Category: SecurityWeek

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Jul
2023

US, Australia Issue Warning Over Access Control Vulnerabilities in Web Applications

New guidance from the Australian Cyber Security Centre (ACSC), the US Cybersecurity and Infrastructure Security Agency (CISA), and National Security…

Cybersecurity news roundup
28
Jul
2023

In Other News: Data Breach Cost Rises, Russia Targets Diplomats, Tracker Alerts in Android 

SecurityWeek is publishing a weekly cybersecurity roundup that provides a concise compilation of noteworthy stories that might have slipped under…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Jul
2023

Exploitation of Recent Citrix ShareFile RCE Vulnerability Begins

Threat intelligence company Greynoise says it has observed the first attempts to exploit a recent critical remote code execution (RCE)…

Feedback Friday on EU-US Data Privacy Framework
28
Jul
2023

Industry Reactions to New SEC Cyber Incident Disclosure Rules: Feedback Friday

The US Securities and Exchange Commission (SEC) has adopted new cybersecurity incident disclosure rules for public companies, but there is…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Jul
2023

Zimbra Patches Exploited Zero-Day Vulnerability

Zimbra this week released patches for a cross-site scripting (XSS) vulnerability in Collaboration Suite that has been exploited in malicious…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
28
Jul
2023

CoinsPaid Blames North Korean Hackers for $37 Million Cryptocurrency Heist

Cryptocurrency payments firm CoinsPaid says North Korean hacking group Lazarus is likely responsible for the theft of approximatively $37 million…

Weintek Weincloud Vulnerabilities Allowed Manipulation, Damaging of ICS Devices
28
Jul
2023

Weintek Weincloud Vulnerabilities Allowed Manipulation, Damaging of ICS Devices

Several vulnerabilities discovered by a researcher from industrial cybersecurity firm TXOne Networks in a Weintek product could have been exploited…

Microsoft addresses Cobalt Strike abuse
27
Jul
2023

US Senator Wyden Accuses Microsoft of ‘Cybersecurity Negligence’

Oregon senator Ron Wyden wants the U.S. government to hold Microsoft responsible for what he describes as “negligent cybersecurity practices”…

Protect AI Funding
27
Jul
2023

Protect AI Raises $35 Million to Protect Machine Learning and AI Assets

Machine Learning and Artificial Intelligence security firm Protect AI has raised $35 million in a Series A funding round led…

Future of AI
27
Jul
2023

The Good, the Bad and the Ugly of Generative AI

As humans, we’re naturally wired to be negative. It’s a widely studied concept referred to as negativity bias, and it’s…

Patch Tuesday: Critical Flaws in Adobe Commerce Software
27
Jul
2023

TSA Updates Pipeline Cybersecurity Requirements

The Transportation Security Administration (TSA) announced on Wednesday an update to its cybersecurity requirements for oil and natural gas pipeline…

Security-byDesign and -Default
27
Jul
2023

Head of US Cybersecurity Agency Sees Progress on Election Security, With More Work Needed for 2024

Efforts to protect the nation’s election systems have grown exponentially since the 2016 presidential election, but more is needed to…