Category: HelpnetSecurity

AI abuse and misinformation campaigns threaten financial institutions
29
Mar
2024

AI abuse and misinformation campaigns threaten financial institutions

Though generative AI offers financial firms remarkable business and cybersecurity utility, cyberthreats relating to GenAI in financial services are a…

Finding software flaws early in the development process provides ROI
29
Mar
2024

Finding software flaws early in the development process provides ROI

Enterprises spend enormous effort fixing software vulnerabilities that make their way into their publicly-facing applications. The Consortium for Information and…

New infosec products of the week: March 29, 2024
29
Mar
2024

New infosec products of the week: March 29, 2024

Here’s a look at the most interesting products from the past week, featuring releases from Bedrock Security, CyberArk, GitGuardian, Legit…

Zero-day exploitation surged in 2023, Google finds
28
Mar
2024

Zero-day exploitation surged in 2023, Google finds

2023 saw attackers increasingly focusing on the discovery and exploitation of zero-day vulnerabilities in third-party libraries (libvpx, ImagelO) and drivers…

NHS Scotland confirms ransomware attackers leaked patients' data
28
Mar
2024

NHS Scotland confirms ransomware attackers leaked patients’ data

NHS Dumfries and Galloway (part of NHS Scotland) has confirmed that a “recognised ransomware group” was able to “access a…

Debunking compliance myths in the digital era
28
Mar
2024

Debunking compliance myths in the digital era

Despite recent economic fluctuations, the software-as-a-service (SaaS) market isn’t letting up. The industry is set to grow annually by over…

Enterprises increasingly block AI transactions over security concerns
28
Mar
2024

Enterprises increasingly block AI transactions over security concerns

Enterprises must secure a transformation driven by generative AI (GenAI) bidirectionally: by securely adopting GenAI tools in the enterprise with…

AI weaponization becomes a hot topic on underground forums
28
Mar
2024

AI weaponization becomes a hot topic on underground forums

The majority of cyberattacks against organizations are perpetrated via social engineering of employees, and criminals are using new methods including…

Cybercriminals use cheap and simple infostealers to exfiltrate data
28
Mar
2024

Cybercriminals use cheap and simple infostealers to exfiltrate data

The rise in identity-based attacks can be attributed to a rapid increase in malware, according to SpyCloud. Researchers found that…

Attackers leverage weaponized iMessages, new phishing-as-a-service platform
27
Mar
2024

Attackers leverage weaponized iMessages, new phishing-as-a-service platform

Scammers are leveraging the Darcula phishing-as-a-service platform, iMessages and Google Messages to great effect. The platform allows them to impersonate…

Malwarebytes adds AI functionality to ThreatDown Security Advisor
27
Mar
2024

Malwarebytes adds AI functionality to ThreatDown Security Advisor

Malwarebytes has added AI functionality to its Security Advisor, available in every ThreatDown Bundle. Leveraging generative AI technology, the new…

AI framework vulnerability is being used to compromise enterprise servers (CVE-2023-48022)
27
Mar
2024

AI framework vulnerability is being used to compromise enterprise servers (CVE-2023-48022)

Attackers are leveraging a vulnerability (CVE-2023-48022) in Anyscale’s Ray AI software to compromise enterprise servers and saddle them with cryptominers…