SecurityTicks

Fortinet admits FortiGate SSO bug still exploitable despite December patch

Fortinet admits FortiGate SSO bug still exploitable despite December patch 2026-01-23 at 15:31 By Carly Page Fix didn’t quite do the job – attackers spotted logging in Fortinet has confirmed that attackers are actively bypassing a December patch for a critical FortiCloud single sign-on (SSO) authentication flaw after customers reported suspicious logins on devices supposedly

Fortinet admits FortiGate SSO bug still exploitable despite December patch Read More »

Okta users under attack: Modern phishing kits are turbocharging vishing attacks

Okta users under attack: Modern phishing kits are turbocharging vishing attacks 2026-01-23 at 15:31 By Zeljka Zorz Threat actors who specialize in vishing (i.e., voice phishing) have started using phishing kits that can intercept targets’ login credentials while also allowing attackers to control the authentication flow in a targeted user’s browser in real-time. At least

Okta users under attack: Modern phishing kits are turbocharging vishing attacks Read More »

1Password targets AI-driven phishing with built-in prevention

1Password targets AI-driven phishing with built-in prevention 2026-01-23 at 15:31 By Anamarija Pogorelec To help reduce phishing risk, 1Password added an extra layer of protection and began rolling out a phishing prevention feature designed to stop users before they share passwords with scammers. How 1Password phishing prevention works When a user clicks a link whose

1Password targets AI-driven phishing with built-in prevention Read More »

Under Armour Looking Into Data Breach Affecting Customers’ Email Addresses

Under Armour Looking Into Data Breach Affecting Customers’ Email Addresses 2026-01-23 at 15:31 By Associated Press Under Armour is investigating a recent data breach that purloined customers’ email addresses and other personal information. The post Under Armour Looking Into Data Breach Affecting Customers’ Email Addresses appeared first on SecurityWeek. This article is an excerpt from

Under Armour Looking Into Data Breach Affecting Customers’ Email Addresses Read More »

Cyber Insights 2026: Regulations and the Tangled Mess of Compliance Requirements

Cyber Insights 2026: Regulations and the Tangled Mess of Compliance Requirements 2026-01-23 at 15:31 By Kevin Townsend Cyber regulations are where politics meets business – where business becomes subject to political realities. The post Cyber Insights 2026: Regulations and the Tangled Mess of Compliance Requirements appeared first on SecurityWeek. This article is an excerpt from

Cyber Insights 2026: Regulations and the Tangled Mess of Compliance Requirements Read More »

Phishers Abuse SharePoint in New Campaign Targeting Energy Sector

Phishers Abuse SharePoint in New Campaign Targeting Energy Sector 2026-01-23 at 15:31 By Ionut Arghire Threat actors are leveraging the file-sharing service for payload delivery in AitM phishing and BEC attacks. The post Phishers Abuse SharePoint in New Campaign Targeting Energy Sector appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Phishers Abuse SharePoint in New Campaign Targeting Energy Sector Read More »

Organizations Warned of Exploited Zimbra Collaboration Vulnerability

Organizations Warned of Exploited Zimbra Collaboration Vulnerability 2026-01-23 at 15:31 By Ionut Arghire CISA has added the Zimbra flaw to the KEV catalog along with three other bugs exploited in the wild. The post Organizations Warned of Exploited Zimbra Collaboration Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Organizations Warned of Exploited Zimbra Collaboration Vulnerability Read More »

TikTok Forms U.S. Joint Venture to Continue Operations Under 2025 Executive Order

TikTok Forms U.S. Joint Venture to Continue Operations Under 2025 Executive Order 2026-01-23 at 15:31 By TikTok on Friday officially announced that it formed a joint venture that will allow the hugely popular video-sharing application to continue operating in the U.S. The new venture, named TikTok USDS Joint Venture LLC, has been established in compliance

TikTok Forms U.S. Joint Venture to Continue Operations Under 2025 Executive Order Read More »

Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls

Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls 2026-01-23 at 15:31 By Fortinet has officially confirmed that it’s working to completely plug a FortiCloud SSO authentication bypass vulnerability following reports of fresh exploitation activity on fully-patched firewalls. “In the last 24 hours, we have identified a number of cases where the exploit

Fortinet Confirms Active FortiCloud SSO Bypass on Fully Patched FortiGate Firewalls Read More »

