Featured

Canadian Electric Utility Hit by Cyberattack

Canadian Electric Utility Hit by Cyberattack 2025-05-01 at 17:15 By Eduard Kovacs Nova Scotia Power and Emera are responding to a cybersecurity incident that impacted IT systems and networks.  The post Canadian Electric Utility Hit by Cyberattack appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Canadian Electric Utility Hit by Cyberattack Read More »

JPMorgan Chase CISO Fires Warning Shot Ahead of RSA Conference

JPMorgan Chase CISO Fires Warning Shot Ahead of RSA Conference 2025-04-28 at 19:18 By Ryan Naraine This tension between hard-edged risk realism and breathless AI evangelism sets an unmistakable tone for a bellwether conference where 40,000-plus gather to do business.  The post JPMorgan Chase CISO Fires Warning Shot Ahead of RSA Conference appeared first on

JPMorgan Chase CISO Fires Warning Shot Ahead of RSA Conference Read More »

SAP Zero-Day Possibly Exploited by Initial Access Broker

SAP Zero-Day Possibly Exploited by Initial Access Broker 2025-04-25 at 12:38 By Ionut Arghire A zero-day vulnerability in SAP NetWeaver potentially affects more than 10,000 internet-facing applications. The post SAP Zero-Day Possibly Exploited by Initial Access Broker appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

SAP Zero-Day Possibly Exploited by Initial Access Broker Read More »

Cyberattack Hits British Retailer Marks & Spencer

Cyberattack Hits British Retailer Marks & Spencer 2025-04-23 at 13:35 By Ionut Arghire British retailer Marks & Spencer has been experiencing certain service disruptions after falling victim to a cyberattack. The post Cyberattack Hits British Retailer Marks & Spencer appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Cyberattack Hits British Retailer Marks & Spencer Read More »

Korean Telco Giant SK Telecom Hacked

Korean Telco Giant SK Telecom Hacked 2025-04-23 at 10:33 By Eduard Kovacs SK Telecom, South Korea’s largest telecom company, disclosed a data leak involving a malware infection. The post Korean Telco Giant SK Telecom Hacked appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Korean Telco Giant SK Telecom Hacked Read More »

The Shadow AI Surge: Study Finds 50% of Workers Use Unapproved AI Tools

The Shadow AI Surge: Study Finds 50% of Workers Use Unapproved AI Tools 2025-04-18 at 19:28 By Kevin Townsend With unapproved AI tools entrenched in daily workflows, experts say it’s time to shift from monitoring to managing Shadow AI use across the enterprise. The post The Shadow AI Surge: Study Finds 50% of Workers Use

The Shadow AI Surge: Study Finds 50% of Workers Use Unapproved AI Tools Read More »

Fresh Windows NTLM Vulnerability Exploited in Attacks

Fresh Windows NTLM Vulnerability Exploited in Attacks 2025-04-18 at 11:30 By Ionut Arghire A Windows NTLM vulnerability patched in March has been exploited in attacks targeting government and private institutions. The post Fresh Windows NTLM Vulnerability Exploited in Attacks appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Fresh Windows NTLM Vulnerability Exploited in Attacks Read More »

SonicWall Flags Old Vulnerability as Actively Exploited

SonicWall Flags Old Vulnerability as Actively Exploited 2025-04-17 at 14:05 By Eduard Kovacs A SonicWall SMA 100 series vulnerability patched in 2021, which went unnoticed at the time of patching, is being exploited in the wild. The post SonicWall Flags Old Vulnerability as Actively Exploited appeared first on SecurityWeek. This article is an excerpt from

SonicWall Flags Old Vulnerability as Actively Exploited Read More »

Apple Quashes Two Zero-Days With iOS, MacOS Patches

Apple Quashes Two Zero-Days With iOS, MacOS Patches 2025-04-16 at 23:38 By Ryan Naraine The vulnerabilities are described as code execution and mitigation bypass issues that affect Apple’s iOS, iPadOS and macOS platforms. The post Apple Quashes Two Zero-Days With iOS, MacOS Patches appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Apple Quashes Two Zero-Days With iOS, MacOS Patches Read More »

MITRE CVE Program Gets Last-Hour Funding Reprieve

MITRE CVE Program Gets Last-Hour Funding Reprieve 2025-04-16 at 19:36 By Ryan Naraine The US government’s cybersecurity agency CISA has “executed the option period on the contract” to keep the vulnerability catalog operational. The post MITRE CVE Program Gets Last-Hour Funding Reprieve appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

MITRE CVE Program Gets Last-Hour Funding Reprieve Read More »

