Infosec stories - Page 6
2N urges tougher cyber rules for access control devices
This month
#
edutech
#
data protection
#
hyperscale
2N calls for tougher cyber rules on access control, urging stronger vulnerability reporting, tighter component sourcing and longer support lifecycles.
Dynatrace to buy Bindplane in telemetry pipeline push
This month
#
devops
#
hybrid cloud
#
digital transformation
Dynatrace agrees to buy Bindplane to expand telemetry pipelines, aiming to cut ingest costs and give customers greater control over observability data.
Microsoft 365 EvilToken campaign hits hundreds daily
This month
#
mfa
#
cloud security
#
phishing
Microsoft warns that 10 to 15 EvilToken phishing runs are launched daily, compromising hundreds of organisations through OAuth token abuse.
Qualys warns attackers exploit flaws before disclosure
This month
#
firewalls
#
vpns
#
network security
Qualys says attackers are exploiting flaws before disclosure as remediation backlogs swell, with edge devices facing the highest risk.
TrendAI: Evolving the cybersecurity value proposition
This month
#
hybrid cloud
#
digital transformation
#
cloud security
TrendAI urges stronger AI governance as it shifts cybersecurity from fear-based selling to platformised risk reduction for Australian firms.
Anthropic launches Project Glasswing for cyber defence
This month
#
firewalls
#
hyperscale
#
network security
Anthropic expands a guarded AI pilot with Amazon, Apple, Microsoft and others, offering Claude Mythos Preview to hunt flaws in critical code and open source.
Building digital trust: Data quality provides a scalable path
This month
#
data protection
#
fintech
#
cx
Data quality gives banks a scalable route to digital trust, cutting fraud and false positives while speeding onboarding, KYB and AI-driven checks.
China-aligned TA416 resumes spying on EU & Mideast
This month
#
phishing
#
email security
#
cybersecurity
China-linked TA416 returns to spying on European diplomats and later expands attacks to Middle Eastern government targets after Iran conflict.
Commvault adds structured data controls for AI risk
This month
#
data protection
#
dr
#
hybrid cloud
Commvault adds structured database controls to Commvault Cloud after Satori deal, aiming to curb AI-era exposure across live and backup data.
GigaOm names Check Point leader in app & API security
This month
#
firewalls
#
devops
#
hybrid cloud
GigaOm names Check Point a third-year application security leader as its WAF posts strong detection rates and low false positives.
Finance professionals raise AI compliance & GDPR fears
This month
#
storage
#
data protection
#
digital transformation
Cloud2Me survey finds finance staff using AI daily, but worries mount over GDPR, data storage and compliance after disciplinaries.
Attackers turn trusted tools into cyber weapon
This month
#
malware
#
ransomware
#
advanced persistent threat protection
Attackers abuse trusted tools, remote support software and stolen SSO sessions to breach systems, ReliaQuest says.
ChatGPT flaw let hackers steal data via DNS queries
This month
#
firewalls
#
data protection
#
devops
ChatGPT flaw may have let attackers siphon sensitive user data via DNS queries, prompting OpenAI to issue a fix after researchers exposed the bug.
Upwind hires ex-Facebook security chief Joe Sullivan
This month
#
data protection
#
cloud security
#
socs
Upwind taps former Facebook security chief Joe Sullivan to bolster cloud and AI strategy as it eyes enterprise buyers and rapid growth.
OT downtime costs firms up to GBP £5 million, survey finds
This month
#
malware
#
ransomware
#
iot security
Survey finds most OT outages in industry and critical infrastructure cost up to GBP £5 million, as firms fear nation-state attacks and long delays to detection.
Logiq acquires Savient to expand South-West presence
This month
#
digital transformation
#
iot security
#
risk & compliance
Logiq snaps up Savient to bolster cyber security services and secure delivery capacity across government and defence work in south-west England.
Zscaler flags Xloader malware's tougher obfuscation
This month
#
malware
#
firewalls
#
encryption
Zscaler says Xloader malware has added layered encryption, decoy servers and new obfuscation tricks to hinder analysts.
Secure.com guide says AI helps CISOs, but judgements matter
This month
#
data protection
#
digital transformation
#
advanced persistent threat protection
Secure.com urges Chief Information Security Officers to use AI for alert triage and threat detection, but keep human judgement in the loop.
QuSecure joins NIST project on post-quantum migration
This month
#
firewalls
#
data protection
#
encryption
QuSecure has joined a NIST-backed consortium to test tools and methods that help organisations find and replace quantum-vulnerable public-key systems.
UK businesses warned over email governance blind spots
This month
#
data protection
#
cloud security
#
phishing
Exclaimer warns UK businesses to tighten outbound email governance as 83% of IT leaders report an email-related security incident.