Category: cyberscoop

Derek B. Johnson
10
Sep
2025

Three states team up in investigative sweep of companies flouting data opt-out laws

A joint investigative sweep across three states kicked off this week aimed at identifying companies that aren’t following opt-out laws…

Apple’s new Memory Integrity Enforcement system deals a huge blow to spyware developers
10
Sep
2025

Apple’s new Memory Integrity Enforcement system deals a huge blow to spyware developers

Apple has unveiled a comprehensive security system called Memory Integrity Enforcement (MIE) that represents a five-year engineering effort to combat…

DARPA’s AI Cyber Challenge reveals winning models for automated vulnerability discovery and patching
10
Sep
2025

The npm incident frightened everyone, but ended up being nothing to fret about

Security professionals and observers across the industry got swept into a pit of fear Monday when an attacker took over…

Michael Duffy is pictured speaking onstage in a room at the Washington Convention Center. The stage is illuminated in a deep blue light and he is visible via a livestream on two large screens that flank the stage.
10
Sep
2025

Acting federal cyber chief outlines his three priorities for the next year

The U.S. government’s acting chief information security officer outlined his three priorities for federal cyber officials over the next year…

Critical infrastructure security tech needs to be as good as our smartphones, top NSC cyber official says
10
Sep
2025

Critical infrastructure security tech needs to be as good as our smartphones, top NSC cyber official says

The top cyber official at the National Security Council said Tuesday that he’s dismayed by the lag in security technology…

Matt Kapko
10
Sep
2025

Microsoft Patch Tuesday addresses 81 vulnerabilities, none actively exploited

Microsoft addressed 81 vulnerabilities affecting its enterprise products and underlying Windows systems, but none have been actively exploited, the company…

U.S. indicts Ukrainian national for hundreds of ransomware attacks using multiple variants
09
Sep
2025

U.S. indicts Ukrainian national for hundreds of ransomware attacks using multiple variants

The Department of Justice unsealed an indictment against a Ukrainian national alleged to be central to a ransomware campaign affecting…

Former Meta security chief sues company for privacy violations, professional retaliation
09
Sep
2025

Former Meta security chief sues company for privacy violations, professional retaliation

Meta is being sued by its former head of security, who claims the company ignored repeated warnings that its messaging…

National cyber director: U.S. strategy needs to shift cyber risk from Americans to its adversaries
09
Sep
2025

National cyber director: U.S. strategy needs to shift cyber risk from Americans to its adversaries

The United States needs a “new, coordinated strategy” to counter its cyber adversaries and “shift the burden of risk in…

Mitsubishi Electric to acquire Nozomi Networks in $1 billion deal
09
Sep
2025

Mitsubishi Electric to acquire Nozomi Networks in $1 billion deal

Industrial conglomerate Mitsubishi Electric has agreed to acquire OT and IoT cybersecurity specialist Nozomi Networks in a transaction that values…

Treasury Department targets Southeast Asia scam hubs with sanctions
09
Sep
2025

Treasury Department targets Southeast Asia scam hubs with sanctions

Federal authorities on Monday imposed sanctions on 19 people and organizations allegedly involved in major cyberscam hubs in Burma and…

Salesloft Drift compromised en masse, impacting all third-party integrations
09
Sep
2025

Salesloft Drift security incident started with undetected GitHub access

Salesloft pinned the root cause of the Drift supply-chain attacks to a threat group gaining access to its GitHub account…