News
  • "Siemens Security Advisory Discloses Critical, High-Severity Flaws"
    The industrial manufacturing company Siemens has disclosed several critical and high-severity vulnerabilities discovered in its products, including a heap-based buffer overflow flaw in the SIMATIC devices' SINEMA Remote Connect Server (SRCS) Virtual…
  • "Older AMD, Intel Chips Vulnerable to Data-Leaking 'Retbleed' Spectre Variant"
    Despite existing defenses, older AMD and Intel chips are vulnerable to another Spectre-based speculative-execution attack that exposes secrets within kernel memory. It is expected that mitigating this side-channel will have an impact on performance. The…
  • "HHS Agrees to Improve Feedback Process for Healthcare Data Breach Reporting"
    The Department of Health and Human Services' (HHS) Office of Civil Rights (OCR) has agreed to implement a feedback mechanism by including language and contact information in the confirmation email that healthcare entities receive. OCR also intends to…
  • "Adobe Patch Tuesday: Critical Flaws in Acrobat, Reader, Photoshop"
    Software maker Adobe has recently rolled out a major security update for its flagship Acrobat and Reader products to fix at least 22 documented vulnerabilities, some severe enough to allow arbitrary code execution attacks.  The patches recently…
  • "ALPHV Ransomware Gang Creates Searchable Database With Victim Data"
    Known as BlackCat and Noberus, ALPHV emerged in November 2021 as the first ransomware family coded using the Rust programming language. To date, the ALPHV cybergang has compromised more than 100 organizations. Security researchers at Resecurity…
  • "Asset Visibility Is a Major Challenge for Security Professionals"
    According to a recent study by unified asset intelligence platform Armis of more than 100 security professionals, about 40 percent consider asset visibility the largest challenge confronting their organizations. Over half (54 percent) of respondents cite…
  • "DHS S&T Seeks Solutions to Software Vulnerabilities"
    The Department of Homeland Security (DHS) Science and Technology Directorate (S&T) has announced a new solicitation in collaboration with the Cybersecurity and Infrastructure Security Agency (CISA) that addresses vulnerabilities in software, which is…
  • "Lithuanian Energy Firm Disrupted by DDOS Attack"
    Lithuanian energy company Ignitis Group was recently hit by what it described as its "biggest cyberattack in a decade" when numerous distributed denial of service (DDoS) attacks were aimed at it, disrupting its digital services and websites.  Pro-…
  • "Spike in Amazon Prime Scams Expected"
    For online shoppers, Amazon Prime Day has become an annual retail event, an opportunity to pick up bargains and save money.  Security researchers at Avanan have warned of an increase in phishing and credential harvesting email attempts in June…
  • "Researchers Defeat Facial Recognition Systems With Universal Face Mask"
    A team of researchers at Ben-Gurion University of the Negev and Tel Aviv University have proven that it is possible for attackers to create a face mask capable of defeating modern facial recognition systems. They validated the effectiveness of their…
  • "'Callback' Phishing Campaign Impersonates Security Firms"
    A new callback phishing campaign impersonates well-known security firms in order to trick potential victims into making a phone call that will instruct them to download malware. CrowdStrike Intelligence researchers discovered the campaign because…
  • "Paladin Cloud Launches New Cloud Security and Governance Platform"
    Securing the infrastructure remains challenging as more organizations migrate their data, applications, and workloads to the cloud. Because security teams do not always know what is going on in each cloud environment, it is difficult to detect when…