2024

Cloudflare Thwarts Largest-Ever 3.8 Tbps DDoS Attack Targeting Global Sectors

Cloudflare Thwarts Largest-Ever 3.8 Tbps DDoS Attack Targeting Global Sectors 2024-10-04 at 13:01 By Cloudflare has disclosed that it mitigated a record-breaking distributed denial-of-service (DDoS) attack that peaked at 3.8 terabits per second (Tbps) and lasted 65 seconds. The web infrastructure and security company said it fended off “over one hundred hyper-volumetric L3/4 DDoS attacks […]

Cloudflare Thwarts Largest-Ever 3.8 Tbps DDoS Attack Targeting Global Sectors Read More »

WordPress LiteSpeed Cache Plugin Security Flaw Exposes Sites to XSS Attacks

WordPress LiteSpeed Cache Plugin Security Flaw Exposes Sites to XSS Attacks 2024-10-04 at 13:01 By A new high-severity security flaw has been disclosed in the LiteSpeed Cache plugin for WordPress that could enable malicious actors to execute arbitrary JavaScript code under certain conditions. The flaw, tracked as CVE-2024-47374 (CVSS score: 7.2), has been described as

WordPress LiteSpeed Cache Plugin Security Flaw Exposes Sites to XSS Attacks Read More »

Google Cloud to help India export its Digital Public Infrastructure

Google Cloud to help India export its Digital Public Infrastructure 2024-10-04 at 09:16 By Laura Dobberstein Bundles free government apps to help digital diplomacy – and maybe find some new customers Google Cloud will help India to spread its Digital Public Infrastructure – the suite of government apps it offers to help other nations –

Google Cloud to help India export its Digital Public Infrastructure Read More »

October 2024 Patch Tuesday forecast: Recall can be recalled

October 2024 Patch Tuesday forecast: Recall can be recalled 2024-10-04 at 07:46 By Help Net Security October arrived, and Microsoft started the month by announcing the release of Windows 11 24H2. The preview versions of this release have been in the news due to many innovations and one controversial feature. Windows 11 24H2 and Microsoft

October 2024 Patch Tuesday forecast: Recall can be recalled Read More »

Best practices for implementing threat exposure management, reducing cyber risk exposure

Best practices for implementing threat exposure management, reducing cyber risk exposure 2024-10-04 at 07:16 By Mirko Zorz In this Help Net Security interview, Sanaz Yashar, CEO at Zafran, discusses the role of threat exposure management (TEM) in modern cybersecurity strategies. As traditional vulnerability management evolves, TEM addresses the overwhelming risks arising from expanded attack surfaces

Best practices for implementing threat exposure management, reducing cyber risk exposure Read More »

Balancing cost and protection: Budgeting physical security programs

Balancing cost and protection: Budgeting physical security programs 2024-10-04 at 07:16 By Budgeting for physical security programs is a strategic balancing act between maximizing the safety of people and assets while keeping costs down and ensuring a good ROI on the program’s budget spend. This article is an excerpt from Subscribe to Security Magazine’s RSS

Balancing cost and protection: Budgeting physical security programs Read More »

Elon Musk’s X mashed by Australian court for evading child protection reporting

Elon Musk’s X mashed by Australian court for evading child protection reporting 2024-10-04 at 07:01 By Simon Sharwood Argument that it didn’t inherit Twitter’s legal obligations did not hit the spot Australia’s Federal Court has rejected Elon Musk’s assertion that X/Twitter does not need to comply with local requirements to provide information about how it

Elon Musk’s X mashed by Australian court for evading child protection reporting Read More »

MaLDAPtive: Open-source framework for LDAP SearchFilter parsing, obfuscation, and more!

