SecurityWeek

Xerox Versalink Printer Vulnerabilities Enable Lateral Movement

Security Week - Mon, 02/17/2025 - 6:00am

Xerox released security updates to resolve pass-back attack vulnerabilities in Versalink multifunction printers.

The post Xerox Versalink Printer Vulnerabilities Enable Lateral Movement appeared first on SecurityWeek.

Categories: SecurityWeek

Industry Moves for the week of February 17, 2025 - SecurityWeek

Security Week - Mon, 02/17/2025 - 1:23am
Explore industry moves and significant changes in the industry for the week of February 17, 2025. Stay updated with the latest industry trends and shifts.
Categories: SecurityWeek

SailPoint IPO Signals Bright Spot for Cybersecurity

Security Week - Fri, 02/14/2025 - 3:15pm

In a signal move for the cybersecurity sector, identity and access management (IAM) vendor SailPoint has made its return to public markets.

The post SailPoint IPO Signals Bright Spot for Cybersecurity appeared first on SecurityWeek.

Categories: SecurityWeek

Virginia Attorney General’s Office Struck by Cyberattack Targeting Attorneys’ Computer Systems

Security Week - Fri, 02/14/2025 - 1:04pm

The chief deputy attorney general of the agency sent an email on Wednesday that said nearly all of is computer systems were offline.

The post Virginia Attorney General’s Office Struck by Cyberattack Targeting Attorneys’ Computer Systems appeared first on SecurityWeek.

Categories: SecurityWeek

Sean Cairncross is Trump Nominee for National Cyber Director

Security Week - Fri, 02/14/2025 - 9:56am

Former RNC official Sean Cairncross has been nominated for the post of National Cyber Director to streamline the US cybersecurity strategy.

The post Sean Cairncross is Trump Nominee for National Cyber Director appeared first on SecurityWeek.

Categories: SecurityWeek

Rising Tides: Lesley Carhart on Bridging Enterprise Security and OT—and Improving the Human Condition

Security Week - Fri, 02/14/2025 - 8:37am

In the latest edition of “Rising Tides” we talk with Lesley Carhart, Technical Director of Incident Response at Dragos.

The post Rising Tides: Lesley Carhart on Bridging Enterprise Security and OT—and Improving the Human Condition appeared first on SecurityWeek.

Categories: SecurityWeek

Meta Paid Out Over $2.3 Million in Bug Bounties in 2024

Security Week - Fri, 02/14/2025 - 8:25am

Meta received close to 10,000 vulnerability reports and paid out over $2.3 million in bug bounty rewards in 2024.

The post Meta Paid Out Over $2.3 Million in Bug Bounties in 2024 appeared first on SecurityWeek.

Categories: SecurityWeek

In Other News: $10,000 YouTube Flaw, Cybereason CEO Sues Investors, New OT Security Tool

Security Week - Fri, 02/14/2025 - 8:02am

Noteworthy stories that might have slipped under the radar: Google pays $10,000 bug bounty for YouTube vulnerability, Cybereason CEO sues two investors, Otorio launches new OT security tool.

The post In Other News: $10,000 YouTube Flaw, Cybereason CEO Sues Investors, New OT Security Tool appeared first on SecurityWeek.

Categories: SecurityWeek

SonicWall Firewall Vulnerability Exploited After PoC Publication

Security Week - Fri, 02/14/2025 - 7:25am

The exploitation of a recent SonicWall vulnerability has started shortly after proof-of-concept (PoC) code was published.

The post SonicWall Firewall Vulnerability Exploited After PoC Publication appeared first on SecurityWeek.

Categories: SecurityWeek

Salt Typhoon Targeting Old Cisco Vulnerabilities in Fresh Telecom Hacks

Security Week - Fri, 02/14/2025 - 7:00am

China-linked APT Salt Typhoon has been exploiting known vulnerabilities in Cisco devices in attacks on telecom providers in the US and abroad.

The post Salt Typhoon Targeting Old Cisco Vulnerabilities in Fresh Telecom Hacks appeared first on SecurityWeek.

