Category: SecurityWeek

Patch Tuesday: Critical Flaws in Adobe Commerce Software
04
Aug
2023

Five Eyes Agencies Call Attention to Most Frequently Exploited Vulnerabilities

Government agencies in Australia, Canada, New Zealand, the UK, and the US have published a list of the software vulnerabilities…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
03
Aug
2023

CISA Calls Urgent Attention to UEFI Attack Surfaces

The US government’s cybersecurity agency CISA is calling attention to under-researched attack surfaces in UEFI, warning that the dominant firmware…

ICS Cybersecurity Conference
03
Aug
2023

670 ICS Vulnerabilities Disclosed by CISA in First Half of 2023: Analysis

The US Cybersecurity and Infrastructure Security Agency (CISA) disclosed 670 vulnerabilities affecting industrial control systems (ICS) and other operational technology…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
03
Aug
2023

Jericho Security Raises $3 Million for Awareness Training Powered by Generative AI

Jericho Security today announced that it has raised $3 million in a pre-seed funding round led by global investment firm…

ICS Cybersecurity Conference
03
Aug
2023

Dozens of RCE Vulnerabilities Impact Milesight Industrial Router

Dozens of vulnerabilities impacting the Milesight UR32L industrial router could be exploited to execute arbitrary code or commands, Cisco’s Talos…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
03
Aug
2023

Decommissioned Medical Infusion Pumps Expose Wi-Fi Configuration Data

Most medical infusion pumps sold via secondary market sources still contain Wi-Fi configuration settings from the original organization that deployed…

Cloud Security Risks
03
Aug
2023

These Are the Top Five Cloud Security Risks, Qualys Says

Cloud security specialist Qualys has provided its view of the top five cloud security risks, drawing insights and data from…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
03
Aug
2023

Google Awards Over $60,000 for V8 Vulnerabilities Patched With Chrome 115 Update

Google on Wednesday announced a Chrome 115 update that patches 17 vulnerabilities, including 11 flaws reported by external researchers. The…

M&A cybersecurity
03
Aug
2023

Cybersecurity M&A Roundup: 42 Deals Announced in July 2023

Forty-two cybersecurity-related merger and acquisition (M&A) deals were announced in July 2023. The number of transactions has bounced back following…

Salesforce phishing
03
Aug
2023

Salesforce Email Service Zero-Day Exploited in Phishing Campaign

Threat actors have exploited a Salesforce zero-day vulnerability and abused Meta features in a sophisticated phishing campaign, according to web…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
03
Aug
2023

Software Supply Chain Startup Endor Labs Scores Massive $70M Series A Round

Just ten months after securing an abnormally large seed-stage funding round, software supply chain startup Endor Labs has attracted renewed…

Midnight Blizzard
02
Aug
2023

Microsoft Catches Russian Government Hackers Phishing with Teams Chat App

Software giant Microsoft on Wednesday sounded an alarm after catching a known Russian government-linked hacking group using its Microsoft Teams…