News
  • "Why the FDA's SBOM Mandate Changes the Game for OSS Security"
    The US Food and Drug Administration (FDA) is not the first thing that comes to mind for most Open Source Software (OSS) project maintainers or the developers who build applications that leverage OSS. However, new FDA rules may have a greater impact on…
  • "95% Fear Inadequate Cloud Security Detection and Response"
    Permiso has published its "2023 Cloud Detection and Response Survey," which surveyed over 500 security, Information Technology (IT), and engineering professionals to gain further insight into how their organizations address security challenges in cloud…
  • Summary: Spring 2023 SoS Quarterly Lablet Meeting
    Spring 2023 SoS Quarterly Lablet Meeting  
  • "Siemens And UCLA Say Data Compromised in MOVEit Data Breach"
    Siemens Energy and the University of California, Los Angeles (UCLA) recently announced that they were among the victims of the MOVEit hack that has affected scores of corporations, governments, and other institutions recently.  The hackers behind…
  • "Study Reveals Alarming Gap in SIEM Detection of Adversary Techniques"
    According to security researchers at CardinalOps, Enterprise Security Information and Event Management (SIEM), solutions are falling short when it comes to detecting and countering cyber threats.  During the study, the researchers examined over 4000…
  • "Chrome 114 Update Patches High-Severity Vulnerabilities"
    Google recently announced a new Chrome 114 update that patches a total of four vulnerabilities, including three high-severity bugs reported by external researchers.  Google says it paid out a total of $35,000 in bug bounty rewards to the reporting…
  • "Gas Stations Impacted by Cyberattack on Canadian Energy Giant Suncor"
    Some services at Petro-Canada gas stations have been disrupted following a recent cyberattack on parent company Suncor, one of the largest energy companies in North America.  Suncor is a Canada-based company that produces oil and runs several…
  • "Scamming the Scammers: New AI Fake Victims to Disrupt Criminal Business Mode"
    Cybersecurity experts at Macquarie University have created a multilingual chatbot designed to keep scammers on lengthy fake conversations and, ultimately, reduce the number of people who lose money to global criminals. The new Artificial Intelligence (AI…
  • "Cybercriminals Still Want to Cash In on Cryptojacking"
    Recent campaigns indicate that cryptojacking continues to be of interest to cybercriminals, despite its declining popularity due to law enforcement crackdowns, fluctuating cryptocurrency values, and the closure of Coinhive. Microsoft researchers recently…
  • "High-Impact Attacks On Critical Infrastructure Climb 140%"
    According to a recent report, over 150 industrial operations were impacted by cyberattacks in 2022, with physical consequences in process manufacturing, discrete manufacturing, and critical industrial infrastructures. Additionally, the total number of…
  • "The Next Wave of Cyber Threats: Defending Your Company Against Cybercriminals Empowered by Generative AI"
    Personal information is increasingly under attack in the digital realm due to deepfakes, human error, vulnerabilities, and more. Security experts are continuing to explore the current landscape and how to get ahead of cybercriminals. Generative…
  • "Fortinet Patches Critical RCE Vulnerability in FortiNAC"
    Fortinet has recently released patches to address a critical vulnerability in its FortiNAC network access control solution.  The zero-trust access solution allows organizations to view devices and users on the network and provides granular control…