m to boost shift-left strategy
Thu, 7th Nov 2024
#
it training
#
cybersecurity
#
software development
Symbiotic Security has secured USD $3 million in pre-seed funding to launch a software that enhances security during the software development process.

Major retailer's IT flaw exposes sensitive data, now fixed
Tue, 5th Nov 2024
#
apm
#
data privacy
#
cybersecurity
Cequence Security has uncovered a major vulnerability in a leading food and drug retailer's IT systems, exposing sensitive data across four subdomains.

Mindgard reveals vulnerabilities in Azure AI content safety
Thu, 31st Oct 2024
#
ai security
#
llms
#
ai
Mindgard has uncovered serious security flaws in Microsoft's Azure AI Content Safety Service, enabling potential attacks to undermine its security measures.

Critical vulnerabilities found in Unisoc systems-on-chip
Thu, 31st Oct 2024
#
smartphones
#
risk & compliance
#
cybersecurity
Kaspersky's ICS CERT has revealed critical vulnerabilities in Unisoc SoCs, heightening risks of remote hijacking in devices.

Trend Micro hosts Pwn2Own Ireland to tackle AI risks
Thu, 31st Oct 2024
#
storage
#
cloud security
#
smart home
Trend Micro has launched the Pwn2Own Ireland contest to uncover vulnerabilities in AI-enabled consumer devices, supported by Meta, Synology, and QNAP.

Satellite IoT revenue to reach USD $5.8 billion by 2027
Wed, 30th Oct 2024
#
firewalls
#
network security
#
iot
A Juniper Research study predicts satellite IoT revenue will surge from USD $2.9 billion in 2024 to USD $5.8 billion by 2027, driven by demand for remote connectivity.

Tenable reveals vulnerability in Open Policy Agent for Windows
Tue, 29th Oct 2024
#
risk & compliance
#
cybersecurity
#
software development
Tenable has revealed a medium-severity vulnerability in Open Policy Agent for Windows that exposes user credentials, urging updates to version 0.68.0.

SailPoint unveils new identity security cloud solution
Wed, 23rd Oct 2024
#
pam
#
cybersecurity
#
productivity
SailPoint Technologies has launched its Identity Security Cloud feature, Privileged Task Automation, enabling organisations to enhance security and productivity.

Sectigo launches SiteLock 2.0 to enhance SMB security
Thu, 17th Oct 2024
#
soc
#
cybersecurity
#
cloud services
Sectigo has launched SiteLock 2.0, a revamped website security platform designed to assist small and medium-sized businesses in protecting their online assets.

WatchGuard reveals Q2 2024 cyber threat trends report
Thu, 17th Oct 2024
#
firewalls
#
endpoint protection
#
phishing
WatchGuard Technologies' latest Internet Security Report reveals that seven of the top ten malware threats in Q2 2024 were new.

Sonatype report highlights rising threats in open source
Tue, 15th Oct 2024
#
open source
#
cybersecurity
#
software development
Sonatype's latest report reveals open source software now comprises 90% of modern development, with a staggering 156% rise in malicious packages.

NinjaOne launches AI tool & appoints data VP Carusone
Wed, 9th Oct 2024
#
genai
#
ai
#
cybersecurity
NinjaOne elevates Joel Carusone to Senior Vice President of Data and AI, unveiling a new AI tool aimed at streamlining patch management for IT teams.

October Patch Tuesday has revealed 118 Vulnerabilities
Wed, 9th Oct 2024
#
open source
#
cybersecurity
#
microsoft
Microsoft has addressed 118 vulnerabilities in its October 2024 Patch Tuesday, including five with evidence of exploitation, amid ongoing security concerns.

Forescout discovers security flaws in DrayTek routers
Wed, 9th Oct 2024
#
ransomware
#
endpoint protection
#
iot security
Forescout Technologies has unveiled 14 security vulnerabilities in DrayTek routers, raising significant cybersecurity concerns globally and urging urgent protective measures.