Category: SecurityWeek

Patch Tuesday: Critical Flaws in Adobe Commerce Software
13
Oct
2023

Microsoft Offers Up to $15,000 in New AI Bug Bounty Program

Microsoft on Thursday announced the launch of a new bug bounty program focused on artificial intelligence. The program, which initially…

Code Signing Software Supply Chain
13
Oct
2023

Dozens of Squid Proxy Vulnerabilities Remain Unpatched 2 Years After Disclosure

Dozens of vulnerabilities affecting the Squid caching and forwarding web proxy remain unpatched two years after a researcher responsibly disclosed…

Siemens Schneider Electric MOVEit ransomware
12
Oct
2023

SEC Investigating Progress Software Over MOVEit Hack

The US Securities and Exchange Commission is launching its own investigation into the vulnerability in Progress Software’s MOVEit transfer tool…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
12
Oct
2023

Backdoor Malware Found on WordPress Website Disguised as Legitimate Plugin

A threat actor has deployed a WordPress backdoor that can hide its presence by posing as a legitimate plugin, WordPress…

New iOS exploit blamed on US intelligence
12
Oct
2023

Apple Releases iOS 16 Update to Patch Exploited Vulnerability 

Apple has released iOS and iPadOS updates to patch a kernel vulnerability that has been exploited in attacks. The flaw,…

SEC Cybersecurity
12
Oct
2023

CISO Pay Increases Are Slowing – a Look Behind the Figures

CISO compensation levels are growing more slowly than recent years. Security budget increases are even more deflated this year. The…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
12
Oct
2023

LinkedIn Smart Links Abused in Phishing Campaign Targeting Microsoft Accounts

A recently identified phishing campaign is relying on LinkedIn smart links to bypass email defenses and deliver malicious lures into…

Unpatched Vulnerabilities Expose Yifan Industrial Routers to Attacks
12
Oct
2023

Unpatched Vulnerabilities Expose Yifan Industrial Routers to Attacks

Industrial routers made by Chinese company Yifan are affected by several critical vulnerabilities that can expose organizations to attacks, Cisco’s…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
12
Oct
2023

Simpson Manufacturing Takes Systems Offline Following Cyberattack

Engineering and manufacturing firm Simpson Manufacturing says it has taken some of its IT systems offline following a cyberattack this…

SYN Ventures Announces $75 Million Seed Fund for US Cybersecurity Firms
12
Oct
2023

SYN Ventures Announces $75 Million Seed Fund for US Cybersecurity Firms

Venture capital firm SYN Ventures announced this week the first closing of a $75 million cybersecurity seed fund, which the…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
11
Oct
2023

Critical SOCKS5 Vulnerability in cURL Puts Enterprise Systems at Risk

The maintainers of the cURL data transfer project on Wednesday rolled out patches for a severe memory corruption vulnerability that…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
11
Oct
2023

Payment Card Data Stolen in Air Europa Hack

Air Europa, one of Spain’s largest airlines, is urging some customers to cancel their payment cards after the information may…