News
-
"How Healthcare Cybersecurity Benchmarking Can Help Sector Enhance Security Efforts"A new report commissioned by Censinet and developed by the Ponemon Institute suggests that healthcare cybersecurity benchmarking data can help health Information Technology (IT) professionals make data-driven decisions, evaluate program efficacy, and…
-
"FTX: Over $400m Stolen from Bankrupt Exchange"Embattled cryptocurrency exchange FTX has recently claimed that $415m worth of digital currency has been stolen by hackers. The bankrupt firm and its "affiliated debtors" announced the news to customers and stakeholders earlier this week. The…
-
"50% Of Orgs Report Experiencing Data Breaches Due to Exposed API Secrets"The Application Programming Interface (API) security vendor Corsha surveyed over 400 security and engineering professionals, finding that 53 percent have faced a data breach due to compromised API tokens. Additionally, according to the survey, 86 percent…
-
11th Annual Best Scientific Cybersecurity Paper Competition Now Live!The eleventh NSA Competition for Best Scientific Cybersecurity Paper i
-
"Russia-Linked Drug Marketplace Solaris Hacked by Its Rival"According to blockchain analysis experts at Elliptic, one of the major darknet drug marketplaces called Solaris has been hacked by its competitor. Users who attempted to access Solaris after January 13 were redirected to the newly-launched Russian-…
-
"Cisco Patches High-Severity SQL Injection Vulnerability in Unified CM"Cisco recently announced patches for a high-severity SQL injection vulnerability in Unified Communications Manager (CM) and Unified Communications Manager Session Management Edition (CM SME). Designed as enterprise call and session management…
-
"Over a Third of Recent ICS Bugs Still Have No Vendor Patch"Security researchers at SynSaber stated that industrial control system (ICS) operators are being let down by their vendors after new research revealed that 35% of CVEs published in the second half of 2022 still have no available patch. The…
-
"NSA Publishes Internet Protocol Version 6 (IPv6) Security Guidance"The National Security Agency (NSA) has published guidance aimed at helping the Department of Defense (DOD) and other system administrators in identifying and mitigating security issues related to the migration to Internet Protocol version 6 (IPv6). The "…
-
"Ransomware Payments Fall by 40% in 2022"According to researchers at Chainalysis, ransomware payments fell by over 40% in 2022 compared to 2021, with victim organizations increasingly reluctant to pay their extorters. The researchers found that ransomware attackers extorted $456.8m from…
-
"Cross-Site Forgery Bug Would Facilitate Remote Code Execution in Microsoft Azure Services"Researchers at Ermetic discovered and disclosed a Cross-Site Request Forgery (CSRF) flaw impacting multiple Microsoft Azure services. The flaw would allow an attacker to take control of and remotely execute code on the victim's application. The flaw…
-
"Cyber Insurance Can Offset the Risks of Potential Breaches"Findings from a survey conducted by the cybersecurity and data backup company Datto suggest that small to medium-sized businesses (SMBs) are aware of growing cyber threats and are increasingly dedicating resources and investing in areas such as…