MaLDAPtive: Open-source framework for LDAP SearchFilter parsing, obfuscation, and more! 2024-10-04 at 07:01 By Help Net Security MaLDAPtive is an open-source framework for LDAP SearchFilter parsing, obfuscation, deobfuscation, and detection. At its core, the project features a custom-built C# LDAP parser designed for tokenization and syntax tree parsing. It also incorporates specialized properties to ensure

MaLDAPtive: Open-source framework for LDAP SearchFilter parsing, obfuscation, and more! Read More »

Big names among thousands infected by payment-card-stealing CosmicSting crooks

Big names among thousands infected by payment-card-stealing CosmicSting crooks 2024-10-04 at 06:46 By Jessica Lyons Gangs hit 5% of all Adobe Commerce, Magento-powered stores, Sansec says Ray-Ban, National Geographic, Whirlpool, and Segway are among thousands of brands whose web stores were reportedly compromised by criminals exploiting the CosmicSting flaw in hope of stealing shoppers’ payment

Big names among thousands infected by payment-card-stealing CosmicSting crooks Read More »

Cybercriminals capitalize on poorly configured cloud environments

Cybercriminals capitalize on poorly configured cloud environments 2024-10-04 at 06:31 By Help Net Security Off-the-shelf offensive security tools and poorly configured cloud environments create openings in the attack surface, according to Elastic. Adversaries are utilizing off-the-shelf tools Offensive security tools (OSTs), including Cobalt Strike and Metasploit, made up ~54% of observed malware alerts. The most

Cybercriminals capitalize on poorly configured cloud environments Read More »

New infosec products of the week: October 4, 2024

New infosec products of the week: October 4, 2024 2024-10-04 at 06:02 By Industry News Here’s a look at the most interesting products from the past week, featuring releases from Balbix, Halcyon, Metomic, Red Sift, SAFE Security, Veeam Software, and Legit Security. SAFE X equips CISOs with integrated data from all their existing cybersecurity products

New infosec products of the week: October 4, 2024 Read More »

It’s not just AI datacenters that need their own power: Taiwanese server-maker Quanta has bought microgrids

It’s not just AI datacenters that need their own power: Taiwanese server-maker Quanta has bought microgrids 2024-10-04 at 05:16 By Laura Dobberstein California utilities couldn’t deliver for hyperscalers’ favorite hardware-maker Its not just datacenters running AI that need their own energy sources: Taiwanese hardware manufacturer to the clouds Quanta has revealed the purchase of three

It’s not just AI datacenters that need their own power: Taiwanese server-maker Quanta has bought microgrids Read More »

Cloudflare beats patent troll so badly it basically gives up

Cloudflare beats patent troll so badly it basically gives up 2024-10-04 at 02:16 By Thomas Claburn Networking giant pockets $225K, foe promises to stop suing and abandons IP Cloudflare on Thursday celebrated a victory over Sable Networks, which the former described as a “patent troll.”… This article is an excerpt from The Register View Original

Cloudflare beats patent troll so badly it basically gives up Read More »

Scammers in the slammer after ripping off Apple with fake iPhone returns

Scammers in the slammer after ripping off Apple with fake iPhone returns 2024-10-04 at 01:31 By Jessica Lyons Duo must cough up $1.5M for pulling off multi-million-dollar swindle Two fraudsters will spend nearly five years behind bars each and pay a combined $1.5 million for bilking Apple out of millions of dollars worth of iPhones. …

Scammers in the slammer after ripping off Apple with fake iPhone returns Read More »

John Deere accused of being full of manure with its right-to-repair promises

John Deere accused of being full of manure with its right-to-repair promises 2024-10-04 at 00:01 By Thomas Claburn Tractor maker has only turned over shoddy tools, half-baked info, may be breaking the law, says senator US Senator Elizabeth Warren (D-MA) has sent a letter to John May, CEO of agricultural equipment maker Deere & Company,

John Deere accused of being full of manure with its right-to-repair promises Read More »

Saying goodbye to the tech dreams Microsoft abandoned with Windows 11 24H2

Saying goodbye to the tech dreams Microsoft abandoned with Windows 11 24H2 2024-10-03 at 22:18 By Richard Speed Is that a Mixed Reality headset, or just a complicated paperweight? Oh and farewell WordPad With the release of Windows 11 24H2, it is time to pay our respects to the features and functions removed from Microsoft’s

Saying goodbye to the tech dreams Microsoft abandoned with Windows 11 24H2 Read More »

Alabama hospital admits cyberattack compromised data on 61,000 patients

Alabama hospital admits cyberattack compromised data on 61,000 patients 2024-10-03 at 21:31 By Connor Jones Pwned info includes medical records, insurance details, and Social Security numbers in some cases An Alabama hospital is officially informing more than 61,000 patients that their personal data was compromised after a cyberattack in October 2023.… This article is an

Alabama hospital admits cyberattack compromised data on 61,000 patients Read More »

Scroll to Top