Latest Cybersecurity News and Articles
22 November 2023
Dream Security has raised $35 million in a financing round led by existing investors Aleph and Dovi France's Group 11. It offers a range of products that assess and predict cyber threats, react in real-time, and create customized protective measures.
22 November 2023
Researchers at Aqua call urgent attention to the public exposure of Kubernetes configuration secrets, warning that hundreds of organizations are vulnerable to this “ticking supply chain attack bomb.”
The post Researchers Discover Dangerous Exposure of Sensitive Kubernetes Secrets appeared first on SecurityWeek.
22 November 2023
The UK's National Cyber Security Centre (NCSC) has released its first RFC for the Internet Engineering Task Force (IETF), focusing on indicators of compromise (IoCs), which are observable artifacts associated with attackers.
22 November 2023
While the effectiveness of this feature is yet to be verified by security researchers or Google, the existence of similar claims by another malware suggests that there may be an exploitable vulnerability in session cookies.
22 November 2023
According to experts, companies are increasingly prioritizing system backups and restoration capabilities to avoid paying ransoms during cyber incidents. Companies must also report cyber incidents and notify affected individuals.
22 November 2023
The CVE-2023-4966 vulnerability has been actively exploited by threat actors since late August, allowing them to hijack authenticated sessions and bypass strong authentication measures.
22 November 2023
A new research has uncovered multiple vulnerabilities that could be exploited to bypass Windows Hello authentication on Dell Inspiron 15, Lenovo ThinkPad T14, and Microsoft Surface Pro X laptops.
The flaws were discovered by researchers at hardware and software product security and offensive research firm Blackwing Intelligence, who found the weaknesses in the fingerprint sensors from Goodix,
22 November 2023
Ransomware gangs are employing various tactics to force victims to pay, including DDoS attacks and regulatory complaints, while some ransomware operators are introducing new rules to ensure larger ransom amounts and increased payout likelihood.
22 November 2023
Michael Daniel, President & CEO at Cyber Threat Alliance, discusses sharing threat intelligence with other organizations as well as the challenges faced when establishing effective partnerships in the security industry.
22 November 2023
A ransomware attack on the Industrial and Commercial Bank of China caused failed trading rates in the U.S. Treasury market to soar to $60 billion, highlighting the potential impact of cyberattacks on financial systems.
22 November 2023
The cyber strategy focuses on enhancing the Navy's cyber enterprise, collaborating with allies, securing critical infrastructure and weapon systems, and improving and supporting the cyber workforce, among other areas.
22 November 2023
Korean IT company TmaxSoft has experienced a major data leak, exposing over 50 million sensitive records. The leak, which has been ongoing for two years, was discovered by Cybernews researchers.
22 November 2023
Car parts giant AutoZone says nearly 185,000 individuals were impacted by a data breach caused by the MOVEit hack.
The post 185,000 Individuals Impacted by MOVEit Hack at Car Parts Giant AutoZone appeared first on SecurityWeek.
22 November 2023
A recent report by Synopsys reveals that there has been a decrease in vulnerabilities found in target applications, indicating that code reviews, automated testing, and continuous integration are helping to reduce programming errors.
22 November 2023
The malware campaign known as ClearFake is now targeting Mac users by distributing fake browser updates that infect their systems with the Atomic Stealer, also known as AMOS.
22 November 2023
The ICO is cracking down on websites that coerce visitors into accepting advertising cookies, citing concerns about targeted ads based on personal information and potential privacy violations.
22 November 2023
Researchers have tested the fingerprint sensors used for Windows Hello on three popular laptops and managed to bypass them.
The post Windows Hello Fingerprint Authentication Bypassed on Popular Laptops appeared first on SecurityWeek.
22 November 2023
San Francisco-based OpenAI has reached an agreement in principle for Sam Altman to return to OpenAI as CEO with a new initial board.
The post Sam Altman is Back as OpenAI CEO Just Days After Being Removed, Along With a New Board appeared first on SecurityWeek.
22 November 2023

Ransomware group Rhysida claims responsibility for hack and has posted images from library’s HR filesThe British Library has confirmed that personal data stolen in a cyber-attack has appeared online, apparently for sale to the highest bidder.The attack was carried out in October by a group known for such criminal activity, said the UK’s national library, which holds about 14m books and millions of other items. Continue reading...
22 November 2023
The breach, which occurred on May 28, 2023, compromised the data of 184,995 individuals. The company took three months to determine the extent of the breach and notify affected customers.