2024

Cybersecurity Researchers Warn of New Rust-Based Splinter Post-Exploitation Tool

Cybersecurity Researchers Warn of New Rust-Based Splinter Post-Exploitation Tool 2024-09-25 at 17:31 By Cybersecurity researchers have flagged the discovery of a new post-exploitation red team tool called Splinter in the wild. Palo Alto Networks Unit 42 shared its findings after it discovered the program on several customers’ systems. “It has a standard set of features […]

Cybersecurity Researchers Warn of New Rust-Based Splinter Post-Exploitation Tool Read More »

PoC for critical SolarWinds Web Help Desk vulnerability released (CVE-2024-28987)

PoC for critical SolarWinds Web Help Desk vulnerability released (CVE-2024-28987) 2024-09-25 at 17:17 By Zeljka Zorz Details about and proof-of-concept (PoC) exploit code for CVE-2024-28987, a recently patched SolarWinds Web Help Desk (WHD) vulnerability that could be exploited by unauthenticated attackers to remotely read and modify all help desk ticket details, are now public. “When

PoC for critical SolarWinds Web Help Desk vulnerability released (CVE-2024-28987) Read More »

Campaigners claim ‘Privacy Preserving Attribution’ in Firefox does the opposite

Campaigners claim ‘Privacy Preserving Attribution’ in Firefox does the opposite 2024-09-25 at 16:49 By Richard Speed Tracking alternative is less invasive than other methods, but is opt out by default Privacy activist group noyb has filed a complaint against Mozilla over a “Privacy Preserving Attribution” feature that was quietly enabled in the Firefox browser following

Campaigners claim ‘Privacy Preserving Attribution’ in Firefox does the opposite Read More »

Malwarebytes Personal Data Remover protects user privacy

Malwarebytes Personal Data Remover protects user privacy 2024-09-25 at 16:48 By Industry News Malwarebytes introduced its latest consumer product, Personal Data Remover, designed to protect user privacy by assisting users with the deletion of personal information from data broker databases and people search sites. This new solution offers regular monitoring to ensure individuals’ data remains

Malwarebytes Personal Data Remover protects user privacy Read More »

Onapsis expands security for SAP Business Technology Platform

Onapsis expands security for SAP Business Technology Platform 2024-09-25 at 16:31 By Industry News Onapsis announced new capabilities for its flagship solutions, Onapsis Defend and Onapsis Assess, designed to secure the SAP Business Technology Platform (SAP BTP). As more customers adopt SAP S/4HANA cloud and move to RISE with SAP, SAP BTP provides a unified

Onapsis expands security for SAP Business Technology Platform Read More »

Shedding Light on Election Deepfakes

Shedding Light on Election Deepfakes 2024-09-25 at 16:01 By Pauline Bolaños Contrary to popular belief, deepfakes — AI-crafted audio files, images, or videos that depict events and statements that never occurred; a portmanteau of “deep learning” and “fake” — are not all intrinsically malicious.  This article is an excerpt from SpiderLabs Blog View Original Source

Shedding Light on Election Deepfakes Read More »

Researcher Says Healthcare Facility’s Doors Hackable for Over a Year

Researcher Says Healthcare Facility’s Doors Hackable for Over a Year 2024-09-25 at 15:46 By Eduard Kovacs A researcher analyzing building access control vulnerabilities says a US healthcare facility has yet to patch security holes one year after being notified. The post Researcher Says Healthcare Facility’s Doors Hackable for Over a Year appeared first on SecurityWeek.

Researcher Says Healthcare Facility’s Doors Hackable for Over a Year Read More »

India-Linked Hackers Targeting Pakistani Government, Law Enforcement

India-Linked Hackers Targeting Pakistani Government, Law Enforcement 2024-09-25 at 15:46 By Ionut Arghire The India-linked threat actor SloppyLemming has been targeting government, law enforcement, and other entities in Pakistan. The post India-Linked Hackers Targeting Pakistani Government, Law Enforcement appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original Source

India-Linked Hackers Targeting Pakistani Government, Law Enforcement Read More »

Google files first ever complaint with European Commission against Microsoft

Google files first ever complaint with European Commission against Microsoft 2024-09-25 at 15:01 By Paul Kunert Mountain View versus Redmond: Fight over cloud software licensing policies gets formal Google Cloud Platform has filed a complaint with the European Commission alleging Microsoft software licensing policies are anti-competitive, including claims customers are being charged four times more

