SecurityTicks

Microsoft Expands Sentinel Into Agentic Security Platform With Unified Data Lake

Microsoft Expands Sentinel Into Agentic Security Platform With Unified Data Lake 2025-09-30 at 17:23 By Microsoft on Tuesday unveiled the expansion of its Sentinel Security Incidents and Event Management solution (SIEM) as a unified agentic platform with the general availability of the Sentinel data lake. In addition, the tech giant said it’s also releasing a […]

Microsoft Expands Sentinel Into Agentic Security Platform With Unified Data Lake Read More »

Researchers Disclose Google Gemini AI Flaws Allowing Prompt Injection and Cloud Exploits

Researchers Disclose Google Gemini AI Flaws Allowing Prompt Injection and Cloud Exploits 2025-09-30 at 17:23 By Cybersecurity researchers have disclosed three now-patched security vulnerabilities impacting Google’s Gemini artificial intelligence (AI) assistant that, if successfully exploited, could have exposed users to major privacy risks and data theft. “They made Gemini vulnerable to search-injection attacks on its […]

Researchers Disclose Google Gemini AI Flaws Allowing Prompt Injection and Cloud Exploits Read More »

Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024

Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024 2025-09-30 at 17:23 By A newly patched security flaw impacting Broadcom VMware Tools and VMware Aria Operations has been exploited in the wild as a zero-day since mid-October 2024 by a threat actor called UNC5174, according to NVISO Labs. The vulnerability in question is CVE-2025-41244 […]

Urgent: China-Linked Hackers Exploit New VMware Zero-Day Since October 2024 Read More »

Stop Alert Chaos: Context Is the Key to Effective Incident Response

Stop Alert Chaos: Context Is the Key to Effective Incident Response 2025-09-30 at 17:23 By The Problem: Legacy SOCs and Endless Alert Noise Every SOC leader knows the feeling: hundreds of alerts pouring in, dashboards lighting up like a slot machine, analysts scrambling to keep pace. The harder they try to scale people or buy […]

Stop Alert Chaos: Context Is the Key to Effective Incident Response Read More »

Zed’s dead, baby. Zed’s dead? No, wait – it’s on Windows

Zed’s dead, baby. Zed’s dead? No, wait – it’s on Windows 2025-09-30 at 16:25 By Tim Anderson Rust-coded editor beta arrives with general availability promised in October Zed Industries has released a public beta of its code editor for Windows, marking a significant milestone for the Rust-based VS Code alternative that has until now been […]

Zed’s dead, baby. Zed’s dead? No, wait – it’s on Windows Read More »

SpiderLabs Ransomware Tracker Update September 2025: Qilin, Akira Top Ransomware Attackers

SpiderLabs Ransomware Tracker Update September 2025: Qilin, Akira Top Ransomware Attackers 2025-09-30 at 16:00 By The threat groups Qilin and Akira together conducted about one-quarter of the 402 ransomware attacks tracked by Trustwave SpiderLabs in September, with the manufacturing and technology sectors receiving the brunt of these efforts. This article is an excerpt from Trustwave […]

SpiderLabs Ransomware Tracker Update September 2025: Qilin, Akira Top Ransomware Attackers Read More »

From Folding to Folded: Hacking High Volume Mailer Machines

From Folding to Folded: Hacking High Volume Mailer Machines 2025-09-30 at 16:00 By John Jackson The Quadient DS-700iQ is a high-volume folder-inserter machine designed for automating the process of assembling, folding, and inserting mail into envelopes for large mailing operations. It features a modular design that can handle complex mailing jobs, supports multiple feeders and […]

From Folding to Folded: Hacking High Volume Mailer Machines Read More »

Acronis brings patch management to consumer backup software

Acronis brings patch management to consumer backup software 2025-09-30 at 15:56 By Industry News Acronis announced the general availability of Acronis True Image 2026, the new release of its natively integrated backup and security software for consumers and small businesses. The latest version introduces built-in patch management for Windows and a strengthened security engine with […]

Acronis brings patch management to consumer backup software Read More »

Mondoo Raises $17.5 Million for Vulnerability Management Platform

Mondoo Raises $17.5 Million for Vulnerability Management Platform 2025-09-30 at 15:37 By Eduard Kovacs Mondoo has raised more than $32 million in total, with the latest funding round led by HV Capital.  The post Mondoo Raises $17.5 Million for Vulnerability Management Platform appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original […]

Mondoo Raises $17.5 Million for Vulnerability Management Platform Read More »

CISO Conversations: John ‘Four’ Flynn, VP of Security at Google DeepMind

CISO Conversations: John ‘Four’ Flynn, VP of Security at Google DeepMind 2025-09-30 at 15:15 By Kevin Townsend Flynn has been DeepMind’s VP of security since May 2024. Before then he had been a CISO with Amazon, CISO at Uber, and director of information security at Facebook. The post CISO Conversations: John ‘Four’ Flynn, VP of […]

