February 2025

How CISOs can balance security and business agility in the cloud

How CISOs can balance security and business agility in the cloud 2025-02-17 at 08:03 By Mirko Zorz In this Help Net Security interview, Natalia Belaya, CISO at Cloudera, discusses common misconceptions about cloud security, the balance between protection and business agility, and overlooked risks that CISOs should prioritize. Belaya also offers practical strategies for integrating

How CISOs can balance security and business agility in the cloud Read More »

Backup software vendor Veeam deleted forum data after restoration SNAFU

Backup software vendor Veeam deleted forum data after restoration SNAFU 2025-02-17 at 07:50 By Simon Sharwood DevOps team did the dirty on a database Data management vendor Veeam has admitted to an embarrassing oopsie: messing up a restoration job and erasing data.… This article is an excerpt from The Register View Original Source

Backup software vendor Veeam deleted forum data after restoration SNAFU Read More »

Orbit: Open-source Nuclei security scanning and automation platform

Orbit: Open-source Nuclei security scanning and automation platform 2025-02-17 at 07:50 By Mirko Zorz Orbit is an open-source platform built to streamline large-scale Nuclei scans, enabling teams to manage, analyze, and collaborate on security findings. It features a SvelteKit-based web frontend and a Go-powered backend, with Terraform and Ansible handling infrastructure and automation. “I built

Orbit: Open-source Nuclei security scanning and automation platform Read More »

The hidden risks of a broken data provisioning system

The hidden risks of a broken data provisioning system 2025-02-17 at 07:04 By Help Net Security In this Help Net Security video, Bart Koek, Field CTO at Immuta, discusses their 2025 State of Data Security Report, highlighting emerging challenges for IT and data security leaders. Key takeaways from the report: GenAI is causing significant change

The hidden risks of a broken data provisioning system Read More »

Broadcom, TSMC eye deals that would split storied chipmaker Intel: report

Broadcom, TSMC eye deals that would split storied chipmaker Intel: report 2025-02-17 at 00:50 By Reuters Broadcom has been closely examining Intel’s chip design and marketing business, while TSMC has studied controlling some or all of Intel’s chip plants, possibly as part of an investor consortium or other structure, the WSJ said. This article is

Broadcom, TSMC eye deals that would split storied chipmaker Intel: report Read More »

Lonely men are creating AI girlfriends — and taking their violent anger out on them

Lonely men are creating AI girlfriends — and taking their violent anger out on them 2025-02-16 at 21:20 By Hannah Sparks Experts say that the abusive behavior could be detrimental to their real life relationships. This article is an excerpt from Latest Technology News and Product Reviews | New York Post View Original Source

Lonely men are creating AI girlfriends — and taking their violent anger out on them Read More »

This open text-to-speech model needs just seconds of audio to clone your voice

This open text-to-speech model needs just seconds of audio to clone your voice 2025-02-16 at 21:06 By Tobias Mann El Reg shows you how to run Zypher’s speech-replicating AI on your own box Hands on  Palo Alto-based AI startup Zyphra unveiled a pair of open text-to-speech (TTS) models this week said to be capable of

This open text-to-speech model needs just seconds of audio to clone your voice Read More »

Week in review: Microsoft fixes two actively exploited 0-days, PAN-OS auth bypass hole plugged

Week in review: Microsoft fixes two actively exploited 0-days, PAN-OS auth bypass hole plugged 2025-02-16 at 11:04 By Help Net Security Here’s an overview of some of last week’s most interesting news, articles, interviews and videos: Microsoft fixes two actively exploited zero-days (CVE-2025-21418, CVE-2025-21391) February 2025 Patch Tuesday is here, and Microsoft has delivered fixes

Week in review: Microsoft fixes two actively exploited 0-days, PAN-OS auth bypass hole plugged Read More »

Over 12,000 KerioControl Firewalls Vulnerable to RCE Exploits

Over 12,000 KerioControl Firewalls Vulnerable to RCE Exploits 2025-02-15 at 18:26 View original post at vpnMentor Thousands of GFI KerioControl firewall devices have remained vulnerable to a critical remote code execution (RCE) flaw, CVE-2024-52875, despite security patches being made available since December 2024. The flaw allows attackers to exploit improper input sanitization in the firewall’s

Over 12,000 KerioControl Firewalls Vulnerable to RCE Exploits Read More »

Nearly 10 years after Data and Goliath, Bruce Schneier says: Privacy’s still screwed

Nearly 10 years after Data and Goliath, Bruce Schneier says: Privacy’s still screwed 2025-02-15 at 17:51 By Iain Thomson ‘In 50 years, I think we’ll view these business practices like we view sweatshops today’ Interview  It has been nearly a decade since famed cryptographer and privacy expert Bruce Schneier released the book Data and Goliath:

Nearly 10 years after Data and Goliath, Bruce Schneier says: Privacy’s still screwed Read More »

Android’s New Feature Blocks Fraudsters from Sideloading Apps During Calls

Android’s New Feature Blocks Fraudsters from Sideloading Apps During Calls 2025-02-15 at 12:50 By Google is working on a new security feature for Android that blocks device owners from changing sensitive settings when a phone call is in progress. Specifically, the in-call anti-scammer protections include preventing users from turning on settings to install apps from

Android’s New Feature Blocks Fraudsters from Sideloading Apps During Calls Read More »

UK’s new thinking on AI: Unless it’s causing serious bother, you can crack on

UK’s new thinking on AI: Unless it’s causing serious bother, you can crack on 2025-02-15 at 11:06 By Thomas Claburn Plus: Keep calm and plug Anthropic’s Claude into public services Comment  The UK government on Friday said its AI Safety Institute will henceforth be known as its AI Security Institute, a rebranding that attests to

UK’s new thinking on AI: Unless it’s causing serious bother, you can crack on Read More »

If you dread a Microsoft Teams invite, just wait until it turns out to be a Russian phish

If you dread a Microsoft Teams invite, just wait until it turns out to be a Russian phish 2025-02-15 at 02:19 By Jessica Lyons Roses aren’t cheap, violets are dear, now all your access token are belong to Vladimir Digital thieves – quite possibly Kremlin-linked baddies – have been emailing out bogus Microsoft Teams meeting

If you dread a Microsoft Teams invite, just wait until it turns out to be a Russian phish Read More »

SonicWall firewalls now under attack: Patch ASAP or risk intrusion via your SSL VPN

SonicWall firewalls now under attack: Patch ASAP or risk intrusion via your SSL VPN 2025-02-15 at 01:04 By Jessica Lyons Roses are red, violets are blue, CVE-2024-53704 is perfect for a ransomware crew Miscreants are actively abusing a high-severity authentication bypass bug in unpatched internet-facing SonicWall firewalls following the public release of proof-of-concept exploit code.…

SonicWall firewalls now under attack: Patch ASAP or risk intrusion via your SSL VPN Read More »

Scroll to Top