SecurityTicks

Use of multi-factor authentication nearly doubles since 2020

Use of multi-factor authentication nearly doubles since 2020 12/06/2023 at 16:22 By A new report reveals the use of MFA has nearly doubled since 2020 and that phishing-resistant authenticators represent the best choice in terms of security for users. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source React […]

React to this headline:

Loading spinner

Use of multi-factor authentication nearly doubles since 2020 Read More »

US Charges Russians With Hacking Cryptocurrency Exchange

US Charges Russians With Hacking Cryptocurrency Exchange 12/06/2023 at 16:22 By Ionut Arghire Two Russian nationals are charged in the US with hacking a cryptocurrency exchange and conspiring to launder the proceeds. The post US Charges Russians With Hacking Cryptocurrency Exchange appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

React to this headline:

Loading spinner

US Charges Russians With Hacking Cryptocurrency Exchange Read More »

US Government Provides Guidance on Software Security Guarantee Requirements

US Government Provides Guidance on Software Security Guarantee Requirements 12/06/2023 at 16:22 By Ionut Arghire OMB has published new guidance on federal agencies obtaining security guarantees from software vendors. The post US Government Provides Guidance on Software Security Guarantee Requirements appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View Original

React to this headline:

Loading spinner

US Government Provides Guidance on Software Security Guarantee Requirements Read More »

Software Supply Chain: The Golden Container Ship

Software Supply Chain: The Golden Container Ship 12/06/2023 at 15:18 By Matt Honea By having a golden image you will put a process in place that allows you to quickly take action when a vulnerability is found within your organization. The post Software Supply Chain: The Golden Container Ship appeared first on SecurityWeek. This article

React to this headline:

Loading spinner

Software Supply Chain: The Golden Container Ship Read More »

Intellihartx Informs 490k Patients of GoAnywhere-Related Data Breach

Intellihartx Informs 490k Patients of GoAnywhere-Related Data Breach 12/06/2023 at 15:18 By Ionut Arghire Intellihartx says the personal information of roughly 490,000 individuals was compromised in the GoAnywhere zero-day attack earlier this year. The post Intellihartx Informs 490k Patients of GoAnywhere-Related Data Breach appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS

React to this headline:

Loading spinner

Intellihartx Informs 490k Patients of GoAnywhere-Related Data Breach Read More »

Swiss Fear Government Data Stolen in Cyberattack

Swiss Fear Government Data Stolen in Cyberattack 12/06/2023 at 13:34 By AFP Switzerland said government operational data might have been stolen in a ransomware attack on a technology firm that provides software for several departments. The post Swiss Fear Government Data Stolen in Cyberattack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek

React to this headline:

Loading spinner

Swiss Fear Government Data Stolen in Cyberattack Read More »

New MOVEit Vulnerabilities Found as More Zero-Day Attack Victims Come Forward

New MOVEit Vulnerabilities Found as More Zero-Day Attack Victims Come Forward 12/06/2023 at 13:34 By Eduard Kovacs Researchers discover new MOVEit vulnerabilities related to the zero-day, just as more organizations hit by the attack are coming forward. The post New MOVEit Vulnerabilities Found as More Zero-Day Attack Victims Come Forward appeared first on SecurityWeek. This

React to this headline:

Loading spinner

New MOVEit Vulnerabilities Found as More Zero-Day Attack Victims Come Forward Read More »

Cybercriminals Using Powerful BatCloak Engine to Make Malware Fully Undetectable

Cybercriminals Using Powerful BatCloak Engine to Make Malware Fully Undetectable 12/06/2023 at 13:19 By A fully undetectable (FUD) malware obfuscation engine named BatCloak is being used to deploy various malware strains since September 2022, while persistently evading antivirus detection. The samples grant “threat actors the ability to load numerous malware families and exploits with ease through highly

React to this headline:

Loading spinner

Cybercriminals Using Powerful BatCloak Engine to Make Malware Fully Undetectable Read More »

Why Now? The Rise of Attack Surface Management

Why Now? The Rise of Attack Surface Management 12/06/2023 at 13:19 By The term “attack surface management” (ASM) went from unknown to ubiquitous in the cybersecurity space over the past few years. Gartner and Forrester have both highlighted the importance of ASM recently, multiple solution providers have emerged in the space, and investment and acquisition activity have seen

React to this headline:

Loading spinner

Why Now? The Rise of Attack Surface Management Read More »

Fortinet Patches Critical FortiGate SSL VPN Vulnerability

Fortinet Patches Critical FortiGate SSL VPN Vulnerability 12/06/2023 at 12:40 By Eduard Kovacs Fortinet has patched CVE-2023-27997, a critical FortiGate SSL VPN vulnerability that can be exploited for unauthenticated remote code execution. The post Fortinet Patches Critical FortiGate SSL VPN Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek RSS Feed View

