EchoStrike: Generate undetectable reverse shells, perform process injection
16
Sep
2024

EchoStrike: Generate undetectable reverse shells, perform process injection

EchoStrike is an open-source tool designed to generate undetectable reverse shells and execute process injection on Windows systems. “EchoStrike allows…

Compliance frameworks and GenAI: The Wild West of security standards
16
Sep
2024

Compliance frameworks and GenAI: The Wild West of security standards

In this Help Net Security interview, Kristian Kamber, CEO at SplxAI, discusses how security challenges for GenAI differ from traditional…

Medusa Ransomware Exploiting Fortinet Flaw For Sophisticated Attacks
16
Sep
2024

Medusa Ransomware Exploiting Fortinet Flaw For Sophisticated Attacks

The notorious Medusa ransomware group has been exploiting a critical vulnerability in Fortinet’s FortiClient EMS software to launch sophisticated ransomware…

Trends and dangers in open-source software dependencies
16
Sep
2024

Trends and dangers in open-source software dependencies

A C-suite perspective on potential vulnerabilities within open-source dependencies or software packages reveals that, while remediation costs for dependency risks…

Azure API Management Vulnerability Let Users Escalate Privileges
16
Sep
2024

Azure API Management Vulnerability Let Users Escalate Privileges

A critical vulnerability was recently discovered in Azure API Management (APIM) that allowed users with Reader-level access to escalate their…

eBook: Navigating compliance with a security-first approach
16
Sep
2024

eBook: Navigating compliance with a security-first approach

As cyberattacks escalate, more regulations are being introduced to help protect organizations and their customers’ data. This has resulted in…

The Art Quality Tier List (AQTL)
16
Sep
2024

The Art Quality Tier List (AQTL)

I think I just figured out what art is. Took me decades. Here’s my definition, which has two primary components:…

UK unites nations to discuss closing global cyber skills gap
16
Sep
2024

UK unites nations to discuss closing global cyber skills gap

The UK government wants to start a global dialogue with leading nations from across the world about how best to…

United Airlines taps Starlink for in-flight internet
16
Sep
2024

United Airlines taps Starlink for in-flight internet – Telco/ISP

United Airlines has signed a new deal with Elon Musk’s Starlink for in-flight internet services. Starlink, a unit of SpaceX,…

ANZ Banking Group backs Zero Trust, 'secure-by-default'
16
Sep
2024

ANZ Banking Group backs Zero Trust, ‘secure-by-default’ – Finance – Security

ANZ Banking Group is completing the first year of its current enterprise security strategy, with a focus on embedding security,…

23andMe settles data breach lawsuit for US$30 million
15
Sep
2024

23andMe settles data breach lawsuit for US$30 million – Security

23andMe will pay US$30 million ($44.7 million) and provide three years of security monitoring to settle a lawsuit accusing the…

TfNSW consolidates Google Maps tech providers
15
Sep
2024

TfNSW consolidates Google Maps tech providers – Software

Transport for NSW has consolidated the number of technology providers Sydney Trains uses to gather and manage Google Maps data…