Category: SecurityWeek

Code Signing Software Supply Chain
24
Nov
2023

North Korean Software Supply Chain Attack Hits North America, Asia 

A North Korean threat group breached a Taiwanese software company and leveraged its systems to deliver malware to devices in…

Cybersecurity News tidbits
24
Nov
2023

In Other News: National Laboratory Breach, Airplane GPS Attacks, Russia Accuses Allies of Hacking

SecurityWeek is publishing a weekly cybersecurity roundup that provides a concise compilation of noteworthy stories that might have slipped under…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
22
Nov
2023

Researchers Discover Dangerous Exposure of Sensitive Kubernetes Secrets

Researchers at Aqua Security are calling urgent attention to the public exposure of Kubernetes configuration secrets, warning that hundreds of…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
22
Nov
2023

185,000 Individuals Impacted by MOVEit Hack at Car Parts Giant AutoZone 

Car parts giant AutoZone, which has over 7,000 stores across the Americas, is informing nearly 185,000 individuals that their personal…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
22
Nov
2023

Microsoft Offers Up to $20,000 for Vulnerabilities in Defender Products

Microsoft announced on Tuesday that it is willing to pay up to $20,000 for vulnerabilities reported as part of a…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
22
Nov
2023

Windows Hello Fingerprint Authentication Bypassed on Popular Laptops

Security researchers have tested the fingerprint sensors used for Windows Hello on three popular laptops and managed to find a…

Open AI CEO Shakeup
22
Nov
2023

Sam Altman is Back as OpenAI CEO Just Days After Being Removed, Along With a New Board

The ousted leader of ChatGPT-maker OpenAI is returning to the company that fired him late last week, culminating a days-long…

Risk Management
22
Nov
2023

Humans Are Notoriously Bad at Assessing Risk

Risk assessment should be a rational and objective undertaking. We as humans, with our emotions, can sometimes be irrational and subjective. As…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
22
Nov
2023

Kansas Officials Blame 5-Week Disruption of Court System on ‘Sophisticated Foreign Cyberattack’

Cybercriminals hacked into the Kansas court system, stole sensitive data and threatened to post it on the dark web in…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
22
Nov
2023

Citrix, Gov Agencies Issue Fresh Warnings on CitrixBleed Vulnerability

Australian and US governmental agencies and Citrix this week issued fresh warnings on the exploitation of a critical NetScaler product…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
21
Nov
2023

LLM Security Startup Lasso Emerges From Stealth Mode

End-to-end generative AI security startup Lasso Security has emerged from stealth mode with $6 million in a seed funding round…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
21
Nov
2023

CISA Offering Free Cybersecurity Services to Non-Federal Critical Infrastructure Entities

The US cybersecurity agency CISA has announced a new pilot program to provide managed cybersecurity services to critical infrastructure entities…