> TODAY'S SUMMARY (9 articles)
Today's cybersecurity landscape reveals several critical threats and vulnerabilities. AI models like Claude Opus 5 are exposing significant security flaws, with researchers successfully exploiting these to access OpenAI accounts. SolarWinds has issued patches for a severe flaw in its Access Rights Manager that could allow unauthenticated remote code execution. Additionally, a critical vulnerability in the Orkes Conductor Workflow Platform is actively being exploited in the wild. On the open-source front, CrowdSec reported a breach involving the copying of 170 private GitHub repositories via a former employee's account. Furthermore, CISA has flagged three Linux kernel vulnerabilities that are being actively exploited. The situation underscores an ongoing vulnerability explosion amid rapid AI development and exploitation.
|
// AI-powered summary generated at 12:00
HP is investing $1bn in technology for its services business as its focus moves away from integrating EDS to growth.
Wolfgang Kandek, the chief technology officer of Qualys, has warned Windows XP users that Microsoft's technical support for service pack 2 (SP2) of the popular operating system will cease on July 13. As a result of this, he advises users to install XP SP3 or upgrade to Windows 7.
A Cincinnati area resident will face charges for aiding an international fake anti-virus scheme. Also indicted were two foreign-based co-conspirators.
Consultancy Deloitte has acquired security specialist IM Global to address the fears of its corporate customers.
Research just reveals claims that 41% of UK managers and finance professionals believe it would be possible for them to commit fraud in their organisations.
It's been something of a busy week for distributed denial of service (DDoS) attacks - as well as CNN reporting that Media Temple, the web hosting provider for a range of blue chip companies, was hit with a sophisticated attack, the Associated Press reported that a Nebraska man has been sentenced to...
Fifa has unveiled its Fifa.com supercomputer site, which will support online access to the world cup.
Aza Raskin, a well-known US interface design expert and creative lead on Mozilla's Firefox browser software, has revealed a new type of phishing attack known as `tab napping.'
UK deputy prime minister Nick Clegg has repeated his view that self-confessed hacker Gary McKinnon should be tried in the UK, but said the government lacked the power to reverse some of the legal decisions that had led to McKinnon's possible extradition to the US.
Adobe, maker of Photoshop, has issued a patch for vulnerabilities affecting earlier versions of the popular image editing software.
Orange, which is rapidly extending its operations beyond its cellular origins and onto the regular internet, has developed a universal login technology designed to allow almost any website to allow a login using their Facebook, Google, Twitter and Yahoo ID/password credentials.
Veteran IT security vendor McAfee has announced plans to acquire privately-held Trust Digital, a mobile management and security software specialist. Terms of the deal have not been revealed.
In what can best be described as an embarrassing situation, IBM apparently distributed USB sticks infected with malware at last week’s Australian Computer Emergency Response Team (AusCERT) conference.
The price of online cybercrime has reduced so that criminals can rent bots by the hour. VeriSign's iDefense research operation says the cost is just $8.94 an hour.
Eset has announced the acquisition of Comdom Software, a fellow Slovakian software company noted for its anti-spam technology - financial details of the transaction have not been revealed.
Join this afternoon's Infosecurity Magazine webinar, and listen to industry experts discuss how moving email archiving to the cloud will effect your organisation.
The GSM Association's security group (GSMA-SG) has announced it is working with the Messaging Anti-Abuse Working Group (MAAWG) to host a three-day event in Barcelona in the second week of June. The three-day event seeks to allow members to discuss and share information on internet bots, spam and mal...
Gridsure, a UK-based firm that has developed a pictorial alternative to PIN and passphrase authentication systems, has signed a key banking deal in France.
Texas-based PlainsCapital Bank has reached a settlement agreement with one of its former customers, Hillary Machinery, which had more than $800 000 stolen from its corporate account by cyber criminals.
Oracle has announced it has reached an agreement to acquire database security firm Secerno.