Mainframes: structure and features of penetration testingKaspersky Securelist·Aug 20, 12:00 UTC · Aug 20, 2024Tools30
UN Adopts Controversial Cybercrime TreatyInfosecurity Magazine·Aug 12, 14:00 UTC · Aug 12, 2024Threat actor57
Easterly: Too early to say if Supreme Court’s Chevron decision will affect cyber incident notification rulesThe Record·Aug 7, 21:34 UTC · Aug 7, 2024Policy & legal55
IR Trends: Ransomware on the rise, while technology becomes most targeted sectorCisco Talos·Jul 25, 10:00 UTC · Jul 25, 2024Ransomware160
CrowdStrike Reveals Rapid Response Content Update Caused Global OutageInfosecurity Magazine·Jul 24, 14:30 UTC · Jul 24, 2024Industry55
CDK hack shows SEC disclosure standards are unsettledCyberScoop·Jul 16, 16:30 UTC · Jul 16, 2024Policy & legal55
How AI helps decode cybercriminal strategiesHelp Net Security·Jul 11, 00:00 UTC · Jul 11, 2024Ransomware60
New Blast-RADIUS attack breaks 30-yearArs Technica · Security·Jul 9, 19:02 UTC · Jul 9, 2024Vulnerability55
GOP platform says protecting critical infrastructure from hackers is a ‘national priority’The Record·Jul 9, 13:30 UTC · Jul 9, 2024Ransomware60
Multiple flaws in Fortinet FortiOS fixedSecurity Affairs·Jun 13, 08:31 UTC · Jun 13, 2024Exploit / PoC in the wildCVE-2024-23110CVE-2024-26010CVE-2024-23111+2 CVEs60
LockBit 2.0: How This RaaS Operates and How to Protect Against ItPalo Alto Unit 42·Jun 5, 20:38 UTC · Jun 5, 2024Ransomware57
Vice Society: Profiling a Persistent Threat to the Education SectorPalo Alto Unit 42·Jun 5, 17:12 UTC · Jun 5, 2024RansomwareCVE-2021-3452760
CISA adds Cisco ASA and FTD and CrushFTP VFS flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 25, 20:17 UTC · Apr 25, 2024Exploit / PoC in the wildCVE-2024-20353CVE-2024-20359CVE-2024-4040+1 CVEs60
Talos IR trends: BEC attacks surge, while weaknesses in MFA persistCisco Talos·Apr 25, 12:00 UTC · Apr 25, 2024Phishing & fraudCVE-2021-27876CVE-2023-27532147
Nation-state actors exploited two zero-days in ASA and FTD firewalls to breach government networksSecurity Affairs·Apr 24, 20:31 UTC · Apr 24, 2024Exploit / PoCCVE-2024-20353CVE-2024-20359CVE-2018-0101160
Hackers backdoored Cisco ASA devices via two zero-days (CVE-2024-20353, CVE-2024-20359)Help Net Security·Apr 24, 00:00 UTC · Apr 24, 2024VulnerabilityCVE-2024-20353CVE-2024-20359CVE-2024-2035860
Key strategies for ISO 27001 compliance adoptionHelp Net Security·Feb 9, 00:00 UTC · Feb 9, 2024Vulnerability55
Do customers have a right to know how companies that use algorithms make their decisions?Help Net Security·Feb 6, 13:20 UTC · Feb 6, 2024Policy & legal30
Does CVSS 4.0 solve the exploitability problem?Help Net Security·Jan 31, 00:00 UTC · Jan 31, 2024VulnerabilityCVE-2023-34103CVE-2023-22523CVE-2023-328247
Proliferation of sneakerbots across industries: The long tail of DIY bot operatorsHelp Net Security·Jan 26, 09:21 UTC · Jan 26, 2024Industry30
IR Q4 2023 trends: Significant increase in ransomware activity found in engagements, while education remains one of the mostCisco Talos·Jan 24, 13:00 UTC · Jan 24, 2024RansomwareCVE-2020-147260
On eve of final negotiations, US says consensus growing around ‘narrow’ UN cybercrime treatyThe Record·Jan 23, 18:44 UTC · Jan 23, 2024Industry30
IBM introduces cloud-native SIEM to empower today's security teamsHelp Net Security·Nov 7, 00:00 UTC · Nov 7, 2023Vulnerability55
Exploring the global shift towards AI-specific legislationHelp Net Security·Nov 6, 00:00 UTC · Nov 6, 2023Policy & legal30
StripedFly: Perennially flying under the radarKaspersky Securelist·Oct 26, 04:00 UTC · Oct 26, 2023Malware30
3 ways to strike the right balance with generative AIHelp Net Security·Sep 7, 00:00 UTC · Sep 7, 2023Data breach60
Under pressure, Meta announces it will end behavioral advertising in EuropeThe Record·Aug 2, 19:23 UTC · Aug 2, 2023Threat actor45
Memory corruption vulnerability in Microsoft Edge; MilesightVPN and router could be taken overCisco Talos·Jul 19, 15:58 UTC · Jul 19, 2023Vulnerability in the wildCVE-2023-36887CVE-2023-31194CVE-2023-27390160
Building a culture of security awareness in healthcare begins with leadershipHelp Net Security·Jun 12, 00:00 UTC · Jun 12, 2023AI research30
Insurers Predict $33bn Bill for CatastrophicInfosecurity Magazine·Jun 2, 10:30 UTC · Jun 2, 2023Policy & legal42
Friday Squid Blogging: Online Cephalopod CourseSchneier on Security·May 26, 21:05 UTC · May 26, 2023Malware30
White House proposes stronger abortion data privacy protectionsCyberScoop·Apr 12, 20:58 UTC · Apr 12, 2023Exploit / PoC in the wild60
Malicious Python Package uses Unicode to evade detectionSecurity Affairs·Mar 27, 07:05 UTC · Mar 27, 2023Malware142
Malicious Python Package Uses Unicode Trickery to Evade Detection and Steal DataThe Hacker News·Mar 24, 13:40 UTC · Mar 24, 2023Vulnerability142
Friday Squid Blogging: We're Almost at Flying Squid DronesSchneier on Security·Mar 3, 22:23 UTC · Mar 3, 2023VulnerabilityCVE-2023-1017CVE-2023-101835
Malware that can do anything and everything is on the riseHelp Net Security·Feb 14, 00:00 UTC · Feb 14, 2023Malware55
Role of the analyst on a pentesting teamKaspersky Securelist·Feb 10, 10:00 UTC · Feb 10, 2023Vulnerability55