> TODAY'S SUMMARY (101 articles)
Today's cybersecurity news highlights several significant threats and trends. OpenAI has partnered with Ukraine to enhance the cybersecurity of critical infrastructure amid ongoing conflict with Russia. A member of the Ryuk ransomware gang received a two-year prison sentence for extorting over $1.2 million. The ShinyHunters group claims to have breached the FBI, demanding the retraction of a report criticizing their methods. Vulnerabilities in multiple platforms, including GitHub and WordPress, continue to pose risks, with leaked GitHub App keys still being exploited. Additionally, a new Windows malware, CLOSEDQUORUM, utilizes AI models to determine its actions, showcasing the evolving landscape of AI in cyberattacks.
|
// AI-powered summary generated at 16:00
Online heist is one of the biggest in history
One of the vulnerabilities is being actively exploited
Developers have access to tools like AddressSanitizer and Valgrind that will tell them when the code that they’re running accesses uninitialized memory, leaks memory, or uses memory after it’s been freed. Despite the availability of these excellent tools, memory bugs still persist, still get shipped...
Hotel giant failed to spot intrusion for well over a year
The breach affecting 2.2 million demonstrates a new trend in healthcare hacks: expanding beyond hospitals and insurance.
Earlier today, a federal judge ordered Apple to comply with the FBI’s request for technical assistance in the recovery of the San Bernadino gunmen’s iPhone 5C. Since then, many have argued whether these requests from the FBI are technically feasible given the support for strong encryption on iOS dev...
Osterman Research finds fewer than 40% of IT and security executives feel they get help from the board to address cybersecurity threats.
Frost & Sullivan found that 72% of large enterprises saw 5+ security incidents per year—mostly driven by attacks on managed devices.
For most mobile app developers, password management has as much appeal as a visit to the dentist. You do it because you have to, but it is annoying and easy to screw up, even when using standard libraries or protocols like OAUTH. Your users feel the same way. Even if they know to use strong […]
Coup for Western intelligence agencies as key USB drive is stolen
Egress report reveals too many are focused on external threats
Social network issues grateful $15,000 bounty for beta site flaw
Five critical security bulletins to address this month
Part of a rash of tax season phishing efforts, ERM is the latest to hand over everything needed for identity theft and tax return fraud.
Over half of surfers (52%) express discomfort in visiting websites ending in new domains.
'Let's Encrypt CA' helps build a more secure and better encrypted internet.
Investigation shows how easy it is to drain bank accounts
Vendor Security Assessment Questionnaire should help firms and their suppliers
Uncommonly wired sea-pirates hacked bills of lading for future shipments and vessel routes to plot out their attacks ahead of time.
The multi-vector campaign drops a remote access trojan (RAT) with data exfiltration, screen capture and keylogging capabilities.