Category: SecurityWeek

NSA Artificial Intelligence Center
29
Sep
2023

National Security Agency is Starting an Artificial Intelligence Security Center

The National Security Agency is starting an artificial intelligence security center — a crucial mission as AI capabilities are increasingly…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
29
Sep
2023

CISA Warns of Old JBoss RichFaces Vulnerability Being Exploited in Attacks

US cybersecurity agency CISA is warning organizations that an old vulnerability affecting JBoss RichFaces has been exploited in attacks. The…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
29
Sep
2023

Hackers Set Sights on Apache NiFi Flaw That Exposes Many Organizations to Attacks

A high-severity remote code execution (RCE) vulnerability in Apache NiFi, for which an exploitation tool already exists, can lead to…

Section 702
29
Sep
2023

A Key US Government Surveillance Tool Should Face New Limits, a Divided Privacy Oversight Board Says

Federal spy agencies should be required to get court approval before reviewing the communications of U.S. citizens collected through a…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
29
Sep
2023

Cloudflare Users Exposed to Attacks Launched From Within Cloudflare: Researchers

Gaps in Cloudflare’s security controls allow users to bypass customer-configured protection mechanisms and target other users from the platform itself,…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
29
Sep
2023

FBI Warns Organizations of Dual Ransomware, Wiper Attacks

The FBI is warning organizations of new trends in ransomware attacks, where victims are targeted by multiple file-encrypting malware families…

China Hacks
29
Sep
2023

US State Department Says 60,000 Emails Taken in Alleged Chinese Hack

The US State Department said Thursday that hackers took around 60,000 emails, although none of them classified, in an attack…

MOVEit MFT vulnerability exploited
28
Sep
2023

Progress Software Patches Critical Pre-Auth Flaws in WS_FTP Server Product 

Enterprise technology vendor Progress Software on Thursday shipped patches for critical-level security flaws in its WS_FTP file transfer software, warning…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Sep
2023

Moving From Qualitative to Quantitative Cyber Risk Modeling

Reporting on cyber risk is a table stakes initiative for information security leaders. After speaking with key stakeholders within organizations,…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Sep
2023

Lumu Raises $30 Million for Threat Detection and Response Platform

Lumu, a cybersecurity firm that helps organizations identify and isolate potential compromises, on Wednesday announced that it has raised $30…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Sep
2023

Verisoul Raises $3.25 Million in Seed Funding to Detect Fake Users

Verisoul, an Austin, Texas-based company that has developed a SaaS platform for detecting and blocking fake users, announced on Thursday…

Security-byDesign and -Default
28
Sep
2023

80% of CISA Staff at Risk of Furlough as Government Shutdown Looms

Roughly 80% of the staff at US cybersecurity agency CISA may be sent home at the end of the week…