Categories: SecurityWeek

New Windows Zero-Day Exploited by Chinese APT: Security Firm

Security Week - Fri, 02/14/2025 - 6:40am

ClearSky Cyber Security says it has seen a new Windows zero-day being exploited by a Chinese APT named Mustang Panda. 

The post New Windows Zero-Day Exploited by Chinese APT: Security Firm appeared first on SecurityWeek.

Categories: SecurityWeek

SGNL Raises $30 Million for Identity Management Solution

Security Week - Fri, 02/14/2025 - 6:20am

Identity management provider SGNL has raised $30 million in a Series A funding round led by Brightmind Partners.

The post SGNL Raises $30 Million for Identity Management Solution appeared first on SecurityWeek.

Categories: SecurityWeek

Hackers Exploit Palo Alto Firewall Vulnerability Day After Disclosure

Security Week - Fri, 02/14/2025 - 6:00am

Attempts to exploit CVE-2024-0108, an authentication bypass vulnerability in Palo Alto firewalls, started one day after disclosure. 

The post Hackers Exploit Palo Alto Firewall Vulnerability Day After Disclosure appeared first on SecurityWeek.

Categories: SecurityWeek

Rapid7 Flags New PostgreSQL Zero-Day Connected to BeyondTrust Exploitation

Security Week - Thu, 02/13/2025 - 3:03pm

Rapid7 finds a new zero-day vulnerability in PostgreSQL and links it to chain of attacks against a BeyondTrust Remote Support product.

The post Rapid7 Flags New PostgreSQL Zero-Day Connected to BeyondTrust Exploitation appeared first on SecurityWeek.

Categories: SecurityWeek

Google Hub in Poland to Develop AI Use in Energy and Cybersecurity Sectors

Security Week - Thu, 02/13/2025 - 2:49pm

Poland is being targeted by various forms of cyberattacks and sabotage actions believed to be sponsored by Russia.

The post Google Hub in Poland to Develop AI Use in Energy and Cybersecurity Sectors appeared first on SecurityWeek.

Categories: SecurityWeek

Circuit Board Maker Unimicron Targeted in Ransomware Attack

Security Week - Thu, 02/13/2025 - 12:01pm

The Sarcoma ransomware group is threatening to leak data stolen from Taiwanese printed circuit board manufacturer Unimicron.

The post Circuit Board Maker Unimicron Targeted in Ransomware Attack appeared first on SecurityWeek.

Categories: SecurityWeek

CyberArk Expands Identity Security Play with $165M Acquisition of Zilla Security

Security Week - Thu, 02/13/2025 - 10:33am

CyberArk acquires early stage Boston startup Zilla Security for $165M, expanding its identity security and IGA capabilities.

The post CyberArk Expands Identity Security Play with $165M Acquisition of Zilla Security appeared first on SecurityWeek.

Categories: SecurityWeek

DeepSeek Exposes Major Cybersecurity Blind Spot

Security Week - Thu, 02/13/2025 - 10:28am

Millions of uninformed users have flocked to DeepSeek and share personal information without considering security or privacy risks.

The post DeepSeek Exposes Major Cybersecurity Blind Spot appeared first on SecurityWeek.

Categories: SecurityWeek

Chinese Cyberspy Possibly Launching Ransomware Attacks as Side Job

Security Week - Thu, 02/13/2025 - 8:25am

A toolset associated with China-linked espionage intrusions was employed in a ransomware attack, likely by a single individual.

The post Chinese Cyberspy Possibly Launching Ransomware Attacks as Side Job appeared first on SecurityWeek.

Categories: SecurityWeek

SecurityWeek Analysis: Over 400 Cybersecurity M&A Deals Announced in 2024

Security Week - Thu, 02/13/2025 - 8:02am

An analysis conducted by SecurityWeek shows that 405 cybersecurity-related mergers and acquisitions were announced in 2024.

The post SecurityWeek Analysis: Over 400 Cybersecurity M&A Deals Announced in 2024 appeared first on SecurityWeek.

Categories: SecurityWeek

Pages