Google files first ever complaint with European Commission against Microsoft Read More »

ChatGPT macOS Flaw Could’ve Enabled Long-Term Spyware via Memory Function

ChatGPT macOS Flaw Could’ve Enabled Long-Term Spyware via Memory Function 2024-09-25 at 15:01 By A now-patched security vulnerability in OpenAI’s ChatGPT app for macOS could have made it possible for attackers to plant long-term persistent spyware into the artificial intelligence (AI) tool’s memory. The technique, dubbed SpAIware, could be abused to facilitate “continuous data exfiltration

ChatGPT macOS Flaw Could’ve Enabled Long-Term Spyware via Memory Function Read More »

Northern Ireland cops whose info was leaked in 2023 may get £240M+ damages

Northern Ireland cops whose info was leaked in 2023 may get £240M+ damages 2024-09-25 at 14:48 By Connor Jones Officers put in danger when republican dissidents grabbed hold of their names and details Police officer victims have yet to receive any compensation after a document was mistakenly published in 2023 containing data belonging to members

Northern Ireland cops whose info was leaked in 2023 may get £240M+ damages Read More »

Second Pwn2Own Automotive Contest Offers Over $1 Million in Prizes

Second Pwn2Own Automotive Contest Offers Over $1 Million in Prizes 2024-09-25 at 14:17 By Ionut Arghire ZDI offers over $1 million in cash and prizes at the next Pwn2Own Automotive hacking contest, set for January 2025 in Tokyo. The post Second Pwn2Own Automotive Contest Offers Over $1 Million in Prizes appeared first on SecurityWeek. This

Second Pwn2Own Automotive Contest Offers Over $1 Million in Prizes Read More »

Third Recent Ivanti Vulnerability Exploited in the Wild

Third Recent Ivanti Vulnerability Exploited in the Wild 2024-09-25 at 14:17 By Eduard Kovacs CVE-2024-7593 is the third Ivanti product vulnerability patched in recent months that has been exploited in the wild. The post Third Recent Ivanti Vulnerability Exploited in the Wild appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed

Third Recent Ivanti Vulnerability Exploited in the Wild Read More »

Webinar Today: Shield Your Data, Secure Your Future: A Multi-Layered Approach to Operational Resilience

Webinar Today: Shield Your Data, Secure Your Future: A Multi-Layered Approach to Operational Resilience 2024-09-25 at 14:17 By SecurityWeek News Join the webinar to gain insights and learn actionable steps to enhance your organization’s data security and resilience. The post Webinar Today: Shield Your Data, Secure Your Future: A Multi-Layered Approach to Operational Resilience appeared

Webinar Today: Shield Your Data, Secure Your Future: A Multi-Layered Approach to Operational Resilience Read More »

Hyperscalers are carving up the ocean floor into private internet highways

Hyperscalers are carving up the ocean floor into private internet highways 2024-09-25 at 14:03 By Laura Dobberstein Think tank warns of sovereignty risks from subsea cable consolidation The dominance of US-based hyperscalers like Google, Meta, Microsoft, and Amazon in subsea cables has reshaped the industry and put critical infrastructure at risk, an Australian think tank

Hyperscalers are carving up the ocean floor into private internet highways Read More »

Tamnoon raises $12 million to reduce critical cloud exposures

Tamnoon raises $12 million to reduce critical cloud exposures 2024-09-25 at 14:02 By Industry News Tamnoon announced it has raised $12 million in Series A funding. The round was led by cybersecurity investment firm Bright Pixel Capital (formerly Sonae IM), with participation by new investors Blu Ventures and Mindset Ventures as well as existing investors

Tamnoon raises $12 million to reduce critical cloud exposures Read More »

Nudge Security introduces automated SaaS spend discovery capabilities

Nudge Security introduces automated SaaS spend discovery capabilities 2024-09-25 at 13:31 By Industry News Nudge Security unveiled an automated SaaS spend discovery capabilities, building on the company’s patented approach to SaaS discovery to include analysis and insights into previously unknown SaaS spend. At a time when organizations are trying to rationalize app estates to reduce

Nudge Security introduces automated SaaS spend discovery capabilities Read More »

Scroll to Top