MITRE Warns CVE Program Faces Disruption Amid US Funding Uncertainty

MITRE Warns CVE Program Faces Disruption Amid US Funding Uncertainty 2025-04-15 at 23:46 By Ryan Naraine MITRE warns of a deterioration of national vulnerability databases and advisories, slowed vendor reaction and limited response operations. The post MITRE Warns CVE Program Faces Disruption Amid US Funding Uncertainty appeared first on SecurityWeek. This article is an excerpt

MITRE Warns CVE Program Faces Disruption Amid US Funding Uncertainty Read More »

China Pursuing 3 Alleged US Operatives Over Cyberattacks During Asian Games

China Pursuing 3 Alleged US Operatives Over Cyberattacks During Asian Games 2025-04-15 at 14:01 By Associated Press China accuses three alleged U.S. NSA operatives of cyberattacks targeting critical infrastructure and the Asian Games in Harbin. The post China Pursuing 3 Alleged US Operatives Over Cyberattacks During Asian Games appeared first on SecurityWeek. This article is

China Pursuing 3 Alleged US Operatives Over Cyberattacks During Asian Games Read More »

CISO Conversations: Maarten Van Horenbeeck, SVP & Chief Security officer at Adobe

CISO Conversations: Maarten Van Horenbeeck, SVP & Chief Security officer at Adobe 2025-04-15 at 13:02 By Kevin Townsend Van Horenbeeck’s career spans some of the biggest companies in tech: Verizon, Microsoft, Google, Amazon, Zendesk, and now SVP and CSO at Adobe. The post CISO Conversations: Maarten Van Horenbeeck, SVP & Chief Security officer at Adobe

CISO Conversations: Maarten Van Horenbeeck, SVP & Chief Security officer at Adobe Read More »

AI Hallucinations Create a New Software Supply Chain Threat

AI Hallucinations Create a New Software Supply Chain Threat 2025-04-14 at 16:07 By Ionut Arghire Researchers uncover new software supply chain threat from LLM-generated package hallucinations. The post AI Hallucinations Create a New Software Supply Chain Threat appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

AI Hallucinations Create a New Software Supply Chain Threat Read More »

China Admitted to US That It Conducted Volt Typhoon Attacks: Report

China Admitted to US That It Conducted Volt Typhoon Attacks: Report 2025-04-11 at 13:14 By Eduard Kovacs In a secret meeting between Chinese and US officials, the former confirmed conducting cyberattacks on US infrastructure. The post China Admitted to US That It Conducted Volt Typhoon Attacks: Report appeared first on SecurityWeek. This article is an

China Admitted to US That It Conducted Volt Typhoon Attacks: Report Read More »

Treasury’s OCC Says Hackers Had Access to 150,000 Emails

Treasury’s OCC Says Hackers Had Access to 150,000 Emails 2025-04-09 at 14:48 By Eduard Kovacs The Office of the Comptroller of the Currency (OCC) has disclosed an email security incident in which 100 accounts were compromised for over a year.  The post Treasury’s OCC Says Hackers Had Access to 150,000 Emails appeared first on SecurityWeek.

Treasury’s OCC Says Hackers Had Access to 150,000 Emails Read More »

Microsoft Patches 125 Windows Vulns, Including Exploited CLFS Zero-Day

Microsoft Patches 125 Windows Vulns, Including Exploited CLFS Zero-Day 2025-04-08 at 22:03 By Ryan Naraine Patch Tuesday: Microsoft ships urgent cover for another WIndows CLFS vulnerability already exploited in the wild. The post Microsoft Patches 125 Windows Vulns, Including Exploited CLFS Zero-Day appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original

Microsoft Patches 125 Windows Vulns, Including Exploited CLFS Zero-Day Read More »

Android Update Patches Two Exploited Vulnerabilities

Android Update Patches Two Exploited Vulnerabilities 2025-04-08 at 13:26 By Ionut Arghire Android’s latest security update resolves two exploited Kernel vulnerabilities, as well as critical-severity bugs. The post Android Update Patches Two Exploited Vulnerabilities appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View Original Source

Android Update Patches Two Exploited Vulnerabilities Read More »

Call Records of Millions Exposed by Verizon App Vulnerability

Call Records of Millions Exposed by Verizon App Vulnerability 2025-04-04 at 19:00 By Eduard Kovacs A patch has been released for a serious information disclosure vulnerability affecting a Verizon call filtering application. The post Call Records of Millions Exposed by Verizon App Vulnerability appeared first on SecurityWeek. This article is an excerpt from SecurityWeek View

Call Records of Millions Exposed by Verizon App Vulnerability Read More »

Scroll to Top