News
-
"Standardized Information Sharing Framework 'Essential' for Improving Cyber Security"How private sector organizations share threat intelligence data with the broader industry has been called for development by security experts. It is believed that improved cross-organizational collaboration would increase cyber resilience in the face of…
-
"Harvard Pilgrim Data Breach Affected Millions, Yet Insurer Struggled to Contact Many Potential Victims For Months"A ransomware attack and subsequent data breach at Harvard Pilgrim Health Care in April affected over 2.5 million members, but the system outage caused by the ransomware attack has prevented the insurer from directly informing many of the potential…
-
"Enphase Ignores CISA Request to Fix Remotely Exploitable Flaws"The US Cybersecurity and Infrastructure Security Agency (CISA) recently issued advisories detailing two unpatched vulnerabilities in Enphase products. Enpahse is an American energy technology company that sells solar micro-inverters, charging…
-
"USDA is Investigating a ‘Possible Data Breach’ of Contractor Related to The Global Russian Cybercriminal Hack"The US Department of Agriculture (USDA) is investigating a “possible data breach” of a department contractor connected to a broader hack on multiple federal agencies that officials have blamed on Russian cybercriminals. A department spokesperson…
-
"Oreo Maker Mondelez Staff Hit by Data Breach at Third-Party Law Firm"Snack giant Mondelez has recently announced that past and present employees' personal information may now be in the hands of hackers following a data breach at a third-party firm. Over 50,000 staff members are receiving data breach notifications…
-
"More UK Companies Sign Up to Test Groundbreaking Cybersecurity Technology"More UK companies have signed on to help test a new cybersecurity approach. Over the past year, 36 UK companies have joined the "Digital Security by Design" program, a UK government-backed initiative to create a more secure digital future. They are…
-
"Center for Socially Responsible AI Awards Big Ideas Grants to Five Projects"As part of its Big Ideas Grant (BIG) program, the Penn State Center for Socially Responsible Artificial Intelligence (CSRAI) awarded over $212,000 to advance five interdisciplinary research projects. The high-risk, high-reward grant program helps Penn…
-
"Cybersecurity Market Grew 12.5% In First Quarter, Outpacing Overall Tech Market"According to the technology market analyst Canalys, global spending on cybersecurity in the first quarter of 2023 increased by 12.5 percent to $18.6 billion, compared to the same period the previous year. The results released on Monday, June 19, were…
-
"Asus Patches Highly Critical WiFi Router Flaws"Taiwanese computer hardware manufacturer Asus recently released urgent firmware updates to address vulnerabilities in its WiFi router product lines and warned users of the risk of remote code execution attacks. In a recent advisory, Asus documented…
-
"New DOJ Unit Will Focus On Prosecuting Nation-State Cybercrime"The US Department of Justice (DOJ) is adding a new section to its National Security Division that will prosecute malicious foreign cyber activity, a top department official recently announced. The department wants to be more active in combating digital…
-
"New Condi Malware Builds DDoS Botnet Out of TP-Link AX21 Routers"In May 2023, a new Distributed Denial-of-Service (DDoS)-as-a-Service botnet called "Condi" emerged, exploiting a vulnerability contained by TP-Link Archer AX21 (AX1800) Wi-Fi routers to form an army of bots for conducting attacks. AX1800 is a widely used…
-
"VMware Aria Operations for Networks Vulnerability Exploited in the Wild (CVE-2023-20887)"The exploitation of a pre-authentication command injection flaw, tracked as CVE-2023-20887, in VMware Aria Operations for Networks (previously vRealize Network Insight), has been observed in the wild. There are no workarounds available to mitigate the…