Can regulatory oversight alone unlock cloud competition?
27
Mar
2025

Can regulatory oversight alone unlock cloud competition?

Cloud computing’s rise is a success story under scrutiny. It has been nothing short of transformative, enabling businesses to scale…

Ingress-NGINX Controller
27
Mar
2025

Ingress-NGINX Controller Flaws Require Immediate Fix

A set of vulnerabilities have been identified in Ingress-NGINX Controller for Kubernetes, posing a risk to organizations relying on the…

NetApp Vulnerability (CVE-2025-26512) 
27
Mar
2025

CVE-2025-26512: Critical SnapCenter Security Risk

A serious security vulnerability has recently been identified in NetApp’s SnapCenter software, a widely used enterprise solution for managing data…

CBA opens a 'tech hub' in Seattle
27
Mar
2025

CBA opens a ‘tech hub’ in Seattle – Financial Services – Cloud – Software

CBA has opened a ‘tech hub’ in Seattle this month that will act as a “strategic gateway” to collaborate with…

27
Mar
2025

Hive Five 216 – The Hacker Always Wins

Habits are so good. They even compound! But, they can be hard to start and maintain. I’ve successfully started new…

Arkana Security group claims the hack of US telco provider WideOpenWest (WOW!)
27
Mar
2025

Arkana Security group claims the hack of US telco provider WideOpenWest (WOW!)

Arkana Security group claims the hack of US telco provider WideOpenWest (WOW!) Pierluigi Paganini March 27, 2025 Arkana Security, a…

[tl;dr sec] #271 - Threat Modeling (+ AI), Backdoored GitHub Actions, Compromising a Threat Actor's Telegram
27
Mar
2025

[tl;dr sec] #271 – Threat Modeling (+ AI), Backdoored GitHub Actions, Compromising a Threat Actor’s Telegram

Threat modeling (with) LLMs, tj-actions woes, reading a threat actor’s Telegram C2 I hope you’ve been doing well! Working on…

Security Update: Publicly Exposed Ingress NGINX Admission
27
Mar
2025

Security Update: Publicly Exposed Ingress NGINX Admission

A series of vulnerabilities, known as IngressNightmare (CVE-2025-1097, CVE-2025-1098, CVE-2025-24514, CVE-2025-1974), have been identified in ingress-nginx, a widely used Kubernetes…

Intigriti insights into latest beg bounty scam
27
Mar
2025

Intigriti insights into latest beg bounty scam

The Intigriti team have recently observed an abuse scenario, trending across the industry, where malicious actors are posing as legitimate…

My information was stolen. Now what?
27
Mar
2025

My information was stolen. Now what?

Back in May 2023, I wrote the blogpost You may not care where you download software from, but malware does…

Commerce limits 19 Chinese, Taiwanese companies from buying U.S. tech
27
Mar
2025

Commerce limits 19 Chinese, Taiwanese companies from buying U.S. tech

The Commerce Department plans to finalize economic sanctions this week on nearly 20 Chinese and Taiwanese organizations, citing the need…

UK
27
Mar
2025

UK fines software provider £3.07 million for 2022 ransomware breach

The UK Information Commissioner’s Office (ICO) has issued a £3.07 million fine on Advanced Computer Software Group Ltd for a 2022…