News
  • "Nurse Call Systems, Infusion Pumps Riskiest Connected Medical Devices"
    Security researchers at Armis have discovered that nurse call systems and infusion pumps are the riskiest connected medical devices.  The researchers found that 39% of all nurse calling systems, devices used by patients to alert caregivers when they…
  • "DC Health Link Data Breach Blamed on Human Error"
    According to Mila Kofman, Executive Director of the District of Columbia Health Benefit Exchange Authority, the recent data breach of personal information for thousands of users of Washington D.C.'s health insurance exchange, including members of…
  • "Cloud Security Alerts Take Six Days to Resolve"
    Security researchers at Palo Alto Networks are warning that cloud security teams are exposing their organization to potential days of elevated cyber risk by failing to deal promptly with alerts.  During the study, the researchers found that security…
  • "GPT Tricked by Analysts Into Believing Malware Is Benign"
    Researchers have emphasized that Large Language Model (LLM)-driven malware assessments should not be used in place of human analysis because the Artificial Intelligence (AI) technology underlying them can be deceived and manipulated. They have warned…
  • "Iranian Government-Backed Hackers Targeting US Energy and Transit Systems"
    Mint Sandstorm, an Iranian government-backed actor, has been attributed to attacks on US critical infrastructure between late 2021 and mid-2022. The Mint Sandstorm subgroup is said to be technically and operationally mature as it can develop custom tools…
  • "Triple-digit Increase in API and App Attacks on Tech and Retail"
    Security researchers at Akamai have discovered that last year was a record-breaker in terms of API and application-based attacks on the EMEA retail sector, with detected threats surging 189%.  During the study, Akamai analyzed intelligence gathered…
  • "Play Ransomware Gang Uses Custom Shadow Volume Copy Data-Theft Tool"
    According to Symantec's security researchers, the Play ransomware group has developed two custom tools called Grixba and VSS Copying Tool in .NET to strengthen its cyberattacks. The two tools allow the attackers to enumerate users and computers in…
  • "'Goldoson' Malware Sneaks into Google Play Apps, Racks Up 100M Downloads"
    Through an infected third-party library, malware capable of stealing data and committing click fraud has infiltrated 60 mobile apps. Researchers discovered that the infected apps have been downloaded more than 100 million times from the official Google…
  • "Researchers Discover Sensitive Corporate Data on Decommissioned Routers"
    Fifty-six percent of decommissioned routers sold on the secondary market contained confidential corporate data, according to ESET's analysis of configuration data. Of the networks for which complete configuration information was available, 22 percent…
  • "Engineering Cybersecurity into US Critical Infrastructure"
    The Biden administration's National Cybersecurity Strategy recommends a security-by-design approach, which includes holding software vendors accountable for upholding a "duty of care" to consumers and designing systems to "fail safely and recover quickly…
  • "UCD Network Researcher Combatting 'Ecosystem of Connected Threats'"
    Dr. Madhusanka Liyanage of University College Dublin (UCD) is the coordinator of the UCD School of Computer Science's Network Softwarization and Security Labs (Netslab) research group. This group is primarily focused on the security and privacy of future…
  • "55% of Surveyed Healthcare Workers Believe Security Policies Keep Up With New Tech"
    Salesforce surveyed over 400 healthcare employees to explore perceived weaknesses in healthcare security programs. As generative Artificial Intelligence (AI) and other new technologies gain popularity, security experts face the challenge of keeping up…