News
-
"The Importance of a Good API Security Strategy"In the past two years, 60 percent of organizations have suffered a breach involving Application Programming Interfaces (APIs).
-
"Attacker Breakout Time Falls to Just One Hour"Security experts at Crowdstrike recorded a surge in “hands-on-keyboard” threats in 2023, with the average time it took to move laterally from initial access dropping 35% annually to just 62 minutes.
-
"Tech Companies Sign Accord to Combat AI-Generated Election Trickery"Major technology companies recently signed a pact to take "reasonable precautions" to prevent Artificial Intelligence (AI) tools from being used to disrupt democratic elections.
-
"Mustang Panda Targets Asia with Advanced PlugX Variant DOPLUGS"Mustang Panda, a China-linked threat actor, has targeted Asian countries with a variant of the PlugX backdoor called DOPLUGS. DOPLUGS has primarily targeted people in Taiwan and Vietnam.
-
"Biden Executive Order to Bolster US Maritime Cybersecurity"President Joe Biden will be issuing an Executive Order (EO) to strengthen US maritime cybersecurity amid increased reliance on digital technology in the shipping sector.
-
"Your Fingerprints Can Be Recreated From the Sounds Made When You Swipe on a Touchscreen — Chinese and US Researchers Show New Side Channel Can Reproduce Fingerprints to Enable Attacks"A team of researchers from China and the US have discovered a new potential attack on biometric security.
-
"'Virtually Unhackable' Chip Could Make GPU More Power Efficient and Much Faster at AI - By Combining Light and Silicon for a Fundamental Mathematical Operation"Penn Engineers' groundbreaking new chip provides faster performance, lower energy consumption, and enhanced privacy.
-
"Apple Adds Post-Quantum Encryption to iMessage"Apple recently unveiled PQ3, a new post-quantum cryptographic protocol for iMessage that is designed to protect encrypted communications even against future quantum computing attacks.
-
"VoltSchemer Attacks Use Wireless Chargers to Inject Voice Commands, Fry Phones"Researchers from the University of Florida and CertiK have demonstrated a new set of attacks dubbed VoltSchemer that can inject voice commands to manipulate a smartphone's voice assistant via the magnetic field emitted by an off-the-shelf wireless char
-
"Chrome 122, Firefox 123 Patch High-Severity Vulnerabilities"Google and Mozilla recently released Chrome and Firefox software updates to resolve multiple vulnerabilities in both browsers, including high-severity memory safety bugs.
-
"Hybrid Security in the Cloud - Improving Cloud Security Model for Web Applications Using Hybrid Encryption Techniques"A team of researchers in India developed a hybrid approach to improving the security of online applications, particularly within cloud computing.
-
"'KeyTrap' DNS Bug Threatens Widespread Internet Outages"Researchers recently discovered a fundamental design flaw in a Domain Name System (DNS) security extension that could lead to widespread Internet outages.