Security Bulletin
2 May 2024
Biztonsági szemle
CISA and FBI Release Secure by Design Alert to Urge Manufacturers to Eliminate Directory Traversal Vulnerabilities
Today, CISA and the Federal Bureau of Investigation (FBI) released a joint Secure by Design Alert, Eliminating Directory Traversal Vulnerabilities in Software. This Alert was crafted in response to recent well-publicized threat actor campaigns that...
2 May 2024
Biztonsági szemle
Microsoft Graph API Emerges as a Top Attacker Tool to Plot Data Theft
Weaponizing Microsoft's own services for command-and-control is simple and costless, and it helps attackers better avoid detection.
2 May 2024
Biztonsági szemle
'DuneQuixote' Shows Stealth Cyberattack Methods Are Evolving. Can Defenders Keep Up?
A recent campaign targeting Middle Eastern government organizations plays standard detection tools like a fiddle. With cyberattackers getting more creative, defenders must start keeping pace.
2 May 2024
Biztonsági szemle
ISC Stormcast For Thursday, May 2nd, 2024 https://isc.sans.edu/podcastdetail/8964, (Thu, May 2nd)
(c) SANS Internet Storm Center. https://isc.sans.edu Creative Commons Attribution-Noncommercial 3.0 United States License.
2 May 2024
Biztonsági szemle
Verizon’s 2024 Data Breach Investigations Report: 5 key takeaways
Vulnerability exploits, pure extortion and internal risks are on the rise, while AI threats fall short.
2 May 2024
Biztonsági szemle
Private Internet Search Is Still Finding Its Way
The quest to keep data private while still being able to search may soon be within reach, with different companies charting their own paths.
2 May 2024
Biztonsági szemle
UnitedHealth Congressional Testimony Reveals Rampant Security Fails
The breach was carried out with stolen Citrix credentials for an account that lacked multifactor authentication. Attackers went undetected for days, and Change's backup strategy failed.
1 May 2024
Biztonsági szemle
Cobalt's 2024 State of Pentesting Report Reveals Cybersecurity Industry Needs
1 May 2024
Biztonsági szemle
Better identity threat detection sought by new Semperis ML-based tool
SiliconAngle reports that more robust high-risk identity threat discovery and response efforts are being aimed by enterprise identity protection startup Semperis with its new machine learning-based Lightning Identity Runtime Protection identity...
1 May 2024
Biztonsági szemle
US jails former NSA employee for attempting secret sale to Russia
The U.S. Department of Justice announced that former National Security Agency information systems security designer Jareh Sebastian Dalke was given a prison sentence of 262 months, or nearly 22 years, for trying to sell confidential documents with U...
1 May 2024
Biztonsági szemle
Shadow APIs: An Overlooked Cyber-Risk for Orgs
Unmanaged and unknown Web services endpoints are just some of the challenges organizations must address to improve API security.
Pagination
- Previous page ‹‹
- Page 861
- Next page ››