CISO Conversations: John ‘Four’ Flynn, VP of Security at Google DeepMind Read More »

NASA’s deep-space laser comms demo has left the chat

NASA’s deep-space laser comms demo has left the chat 2025-09-30 at 15:12 By Richard Speed DSOC hit record speeds beaming data from Psyche before going dark NASA’s Deep Space Optical Communications (DSOC) demonstration has completed its final pass, although there is a chance the system might be reactivated in the second half of 2026.… This […]

NASA’s deep-space laser comms demo has left the chat Read More »

New Guidance Calls on OT Operators to Create Continually Updated System Inventory

New Guidance Calls on OT Operators to Create Continually Updated System Inventory 2025-09-30 at 15:06 By Eduard Kovacs Agencies in several countries have created guidance titled ‘Creating and Maintaining a Definitive View of Your OT Architecture’. The post New Guidance Calls on OT Operators to Create Continually Updated System Inventory appeared first on SecurityWeek. This […]

New Guidance Calls on OT Operators to Create Continually Updated System Inventory Read More »

Webinar: The BAS Summit 2025: Redefining Attack Simulation through AI

Webinar: The BAS Summit 2025: Redefining Attack Simulation through AI 2025-09-30 at 15:00 By Help Net Security Join Picus Security, SANS, Hacker Valley, and leading CISOs at The BAS Summit 2025 to learn how AI is redefining Breach and Attack Simulation (BAS) and why it’s becoming the new benchmark for cyber resilience. Attend the webinar […]

Webinar: The BAS Summit 2025: Redefining Attack Simulation through AI Read More »

New Android Trojan “Datzbro” Tricking Elderly with AI-Generated Facebook Travel Events

New Android Trojan “Datzbro” Tricking Elderly with AI-Generated Facebook Travel Events 2025-09-30 at 14:54 By Cybersecurity researchers have flagged a previously undocumented Android banking trojan called Datzbro that can conduct device takeover (DTO) attacks and perform fraudulent transactions by preying on the elderly. Dutch mobile security company ThreatFabric said it discovered the campaign in August […]

New Android Trojan “Datzbro” Tricking Elderly with AI-Generated Facebook Travel Events Read More »

California Gov. Gavin Newsom Signs Bill Creating AI Safety Measures

California Gov. Gavin Newsom Signs Bill Creating AI Safety Measures 2025-09-30 at 14:53 By Mike Lennon The Transparency in Frontier Artificial Intelligence Act (TFAIA) requires AI companies to implement and disclose publicly safety protocols to prevent their most advanced models from being used to cause major harm. The post California Gov. Gavin Newsom Signs Bill […]

California Gov. Gavin Newsom Signs Bill Creating AI Safety Measures Read More »

High-Severity Vulnerabilities Patched in VMware Aria Operations, NSX, vCenter 

High-Severity Vulnerabilities Patched in VMware Aria Operations, NSX, vCenter  2025-09-30 at 14:33 By Ionut Arghire The flaws could allow attackers to escalate privileges, manipulate notifications, and enumerate usernames. The post High-Severity Vulnerabilities Patched in VMware Aria Operations, NSX, vCenter  appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

High-Severity Vulnerabilities Patched in VMware Aria Operations, NSX, vCenter  Read More »

Western Digital My Cloud NAS devices vulnerable to unauthenticated RCE (CVE-2025-30247)

Western Digital My Cloud NAS devices vulnerable to unauthenticated RCE (CVE-2025-30247) 2025-09-30 at 14:11 By Zeljka Zorz Western Digital has fixed a critical remote code execution vulnerability (CVE-2025-30247) in the firmware powering its My Cloud network-attached storage (NAS) devices, and has urged users to upgrade as soon as possible. About CVE-2025-30247 Western Digital’s My Cloud […]

Western Digital My Cloud NAS devices vulnerable to unauthenticated RCE (CVE-2025-30247) Read More »

Evolving Enterprise Defense to Secure the Modern AI Supply Chain

Evolving Enterprise Defense to Secure the Modern AI Supply Chain 2025-09-30 at 13:03 By The world of enterprise technology is undergoing a dramatic shift. Gen-AI adoption is accelerating at an unprecedented pace, and SaaS vendors are embedding powerful LLMs directly into their platforms. Organizations are embracing AI-powered applications across every function, from marketing and development […]

Evolving Enterprise Defense to Secure the Modern AI Supply Chain Read More »

U.K. Police Just Seized £5.5 Billion in Bitcoin — The World’s Largest Crypto Bust

U.K. Police Just Seized £5.5 Billion in Bitcoin — The World’s Largest Crypto Bust 2025-09-30 at 13:03 By A Chinese national has been convicted for her role in a fraudulent cryptocurrency scheme after law enforcement authorities in the U.K. confiscated £5.5 billion (about $7.39 billion) during a raid of her home in London. The cryptocurrency […]

U.K. Police Just Seized £5.5 Billion in Bitcoin — The World’s Largest Crypto Bust Read More »

Scroll to Top