News
-
"OpenAI's New GPT Store May Carry Data Security Risks"A new app store for ChatGPT could expose users to both malicious and legitimate bots that send their data to insecure and remote locations.
-
"CISA: Critical SharePoint Bug Actively Exploited"The Cybersecurity and Infrastructure Security Agency's (CISA) Known Exploited Vulnerabilities (KEV) catalog now includes a critical Microsoft SharePoint server bug that can be used as part of a Remote Code Execution (RCE) exploit chain.
-
"Crypto Heists Surge in 2023, $16.93m Already Stolen in 2024"According to security researchers at Comparitech, crypto heists increased in volume by 42% in 2023, with 283 incidents. This compares to 199 crypto theft incidents in 2022.
-
"Imperial Opens First Overseas Research and Innovation Center in Singapore"The first research program at Imperial College London's first overseas research and innovation center in Singapore, is a major $20 million grant in collaboration with Nanyang Technological University, Singapore (NTU Singapore), to improve the cybersecu
-
"Opera MyFlaw Bug Could Let Hackers Run ANY File on Your Mac or Windows"The Guardio Labs research team discovered a security flaw, dubbed MyFlaw, in the Opera web browser for Microsoft Windows and Apple macOS, which could be used to execute any file on the underlying operating system.
-
"Windows SmartScreen Bug Exploited to Deliver Powerful Info-Stealer"A vulnerability, tracked as CVE-2023-36025, that Microsoft fixed in November 2023, is being used by threat actors to deliver Phemedrone Stealer.
-
"Atlassian Warns of Critical RCE Flaw in Older Confluence Versions"Atlassian Confluence Data Center and Confluence Server are vulnerable to a critical Remote Code Execution (RCE) flaw that affects all versions released before December 5, 2023, including out-of-support releases.
-
"Government, Military Targeted as Widespread Exploitation of Ivanti Zero-Days Begins"Security researchers at threat intelligence and incident response firm Volexity have started seeing widespread exploitation of the recently disclosed Ivanti Connect Secure VPN appliance vulnerabilities.
-
"Email Nightmare: 94% of Firms Hit by Phishing Attacks in 2023"According to security researchers at Egress, email security remained top of mind for cybersecurity professionals in 2023 as over nine in ten (94%) cyber decision-makers had to deal with a phishing attack. This is up 2% from the previous year.
-
"New Material Found by AI Could Reduce Lithium Use in Batteries"Security researchers at Microsoft and the Pacific Northwest National Laboratory (PNNL) have used artificial intelligence (AI) and supercomputing to discover a brand new substance which could reduce lithium use in batteries.
-
"Over 178K SonicWall Firewalls Vulnerable to DoS, Potential RCE Attacks"Security researchers at Bishop Fox have found over 178,000 SonicWall next-generation firewalls (NGFW) with the management interface exposed online are vulnerable to denial-of-service (DoS) and potential remote code execution (RCE) attacks.
-
"Juniper Networks Patches Critical Remote Code Execution Flaw in Firewalls, Switches"Juniper Networks has recently published more than two dozen security advisories to inform customers about well over 100 vulnerabilities affecting its products, with a majority of the flaws impacting third-party components.