| | Former Uber CISO Speaks Out, After 6 Years, on Data Breach, SolarWindsJoe Sullivan, spared prison time, weighs in on the lessons learned from the 2016 Uber breach and the import of the SolarWinds CISO case. CISA to Congress: US Under Threat of Chemical AttacksDropping the ball on chemical security has precipitated "a national security gap too great to ignore," CISA warns. Critical Vulns Found in Ray Open Source Framework for AI/ML WorkloadsAnyscale has dismissed the vulnerabilities as non-issues, according to researchers who reported the bugs to the company. Cyber Monday Kicks Off Holiday Shopping Season With E-Commerce Security RisksOnline shopping websites often lack basic security protections when it comes to PII, allowing malicious actors to capitalize on consumer data or perpetuate retail and hospitality scams. macOS Malware Mix & Match: North Korean APTs Stir Up Fresh AttacksLazarus and its cohorts are switching loaders and other code between RustBucket and KandyKorn macOS malware to fool victims and researchers. Slovenian Electrical Utility HSE Suffers Ransomware AttackThe company's power production remains in operation, and authorities have been notified of the attack. Attacks Against South African ICS and IoT Systems Steadily DecreaseAll African nations saw a reduced number of cyberattacks on industrial and IoT systems in the third quarter of 2023 compared with earlier this year. Researchers Claim Design Flaw in Google Workspace Puts Organizations at RiskGoogle says the issue has to do with organizations ensuring they implement least-privilege principles. Fight or Flight: How to Keep Cyberattacks From Taking OffAs industries around the world act to mitigate the increase in cyber threats, the aviation sector should be leading the cybersecurity uprising, explains William "Hutch" Hutchison, CEO of SimSpace. Name That Toon: Slam DunkFeeling creative? Submit your caption and our panel of experts will reward the winner with a $25 Amazon gift card. (Sponsored Article) 3 Essential Steps to Strengthen SaaS SecuritySaaS security is broad, possibly confusing, but undeniably crucial. Make sure you have the basics in place: discovery, risk assessment, and user access management. MORE NEWS / MORE COMMENTARY | | | | | | | General Electric, DARPA Hack Claims Raise National Security ConcernsWeapons systems data, AI research, and other classified information may be up for sale, not to mention access to other government agencies. Data De-Identification: Balancing Privacy, Efficacy & CybersecurityCompanies must do a delicate dance between consumer privacy protection, upholding their product's efficacy, and de-risking cyber breaches to run the business. CISA, NCSC Offer a Road Map, Not Rules, in New Secure AI GuidelinesUS and UK authorities issued new recommendations for companies that build and rely on AI, but they stop short of laying down the law. MORE |
|
| | | - Modern Supply Chain Security: Integrated, Interconnected, and Context-Driven
In this session, you'll learn what a holistic approach to SSCS requires, including a comprehensive inventory of your supply chain, connecting risks across the development lifecycle, and leveraging code-to-runtime context to prioritize risks. We'll provide examples of "toxic combinations" between ... - Hacking Your Digital Identity: How Cybercriminals Can and Will Get Around Your Authentication Methods
Inadequate authentication measures leave your digital identity vulnerable to cybercriminals. Tools like multi-factor authentication, biometrics, passwords, PINs, and tokens are all more vulnerable to attacks and social engineering than you realize. And one wrong move leaves you and your organization ...
| View More Dark Reading Webinars >> |
|
| |
|
No comments:
Post a Comment
Please leave a comment about our recent post.