Updated Albania's online public services and websites have gone dark following what appears to be a cyberattack.โฆ
Updated Complaints over Microsoft's latest patch Tuesday have intensified after some Windows 11 users found their systems worse for wear following installation.โฆ
The US Federal Communications Commission (FCC) notified Congress on Friday that the cost to rip and replace equipment kit from Huawei and ZTE installed at US telcos is more than $3 billion higher than funding allocated for the program.โฆ
TikTok's Global Chief Security Officer Roland Cloutier has "transitioned" from his job into "a strategic advisory role focusing on the business impact of security and trust programs."โฆ
Asia In Brief Senior execs from Alibaba Cloud were summoned to discuss the data leak that saw information pertaining to a billion Chinese citizens sold on the dark web, according to Nikkei and The Wall Street Journal.โฆ
In brief SMBs, beware: Microsoft said this week it has discovered a North Korean crew targeting small businesses with ransomware since September of last year.โฆ
Juniper Networks has patched critical-rated bugs across its Junos Space, Contrail Networking and NorthStar Controller products that are serious enough to prompt CISA to weigh in and advise admins to update the software as soon as possible.โฆ
Miscreants have reportedly scanned almost 1.6 million websites in attempts to exploit an arbitrary file upload vulnerability in a previously disclosed buggy WordPress plugin.โฆ
Trend Micro Research has published an anatomy of a Windows remote code execution vulnerability lurking in the Network File System.โฆ
The bad news keeps on rolling for British recruitment agency Morgan Hunt amid confirmation it suffered a digital burglary, with intruders making off with the personal data for some of the freelancers on its books.โฆ
The botnet behind the largest-ever HTTPS-based distributed-denial-of-service (DDoS) attack has been named after a tiny shrimp.โฆ
Organizations can expect risks associated with Log4j vulnerabilities for "a decade or longer," according to the US Department of Homeland Security.โฆ
Security researchers have spotted fresh flaws in Lenovo laptops just months after the vendor patched a bunch of its products.โฆ
Webinar Cloud security is a challenge likely to keep a lot of IT professionals awake at night. So there might be some relief in knowing what types of tool offer the best protection โ agent-based or agentless โ and if organizations really have to rely on just one or the other.โฆ
Updated Amazon's home security wing Ring turned over footage to US law enforcement without permission from the devices' owners and seemingly without a warrant 11 times so far in 2022.โฆ
Webinar Most IT infrastructures evolve over time as the needs of the business and its users change to meet fresh demands and comply with updated organizational policies and regulatory requirements.โฆ
Professional Finance Company, a Colorado-based debt collector whose customers include hundreds of US hospitals, medical clinics, and dental groups, recently disclosed that private data โ including names, addresses, social security numbers, and health records โ for more than 1.9 million people was exposed during a ransomware infection.โฆ
A widespread phishing campaign that has hit more than 10,000 organizations since September 2021 uses adversary-in-the-middle (AiTM) proxy sites to get around multifactor authentication (MFA) features and steal credentials that are then used to compromise business email accounts.โฆ
The US Supreme Court justices who overturned Roe v. Wade last month may have been doxxed โ had their personal information including physical and IP addresses, and credit card info revealed โ according to threat intel firm Cybersixgill.โฆ
When Jay Chaudhry launched Zscaler in 2007, he envisioned a number of use cases for the zero-trust platform, from security for a growing distributed, virtualized IT environment a nascent cloud computing environment to improved network visibility and identity governance.โฆ
X.org has released a bunch of updates, which includes closing two security holes and, yes, this affects Wayland users too.โฆ
Patch Tuesday Despite worries that Patch Tuesday may not be as exciting now that Microsoft's Windows Autopatch is live โ with a slew of caveats โ the second Tuesday of this month arrived with 84 security fixes, including 4 critical bugs and one that's under active exploit.ย โฆ
AWS fixed three authentication bugs present in one line of code in its IAM Authenticator for Kubernetes, used by the cloud giant's popular managed Kubernetes service Amazon EKS, that could allow an attacker to escalate privileges within a Kubernetes cluster.โฆ
Older AMD and Intel chips are vulnerable to yet another Spectre-based speculative-execution attack that exposes secrets within kernel memory despite defenses already in place. Mitigating this side channel is expected to take a toll on performance.โฆ
Microsoft has warned users clinging to Windows 7 and Windows 8.1 that the end really is nigh.โฆ
The UK Information Commissioner's Office (ICO) on Monday issued a reprimand and called for a review of how and whether messaging services should be used for government business practices, after finding widespread and potentially dangerous use of private email, WhatsApp and other messaging tools by officials at the Department of Health and Social Care (DHSC).โฆ
Microsoft's promised service to enable automatic, continuous patching of Windows has gone live.โฆ
San Francisco lawmakers are mulling a proposed law that would allow police to use private security cameras โ think: those in residential doorbells, medical clinics, and retail shops โ in real time for surveillance purposes.โฆ
Singapore-based security vendor and services provider Group-IB has commenced a "regional diversification" program that will see it not just continue to operate in Russia (unlike a great many other companies), but do so with a dedicated entity.โฆ
Aerojet Rocketdyne, which makes propulsion and power systems for launch vehicles, missiles and satellites for NASA and the US military, has agreed to pay $9 million to settle charges it misrepresented its products' compliance with cybersecurity requirements in federal government contracts.โฆ
A new ransomware family is being delivered as a bogus Google Software Update, using Microsoft functionality as part of its attack.โฆ
US security technology provider L3Harris has courted controversial Israeli spyware firm NSO with an aim to buy it, according to reports.โฆ
The UK's response to China's well-publicized efforts to use technology standards to shape the world in its image has been "incoherent and muted" according to report by the House of Commons Foreign Affairs Committee.โฆ
Details have emerged on how more than a billion personal records were stolen in China and put up for sale on the dark web, and it all boils down to a unprotected online dashboard that left the data open to anyone who could find it.โฆ
Sponsored Post If you do any sort of business via the web, the damage caused by a distributed denial of service (DDoS) attack could be catastrophic for your bottom line.โฆ