February 2024

‘SlashAndGrab’ ScreenConnect Vulnerability Widely Exploited for Malware Delivery

‘SlashAndGrab’ ScreenConnect Vulnerability Widely Exploited for Malware Delivery 2024-02-23 at 14:31 By Eduard Kovacs ConnectWise ScreenConnect vulnerability tracked as CVE-2024-1709 and SlashAndGrab exploited to deliver ransomware and other malware. The post ‘SlashAndGrab’ ScreenConnect Vulnerability Widely Exploited for Malware Delivery appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

‘SlashAndGrab’ ScreenConnect Vulnerability Widely Exploited for Malware Delivery Read More »

230k Individuals Impacted by Data Breach at Australian Telco Tangerine

230k Individuals Impacted by Data Breach at Australian Telco Tangerine 2024-02-23 at 14:31 By Ionut Arghire Tangerine Telecom says attackers stole the personal information of 230,000 individuals from a legacy customer database. The post 230k Individuals Impacted by Data Breach at Australian Telco Tangerine appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

230k Individuals Impacted by Data Breach at Australian Telco Tangerine Read More »

Microsoft Releases PyRIT – A Red Teaming Tool for Generative AI

Microsoft Releases PyRIT – A Red Teaming Tool for Generative AI 2024-02-23 at 14:31 By Microsoft has released an open access automation framework called PyRIT (short for Python Risk Identification Tool) to proactively identify risks in generative artificial intelligence (AI) systems. The red teaming tool is designed to “enable every organization across the globe to innovate responsibly

Microsoft Releases PyRIT – A Red Teaming Tool for Generative AI Read More »

How to Use Tines’s SOC Automation Capability Matrix

How to Use Tines’s SOC Automation Capability Matrix 2024-02-23 at 14:31 By Created by John Tuckner and the team at workflow and automation platform Tines, the SOC Automation Capability Matrix (SOC ACM) is a set of techniques designed to help security operations teams understand their automation capabilities and respond more effectively to incidents.  A customizable, vendor-agnostic tool featuring

How to Use Tines’s SOC Automation Capability Matrix Read More »

Avast ordered to pay $16.5 million for misuse of user data

Avast ordered to pay $16.5 million for misuse of user data 2024-02-23 at 13:18 By Help Net Security The Federal Trade Commission will require software provider Avast to pay $16.5 million and prohibit the company from selling or licensing any web browsing data for advertising purposes to settle charges that the company and its subsidiaries

Avast ordered to pay $16.5 million for misuse of user data Read More »

AT&T Says the Outage to Its US Cellphone Network Was Not Caused by a Cyberattack

AT&T Says the Outage to Its US Cellphone Network Was Not Caused by a Cyberattack 2024-02-23 at 12:31 By Associated Press AT&T said the hourslong outage to its U.S. cellphone network Thursday appeared to be the result of a technical error, not a malicious attack. The post AT&T Says the Outage to Its US Cellphone

AT&T Says the Outage to Its US Cellphone Network Was Not Caused by a Cyberattack Read More »

Microsoft Releases Red Teaming Tool for Generative AI

Microsoft Releases Red Teaming Tool for Generative AI 2024-02-23 at 12:31 By Ionut Arghire Microsoft releases PyRIT red teaming tool to help identify risks in generative AI through automation. The post Microsoft Releases Red Teaming Tool for Generative AI appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

Microsoft Releases Red Teaming Tool for Generative AI Read More »

Meta seeks ASIC designers for ML accelerators and datacenter SoCs

Meta seeks ASIC designers for ML accelerators and datacenter SoCs 2024-02-23 at 09:46 By Simon Sharwood Appears to be struggling to find them, even in India, as it’s re-posted job ads Meta wants to build accelerators and SoCs to run in its datacenters – for jobs including machine learning – but appears to be struggling

Meta seeks ASIC designers for ML accelerators and datacenter SoCs Read More »

NASA warns as huge solar flare threatens comms, maybe astronauts too

NASA warns as huge solar flare threatens comms, maybe astronauts too 2024-02-23 at 08:46 By Simon Sharwood No, this was not the cause of cellular network outages that hit the USA on Thursday NASA has warned of strong solar flares that have the potential to interrupt communications in space and down here on Earth.… This

NASA warns as huge solar flare threatens comms, maybe astronauts too Read More »

Researchers Detail Apple’s Recent Zero-Click Shortcuts Vulnerability

Researchers Detail Apple’s Recent Zero-Click Shortcuts Vulnerability 2024-02-23 at 08:16 By Details have emerged about a now-patched high-severity security flaw in Apple’s Shortcuts app that could permit a shortcut to access sensitive information on the device without users’ consent. The vulnerability, tracked as CVE-2024-23204 (CVSS score: 7.5), was addressed by Apple on January 22, 2024, with the

Researchers Detail Apple’s Recent Zero-Click Shortcuts Vulnerability Read More »

The old, not the new: Basic security issues still biggest threat to enterprises

The old, not the new: Basic security issues still biggest threat to enterprises 2024-02-23 at 08:01 By Help Net Security In 2023, cybercriminals saw more opportunities to “log in” versus hack into corporate networks through valid accounts – making this tactic a preferred weapon for threat actors, according to IBM’s 2024 X-Force Threat Intelligence Index.

The old, not the new: Basic security issues still biggest threat to enterprises Read More »

X protests forced suspension of accounts on orders of India’s government

X protests forced suspension of accounts on orders of India’s government 2024-02-23 at 07:47 By Laura Dobberstein Nonprofit SFLC links orders to farming protests The global government affairs team at X (née Twitter) has suspended some accounts and posts in India after receiving executive orders to do so from the country’s government, backed by threat

X protests forced suspension of accounts on orders of India’s government Read More »

New infosec products of the week: February 23, 2024

New infosec products of the week: February 23, 2024 2024-02-23 at 07:32 By Help Net Security Here’s a look at the most interesting products from the past week, featuring releases from ManageEngine, Metomic, Pindrop, and Truffle Security. Pindrop Pulse offers protection against audio deepfakes Pindrop Pulse’s ability to detect deepfakes provides organizations and their customers

New infosec products of the week: February 23, 2024 Read More »

Secure email gateways struggle to keep pace with sophisticated phishing campaigns

Secure email gateways struggle to keep pace with sophisticated phishing campaigns 2024-02-23 at 07:02 By Help Net Security In 2023, malicious email threats bypassing secure email gateways (SEGs) increased by more than 100%, according to Cofense. In just two years, Cofense identified over 1.5 million malicious emails bypassing their customers’ SEGs, signaling a 37% increase

Secure email gateways struggle to keep pace with sophisticated phishing campaigns Read More »

2024 will be a volatile year for cybersecurity as ransomware groups evolve

2024 will be a volatile year for cybersecurity as ransomware groups evolve 2024-02-23 at 06:31 By Help Net Security Hackers have significantly increased demands for ransomware, rising over 20% year-over-year to $600,000, according to Arctic Wolf. Organizations are failing to patch their networks And there are worrying signs that 2024 will be especially volatile, as

2024 will be a volatile year for cybersecurity as ransomware groups evolve Read More »

Scroll to Top