SecurityWeek

US-China Competition to Field Military Drone Swarms Could Fuel Global Arms Race

Security Week - Fri, 04/12/2024 - 9:40am

Military planners envision a scenario in which hundreds, even thousands of AI-powered machines engage in coordinated battle.

The post US-China Competition to Field Military Drone Swarms Could Fuel Global Arms Race appeared first on SecurityWeek.

Categories: SecurityWeek

Exploitation of Unpatched D-Link NAS Device Vulnerabilities Soars

Security Week - Fri, 04/12/2024 - 7:24am

Second identifier, CVE-2024-3272, assigned to unpatched D-Link NAS device vulnerabilities, just as exploitation attempts soar. 

The post Exploitation of Unpatched D-Link NAS Device Vulnerabilities Soars appeared first on SecurityWeek.

Categories: SecurityWeek

House Will Try Again on Reauthorization of US Spy Program After Republican Upheaval

Security Week - Fri, 04/12/2024 - 7:00am

Speaker Mike Johnson is expected to bring forward a Plan B that would reform and extend Section 702 of the Foreign Intelligence Surveillance Act for a shortened period of two years.

The post House Will Try Again on Reauthorization of US Spy Program After Republican Upheaval appeared first on SecurityWeek.

Categories: SecurityWeek

Palo Alto Networks Warns of Exploited Firewall Vulnerability

Security Week - Fri, 04/12/2024 - 6:52am

Palo Alto Networks warns of limited exploitation of a critical command injection vulnerability leading to code execution on firewalls.

The post Palo Alto Networks Warns of Exploited Firewall Vulnerability appeared first on SecurityWeek.

Categories: SecurityWeek

Threat Actors Manipulate GitHub Search to Deliver Malware

Security Week - Fri, 04/12/2024 - 5:55am

Checkmarx warns of a new attack relying on GitHub search manipulation to deliver malicious code.

The post Threat Actors Manipulate GitHub Search to Deliver Malware appeared first on SecurityWeek.

Categories: SecurityWeek

‘BatBadBut’ Command Injection Vulnerability Affects Multiple Programming Languages

Security Week - Fri, 04/12/2024 - 5:42am

A critical vulnerability in multiple programming languages allows attackers to inject commands in Windows applications.

The post ‘BatBadBut’ Command Injection Vulnerability Affects Multiple Programming Languages appeared first on SecurityWeek.

Categories: SecurityWeek

LastPass Employee Targeted With Deepfake Calls

Security Week - Fri, 04/12/2024 - 4:50am

LastPass this week revealed that one of its employees was targeted in a phishing attack involving deepfake technology.

The post LastPass Employee Targeted With Deepfake Calls appeared first on SecurityWeek.

Categories: SecurityWeek

US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft

Security Week - Thu, 04/11/2024 - 3:41pm

The US government says Midnight Blizzard’s compromise of Microsoft corporate email accounts "presents a grave and unacceptable risk to federal agencies."

The post US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft appeared first on SecurityWeek.

Categories: SecurityWeek

Zscaler to Acquire Network Segmentation Tech Startup Airgap Networks

Security Week - Thu, 04/11/2024 - 12:38pm

Zscaler announces plans to acquire Airgap Networks, a venture-backed startup selling network segmentation and secure access technologies.

The post Zscaler to Acquire Network Segmentation Tech Startup Airgap Networks appeared first on SecurityWeek.

Categories: SecurityWeek

Data Access Platform PVML Launches With $8 Million in Funding

Security Week - Thu, 04/11/2024 - 11:51am

Tel Aviv startup banks seed funding for technology to help organizations connect, secure, and provide access to multiple data sources.

The post Data Access Platform PVML Launches With $8 Million in Funding appeared first on SecurityWeek.

Categories: SecurityWeek

Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets

Security Week - Thu, 04/11/2024 - 11:17am

The US government issues a red-alert for what appears to be a massive supply chain breach at Sisense, a company that sells big-data analytics tools.

The post Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets appeared first on SecurityWeek.

Categories: SecurityWeek

Simbian Emerges From Stealth With $10 Million to Build Autonomous AI-Based Security Platform

Security Week - Thu, 04/11/2024 - 10:29am

Simbian aims to build a fully autonomous security platform that lets humans make the strategic decisions while AI implements those decisions.

The post Simbian Emerges From Stealth With $10 Million to Build Autonomous AI-Based Security Platform appeared first on SecurityWeek.

Categories: SecurityWeek

Inside AWS’s Crusade Against IP Spoofing and DDoS Attacks

Security Week - Thu, 04/11/2024 - 9:53am

SecurityWeek speaks to Tom Scholl, VP and distinguished engineer at AWS, on how the organization tackles IP Spoofing and DDoS attacks.

The post Inside AWS’s Crusade Against IP Spoofing and DDoS Attacks appeared first on SecurityWeek.

Categories: SecurityWeek

Knostic Emerges From Stealth With Enterprise Gen-AI Access Controls

Security Week - Thu, 04/11/2024 - 9:47am

Startup Knostic emerges from stealth mode with $3.3 million in funding and a gen-AI access control product for enterprises.

The post Knostic Emerges From Stealth With Enterprise Gen-AI Access Controls appeared first on SecurityWeek.

Categories: SecurityWeek

Why Intelligence Sharing Is Vital to Building a Robust Collective Cyber Defense Program

Security Week - Thu, 04/11/2024 - 9:19am

With automated, detailed, contextualized threat intelligence, organizations can better anticipate malicious activity and utilize intelligence to speed detection around proven attacks.

The post Why Intelligence Sharing Is Vital to Building a Robust Collective Cyber Defense Program appeared first on SecurityWeek.

Categories: SecurityWeek

US Cyber Force Assisted Foreign Governments 22 Times in 2023

Security Week - Thu, 04/11/2024 - 8:47am

USCYBERCOM’s Cyber National Mission Force participated in 22 foreign hunt forward operations in 2023.

The post US Cyber Force Assisted Foreign Governments 22 Times in 2023 appeared first on SecurityWeek.

Categories: SecurityWeek

IMF: Financial Firms Lost $12 Billion to Cyberattacks in Two Decades

Security Week - Thu, 04/11/2024 - 8:05am

The financial sector has suffered over 20,000 cyberattacks in two decades, causing more than $12 billion in losses.

The post IMF: Financial Firms Lost $12 Billion to Cyberattacks in Two Decades appeared first on SecurityWeek.

Categories: SecurityWeek

Conservative Revolt in the House Blocks Effort to Reauthorize a Key US Spy Tool

Security Week - Thu, 04/11/2024 - 7:58am

A bill that would reauthorize Section 702 of the Foreign Intelligence Surveillance Act was blocked by a conservative revolt.

The post Conservative Revolt in the House Blocks Effort to Reauthorize a Key US Spy Tool appeared first on SecurityWeek.

Categories: SecurityWeek

Google Pays Out $41,000 for Three Serious Chrome Vulnerabilities

Security Week - Thu, 04/11/2024 - 7:42am

Google releases a Chrome 123 update to resolve three high-severity memory safety vulnerabilities.

The post Google Pays Out $41,000 for Three Serious Chrome Vulnerabilities appeared first on SecurityWeek.

Categories: SecurityWeek

Palo Alto Networks Patches Vulnerabilities Allowing Firewall Disruption

Security Week - Thu, 04/11/2024 - 6:00am

Palo Alto Networks patches several high-severity vulnerabilities, including ones that allow DoS attacks against its firewalls.

The post Palo Alto Networks Patches Vulnerabilities Allowing Firewall Disruption appeared first on SecurityWeek.

Categories: SecurityWeek

Pages