Security Bulletin

20 May 2025
Biztonsági szemle
Novel Phishing Attack Combines AES With Poisoned npm Packages
Researchers discovered a phishing attack in the wild that takes multiple well-tread technologies like open source packages and AES encryption and combines them.

20 May 2025
Biztonsági szemle
Researchers Scanning the Internet, (Tue, May 20th)
We have been using our data to identify researchers scanning the internet for a few years. Currently, we are tracking 36 groups performing such scans, and our data feed of the IP addresses used contains around 33k addresses [1].

20 May 2025
Biztonsági szemle
Orca snaps up Opus to advance automated cloud security
While the financial terms were not disclosed, the deal is believed to be worth tens of millions and marks a shift for Orca from visibility and risk prioritization to full-scale autonomous remediation.

20 May 2025
Biztonsági szemle
Cloud AI risks rise with data poisoning threat
While AI investment in India is booming, expected to generate $115 billion in economic value by 2027, Tenable found critical missteps, including 77% of Vertex AI Notebook users failing to reconfigure default permissions and 70% of workloads...

20 May 2025
Biztonsági szemle
Salt Security deepens API integration with Wiz
The collaboration allows security teams to gain deeper insight into API vulnerabilities and posture issues by embedding Salt’s threat intelligence into the Wiz security graph.

20 May 2025
Biztonsági szemle
Google Cloud offers real-time cyber risk insights
The initiative blends Google Cloud’s real-time security analytics with insurer expertise to offer more personalized and competitively priced cyber insurance coverage, including protections against AI-related threats and quantum-enabled attacks.

20 May 2025
Biztonsági szemle
Cybersecurity salaries in 2025: Shifting priorities, rising demand for specialized roles
CyberSN’s 2025 Salary Data Report reveals rising pay for specialized technical and leadership roles, while generalist and support positions face stagnation amid outsourcing, automation, and tighter budgets.

20 May 2025
Biztonsági szemle
New bipartisan bill seeks to bolster federal cyber workforce training
CyberScoop reports that mounting threats to the federal cybersecurity workforce have prompted Reps. Pat Fallon, R-Texas, and Marcy Kaptur, D-Ohio, to introduce legislation that would mandate the National Cyber Director to create a new centralized...

20 May 2025
Biztonsági szemle
Regeneron commits to 23andMe's privacy policies after $256M buy
U.S. biotechnology firm Regeneron Pharmaceuticals has pledged to adhere to the current privacy policy of 23andMe, which allows consumer deletion of genetic data, as it entered a $256 million agreement to purchase the embattled DNA testing services...

20 May 2025
Biztonsági szemle
Newly discovered Firefox zero-days addressed
Updates have been released by Mozilla to resolve a pair of critical out-of-bounds access flaws impacting the Firefox browser, which have been abused as zero-days at last week's Pwn2Own Berlin hacking contest, resulting in bounties of $50,000 each for...

20 May 2025
Biztonsági szemle
RomethemeKit For Elementor plugin impacted by RCE bug
Widely used WordPress plugin RomethemeKit for Elementor was discovered to be affected by a critical security vulnerability, tracked as CVE-2025-30911, which could be leveraged to facilitate remote code execution, Infosecurity Magazine reports.

20 May 2025
Biztonsági szemle
Trio of spyware apps shut down
TechCrunch reports that operations of the almost identical mobile surveillance apps Cocospy, Spyzie, and Spyic have been halted.
Pagination
- Previous page ‹‹
- Page 72
- Next page ››