News
-
"Smart Utility Meter Security Takes a Quantum Leap"Quantinuum is a merger between Honeywell Quantum Solutions and Cambridge Quantum focused on quantum computing. It aims to help build quantum-hardened cryptographic keys to secure Honeywell's smart utility meters. Quantum Origin is a service that uses…
-
"Finnish Authorities Shutter Dark Web Drugs Marketplace"Investigators in Finland have recently seized and shut down a web server used to operate a local dark web marketplace. Piilopuoti opened on May 18, 2022, with its administrators attempting to hide its presence by operating only on the encrypted Tor…
-
"Skyhawk Security Ranks Accuracy of LLM Cyberthreat Predictions"The cloud security vendor Skyhawk has introduced a new benchmark for evaluating generative Artificial Intelligence (AI) Large Language Models' (LLMs) ability to identify and score cybersecurity threats within cloud logs and telemetries. According to the…
-
"Fresh Wave of Malicious npm Packages Threaten Kubernetes Configs and SSH Keys"Researchers have discovered a new set of malicious packages in the npm package registry designed to exfiltrate Kubernetes configurations and SSH keys from compromised machines to a remote server. Sonatype reported discovering 14 different npm packages…
-
"Rising OT/ICS Cybersecurity Incidents Reveal Alarming Trend"According to Rockwell Automation, 60 percent of cyberattacks against the industrial sector are conducted by state-affiliated actors and are often facilitated by internal personnel (33 percent of the time). This aligns with other industry research that…
-
"GitLab Urges Users to Install Security Updates for Critical Pipeline Flaw"GitLab has released security updates to address a vulnerability of critical severity that allows attackers to run pipelines as other users through scheduled security scan policies. The flaw, tracked as CVE-2023-5009 with a CVSS score of 9.6, impacts…
-
"Qatar Cyber Chiefs Warn on Mozilla RCE Bugs"Following the disclosure of vulnerabilities in Mozilla's Firefox and Thunderbird, the National Cyber Security Agency in Qatar urges Adobe users to apply patches. However, other affected browsers were not mentioned. The vulnerability, tracked as CVE-2023-…
-
"Understanding Cyber Threats in IoT Networks"New research delves into how Internet of Things (IoT) devices, which are not as well protected as traditional computers regarding firewalls, antivirus, and malware protection, can represent a significant system vulnerability. In addition to potential…
-
"The Emergence of Security Flaws as a 'National Resource' in China"A regulation requiring organizations conducting business in China to notify the government of software vulnerabilities within 48 hours of discovery reflects the Chinese government's increasingly strategic view of security flaws. A new report published by…
-
"Nation-State Actors Are Exploiting AI for Discord and Attacks, DHS Warns"A recently released report from the Department of Homeland Security (DHS) warns that nation-state actors and cybercriminals are increasingly using new cyber tools, such as generative Artificial Intelligence (AI), to incite conflict in the US, exploit…
-
"AI Under Criminal Influence: Adversarial Machine Learning Explained"Since the release of ChatGPT to the public, the adoption of Artificial Intelligence (AI) and Machine learning (ML) systems has increased significantly. In order to gain a competitive advantage, companies are racing to adopt AI technology. However, they…
-
"Cybersecurity Incident Hits ICC"The International Criminal Court (ICC) has recently announced that it had been affected by what it called “anomalous activity” regarding its IT systems and that it was currently responding to this “cybersecurity incident.” The ICC is currently…