News
-
"Atlassian Ships Urgent Patch for Exploited Confluence Zero-Day"Business software maker Atlassian recently called immediate attention to a major security defect in its Confluence Data Center and Server products and warned that the issue has already been exploited as zero-day in the wild.
-
"Phishing Campaign Targeted US Executives Exploiting a Flaw in Indeed Job Search Platform"According to Menlo Security researchers, threat actors have used an open redirection vulnerability contained by the Indeed job search platform to carry out phishing attacks.
-
"ChatGPT 'Not a Reliable' Tool for Detecting Vulnerabilities in Developed Code"According to a new report by NCC Group that examines various Artificial Intelligence (AI) cybersecurity use cases, generative AI, particularly ChatGPT, should not be considered a reliable resource for detecting vulnerabilities in developed code without
-
"Qualcomm Patches 3 Zero-Days Reported by Google"US chip giant Qualcomm recently announced patches for over two dozen product vulnerabilities, including three zero-days reported by Google cybersecurity units.
-
"NSA and ESF Partners Release Report on MFA and SSO Challenges"The National Security Agency (NSA), the Cybersecurity and Infrastructure Security Agency (CISA), and industry partners have released a Cybersecurity Technical Report (CTR) titled "Developer and Vendor Challenges to Identity and Access Management" to pr
-
"Rogue npm Package Deploys Open-Source Rootkit in New Supply Chain Attack"The discovery of a new deceptive package hidden within the npm package registry that deploys the open-source rootkit r77 marks the first time a malicious package has provided rootkit functionality.
-
"New 'Looney Tunables' Linux Bug Gives Root on Major Distros"By exploiting a buffer overflow flaw in the GNU C Library's (glibc) ld.so dynamic loader, a newly discovered Linux vulnerability called Looney Tunables allows local attackers to gain root privileges.
-
"Fast-Growing Dropbox Campaign Steals Microsoft SharePoint Credentials"Threat actors in a Business Email Compromise (BEC) campaign are using Dropbox messages to steal Microsoft user credentials.
-
"Factors Leading to Organizations Losing Control Over IT and Security Environments"According to Cloudflare, organizations are facing a growing need to connect everything in their business while trying to maintain control over their security, productivity, and competitive growth.
-
"Police Issue Quishing Email Warning"Police in Northern Ireland have recently warned organizations in the province to be on their guard after issuing a new Crime Prevention Notice on “quishing,” or phishing via QR code.
-
"Lyca Mobile Services Significantly Disrupted by Cyberattack"International mobile virtual network operator Lyca Mobile has recently confirmed that its services were significantly disrupted due to a cyberattack that may have also resulted in a data breach.
-
Major SoS-VO UpgradeWe are pleased to announce the transitioning of the CPS VO to a more current version of the open-source content management system, Drupal 9.