React to this headline:

Loading spinner

Fortinet Patches Critical FortiGate SSL VPN Vulnerability Read More »

Password Reset Hack Exposed in Honda’s E-Commerce Platform, Dealers Data at Risk

Password Reset Hack Exposed in Honda’s E-Commerce Platform, Dealers Data at Risk 12/06/2023 at 11:46 By Security vulnerabilities discovered in Honda’s e-commerce platform could have been exploited to gain unrestricted access to sensitive dealer information. “Broken/missing access controls made it possible to access all data on the platform, even when logged in as a test

React to this headline:

Loading spinner

Password Reset Hack Exposed in Honda’s E-Commerce Platform, Dealers Data at Risk Read More »

Beware: 1,000+ Fake Cryptocurrency Sites Trap Users in Bogus Rewards Scheme

Beware: 1,000+ Fake Cryptocurrency Sites Trap Users in Bogus Rewards Scheme 12/06/2023 at 11:31 By A previously undetected cryptocurrency scam has leveraged a constellation of over 1,000 fraudulent websites to ensnare users into a bogus rewards scheme since at least January 2021. “This massive campaign has likely resulted in thousands of people being scammed worldwide,”

React to this headline:

Loading spinner

Beware: 1,000+ Fake Cryptocurrency Sites Trap Users in Bogus Rewards Scheme Read More »

Critical RCE Flaw Discovered in Fortinet FortiGate Firewalls – Patch Now!

Critical RCE Flaw Discovered in Fortinet FortiGate Firewalls – Patch Now! 12/06/2023 at 10:25 By Fortinet has released patches to address a critical security flaw in its FortiGate firewalls that could be abused by a threat actor to achieve remote code execution. The vulnerability, tracked as CVE-2023-27997, is “reachable pre-authentication, on every SSL VPN appliance,” Lexfo

React to this headline:

Loading spinner

Critical RCE Flaw Discovered in Fortinet FortiGate Firewalls – Patch Now! Read More »

Apple’s Safari Private Browsing Now Automatically Removes Tracking Parameters in URLs

Apple’s Safari Private Browsing Now Automatically Removes Tracking Parameters in URLs 12/06/2023 at 07:56 By Apple is introducing major updates to Safari Private Browsing, offering users better protections against third-party trackers as they browse the web. “Advanced tracking and fingerprinting protections go even further to help prevent websites from using the latest techniques to track or

React to this headline:

Loading spinner

Apple’s Safari Private Browsing Now Automatically Removes Tracking Parameters in URLs Read More »

Building a culture of security awareness in healthcare begins with leadership

Building a culture of security awareness in healthcare begins with leadership 12/06/2023 at 07:35 By Mirko Zorz With the rise of modern trends such as cloud computing and remote work, healthcare institutions strive to balance accessibility, convenience, and robust security. In this Help Net Security interview, Ken Briggs, General Counsel at Salucro, discusses how fostering

React to this headline:

Loading spinner

Building a culture of security awareness in healthcare begins with leadership Read More »

Examining the long-term effects of data privacy violations

Examining the long-term effects of data privacy violations 12/06/2023 at 07:02 By Help Net Security Regulatory bodies are taking potential data privacy violations much more seriously this year after a relatively quiet period that followed the enactment of regulations such as the General Data Protection Regulation (GDPR) and the California Consumer Privacy Act (CCPA). We

React to this headline:

Loading spinner

Examining the long-term effects of data privacy violations Read More »

Executive leadership programs for security professionals

Executive leadership programs for security professionals 12/06/2023 at 07:02 By Executive education courses can help security leaders better align their functions with the business, explore leadership tactics and enhance crisis management. This article is an excerpt from Subscribe to Security Magazine’s RSS Feed View Original Source React to this headline:

React to this headline:

Loading spinner

Executive leadership programs for security professionals Read More »

Cyber extortion hits all-time high

Cyber extortion hits all-time high 12/06/2023 at 06:32 By Help Net Security Cyber extortion attacks have become increasingly prevalent in recent years, posing a significant threat to organizations of all sizes and industries, according to Orange Cyberdefense. Examining data from a total of 6,707 confirmed business victims, the findings show a fluctuation in the number

React to this headline:

Loading spinner

Cyber extortion hits all-time high Read More »

Lack of adequate investments hinders identity security efforts

Lack of adequate investments hinders identity security efforts 12/06/2023 at 06:03 By Help Net Security Organizations are still grappling with identity-related incidents, with an alarming 90% reporting one in the last 12 months, a 6% increase from last year, according to The Identity Defined Security Alliance (IDSA). Protecting digital identities As identities continue to significantly

React to this headline:

Loading spinner

Lack of adequate investments hinders identity security efforts Read More »

Scroll to Top