> TODAY'S SUMMARY (122 articles)
Today's cybersecurity landscape highlights several critical threats and trends. The Canadian regulator is investigating IDScan for potential data privacy violations, while the ransomware PAYLOAD has demonstrated a new tactic, paralyzing an organization without file encryption. Volexity reported a China-aligned threat group exploiting vulnerabilities in Chrome and Microsoft software. The hacking group ShinyHunters claims to have breached the FBI, raising significant counterintelligence concerns. Additionally, ClosedQuorum malware is leveraging AI for attack decisions, indicating a trend towards more sophisticated, autonomous threats. CISA has urged federal agencies to patch a critical Zyxel flaw actively exploited by attackers. Meanwhile, the rise of AI in cybercrime continues, with deepfakes and AI-driven bots posing increasing risks to organizations.
|
// AI-powered summary generated at 20:01
Leaders met in Brussels this week, agreeing to a formal cyber dialogue and to share knowledge going forward
Using file sync and share applications can put sensitive personal information, and potentially sensitive corporate information, at risk should a vulnerability be found. Unfortunately, Dropbox has just admitted such a flaw.
Background Friday night I sat down with a glass of Macallan 15 and decided to write a static checker that would find the Heartbleed bug. I decided that I would write it as an out-of-tree clang analyzer plugin and evaluate it on a few very small functions that had the spirit of the Heartbleed bug […]
Organizations have spent millions over recent decades on information security awareness activities, but a recent report asserts that such an approach has flaws.
MI5 has warned British corporate chiefs that foreign intelligence agencies are targeting IT workers within big organisations in a bid to gain privileged access to sensitive data.
AOL has been hacked, resulting in the compromise of “information regarding a significant number of user accounts.” The data breach is to blame for a large spam/spoofing spike targeting its users.
David Jones, head of information security at the BBC, explains how the Corporation protected its data from adversaries including the Syrian Electronic Army.
Infosecurity Hall of Fame inductee Dr Eric Cole, chief scientist at Secure Anchor, says the greatest risk to businesses is the threats they cannot see.
David Smith, deputy commissioner, Information Commissioner's Office, gives an update on the EU Data Protection Regulation and how it will affect UK business.
A new worm that would seem more at home in the Windows PC environment than on a mobile phone has made an appearance on the Android platform, bringing classic worm behavior with it.
Improved monitoring and analytics can improve the information available to IT security teams. But shifting patterns of work mean it only offers partial insights.
Whistleblowers have exposed issues around data custody and data privacy, says Mikko Hypponen.
The UK was one of the top ten countries in the world exposed to APT attacks in 2013, when measured by number of unique verticals targeted. With 12 unique verticals hit, the UK was tied for fourth with France and Thailand.
The UK’s National Crime Agency (NCA) has appointed Jamie Saunders as the new director of its National Cyber Crime Unit (NCCU).
Organisations can use security to drive the business forward,an Infosecurity Europe keynote panel says.
This past weekend, the University of Central Florida defeated nine other finalist teams to win the 2014 Raytheon National Collegiate Cyber Defense Competition (NCCDC), held in San Antonio, Texas. The largest collegiate cybersecurity competition in the country pitted the top 10 college and university...
HP has announced a new consulting services practice, named HP Security Metrics Services, an initiative to provide data that can deepen executive-level security engagement by demonstrating how specific security risks directly imperil business objectives.
Sohu.com, China’s eighth-largest website and currently the 27th most-visited website in the world, was the unwitting originator of a massive distributed denial-of-service (DDoS) attack earlier in the month, which was carried out using traffic hijacking techniques. In all, the application-layer attac...
Google has incorporated a new TLS cipher suite in Chrome that operates three times faster than AES-GCM on devices that don’t have AES hardware acceleration, including most Android phones, wearable devices such as Google Glass and older computers. This improves user experience, reducing latency and s...
Is your smartphone running low on battery for seemingly no reason? Are things taking longer to render or load? Your gadget could be secretly mining bitcoins, thanks to a piece of mobile malware in Google Play that quietly uses an Android phone’s processing power, while hiding behind innocuous-seemin...