Phishing Attack Uses Stolen Credentials to Install LogMeIn RMM for Persistent Access

Phishing Attack Uses Stolen Credentials to Install LogMeIn RMM for Persistent Access 2026-01-23 at 15:31 By Cybersecurity researchers have disclosed details of a new dual-vector campaign that leverages stolen credentials to deploy legitimate Remote Monitoring and Management (RMM) software for persistent remote access to compromised hosts. “Instead of deploying custom viruses, attackers are bypassing security

Phishing Attack Uses Stolen Credentials to Install LogMeIn RMM for Persistent Access Read More »

Bitcoin enters ‘early bear phase’ as $84K becomes key BTC support

Bitcoin enters ‘early bear phase’ as $84K becomes key BTC support 2026-01-23 at 13:34 By Cointelegraph by Nancy Lubale Bitcoin’s profit cycle has turned negative for the first time since 2023, suggesting that BTC is transitioning into a bear market This article is an excerpt from Cointelegraph.com News View Original Source

Bitcoin enters ‘early bear phase’ as $84K becomes key BTC support Read More »

Farcaster to return $180M to investors following Neynar takeover

Farcaster to return $180M to investors following Neynar takeover 2026-01-23 at 13:34 By Cointelegraph by Ezra Reguerra Decentralized social network Farcaster remains operational after its acquisition by Neynar and confirmed plans to return $180 million in capital to investors. This article is an excerpt from Cointelegraph.com News View Original Source

Farcaster to return $180M to investors following Neynar takeover Read More »

Infotainment, EV Charger Exploits Earn Hackers $1M at Pwn2Own Automotive 2026

Infotainment, EV Charger Exploits Earn Hackers $1M at Pwn2Own Automotive 2026 2026-01-23 at 13:33 By Eduard Kovacs Pwn2Own participants disclosed a total of 76 vulnerabilities during the three-day event.  The post Infotainment, EV Charger Exploits Earn Hackers $1M at Pwn2Own Automotive 2026 appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Infotainment, EV Charger Exploits Earn Hackers $1M at Pwn2Own Automotive 2026 Read More »

London boroughs limping back online months after cyberattack

London boroughs limping back online months after cyberattack 2026-01-23 at 12:47 By Connor Jones Direct debits? Maybe February. Birth certificates? Dream on. Council tax bills? Oh, those are coming Hammersmith & Fulham Council says payments are now being processed as usual, two months after a cyberattack that affected multiple boroughs in the UK’s capital city.…

London boroughs limping back online months after cyberattack Read More »

Fresh SmarterMail Flaw Exploited for Admin Access

Fresh SmarterMail Flaw Exploited for Admin Access 2026-01-23 at 12:46 By Ionut Arghire The exploitation of the authentication bypass vulnerability started two days after patches were released. The post Fresh SmarterMail Flaw Exploited for Admin Access appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Fresh SmarterMail Flaw Exploited for Admin Access Read More »

Binance applies for MiCA license in Greece as EU deadlines loom

Binance applies for MiCA license in Greece as EU deadlines loom 2026-01-23 at 12:17 By Cointelegraph by Helen Partz Binance applied for a MiCA license in Greece shortly after France flagged the exchange as still unlicensed under MiCA ahead of June compliance deadlines. This article is an excerpt from Cointelegraph.com News View Original Source

Binance applies for MiCA license in Greece as EU deadlines loom Read More »

Kansas bill would create state-managed Bitcoin and digital assets reserve

Kansas bill would create state-managed Bitcoin and digital assets reserve 2026-01-23 at 12:17 By Cointelegraph by Christina Comben The proposal would fund the reserve using unclaimed crypto and staking rewards rather than direct state Bitcoin purchases. This article is an excerpt from Cointelegraph.com News View Original Source

Kansas bill would create state-managed Bitcoin and digital assets reserve Read More »

Marching orders delayed: Veterans’ Digital ID off to a slow start

Marching orders delayed: Veterans’ Digital ID off to a slow start 2026-01-23 at 12:17 By SA Mathieson Much owed to the few, but takeup is under 1% More than 15,000 former members of the UK’s armed forces have successfully applied for a digital version of their veterans ID card since its launch in October, according

Marching orders delayed: Veterans’ Digital ID off to a slow start Read More »

Scroll to Top