Maintained by the Forum of Incident Response and Security Teams and used to assess the severity of software vulnerabilities, CVSS has recently been challenged anew for its complexity, perceived imprecision, and potential misuse.
AI cybersecurity worries mount amid hackers’ disinterest
A Sophos survey of 400 IT leaders found that 80% anticipate AI-driven cybersecurity expenses to increase significantly, aligning with Gartner's prediction of a nearly 10% rise in global technology spending.
Open Source AI Models: Perfect Storm for Malicious Code, Vulnerabilities
Companies pursing internal AI development using models from Hugging Face and other open source repositories need to focus on supply chain security and checking for vulnerabilities.
How Banks Can Adapt to the Rising Threat of Financial Crime
Banking fraud and financial crimes are growing more sophisticated every day. By understanding the threats and building strong collaborations, banks can protect themselves and their clients.
Salt Typhoon Exploits Cisco Devices in Telco Infrastructure
The China-sponsored state espionage group has exploited known, older bugs in Cisco gear for successful cyber intrusions on six continents in the past two months.
Roundtable: Is DOGE Flouting Cybersecurity for US Data?
Cybersecurity experts weigh in on the red flags flying around the new Department of Government Efficiency's handling of the mountains of US data it now has access to, potentially without basic information security protections in place.