"McDonald's API hacking, Netflix fine, and ICS process.
Views expressed in this cybersecurity, cyber crime update are those of the reporters and correspondents. Accessed on 21 December 2024, 0015 UTC.
Content and Source: Email subscription via https://feedly.
https://feedly.com/i/subscription/feed%2Fhttp%3A%2F%2Ffeeds.feedburner.com%2FSecurityweek
Please check link or scroll down to read your selections. Thanks for joining us today.
Russ Roberts (https://www.hawaiicybersecurityjournal.net).
TODAY
•by SecurityWeek News / 11h
Noteworthy stories that might have slipped under the radar: McDonald’s API hacking, Netflix fined nearly $5 million in Netherlands, experimental malware killing ICS process. The post appeared first on SecurityWeek .
Bitsight has discovered a BadBox botnet consisting of over 190,000 Android devices, mainly Yandex smart TVs and Hisense smartphones. The post appeared first on SecurityWeek .
The Play ransomware group claims to have stolen sensitive data from donut and coffee retail chain Krispy Kreme. The post appeared first on SecurityWeek .
A second individual accused of being involved in NetWalker ransomware attacks, a Romanian national, has received a 20-year prison sentence. The post appeared first on SecurityWeek .
CISA is urging federal agencies to patch a recent critical vulnerability in BeyondTrust remote access products in one week. The post appeared first on SecurityWeek .
Rockwell’s PowerMonitor is affected by critical vulnerabilities that can enable remote access to industrial systems for disruption or further attacks. The post appeared first on SecurityWeek .
YESTERDAY
Benchmarking is all about taking back control – you’re measuring to gain complete awareness of your development teams’ security skills and practices. The post appeared first on SecurityWeek .
In light of recent Chinese hacking into US telecom infrastructure, CISA has released guidance on protecting mobile communications. The post appeared first on SecurityWeek .
Raccoon Infostealer MaaS operator Mark Sokolovsky was sentenced to 60 months in prison in the US and agreed to pay over $910,000 in restitution. The post appeared first on SecurityWeek .
Cisco has announced its intention to acquire threat detection company SnapAttack to boost Splunk security product capabilities. The post appeared first on SecurityWeek .
Fortinet has released patches for a critical-severity path traversal vulnerability in FortiWLM that was reported last year. The post appeared first on SecurityWeek .
Alphabet spinoff SandboxAQ has announced raising $300 million in funding at a valuation of $5.3 billion. The post appeared first on SecurityWeek .
Google has released a Chrome 131 update to patch multiple high-severity memory safety vulnerabilities, including three affecting the V8 JavaScript engine. The post appeared first on SecurityWeek .
Juniper Networks says a Mirai botnet is ensnaring session smart router devices that are using default passwords. The post appeared first on SecurityWeek .
DEC 18, 2024
•by SecurityWeek News / 2d
San Francisco startup scores a Series B round to thwart money mule accounts, deep-fake identities, account takeovers and payment fraud. The post appeared first on SecurityWeek .
The Russian government accuses the US threat-intel firm of participating in the collection and analysis of data on the actions of the Russia's armed forces. The post appeared first on SecurityWeek .
Healthcare insurance firm Regional Care has disclosed a data breach impacting more than 225,000 individuals. The post appeared first on SecurityWeek .
CISA’s Binding Operational Directive 25-01 requires federal agencies to align cloud environments with SCuBA secure configuration baselines. The post appeared first on SecurityWeek .
A critical vulnerability in BeyondTrust Privileged Remote Access and Remote Support could lead to arbitrary command execution. The post appeared first on SecurityWeek .
by Alastair Paterson / 2d
While the challenges are significant, organizations have an opportunity to build scalable AI governance frameworks that ensure compliance while enabling responsible AI innovation. The post appeared first on SecurityWeek .
Researchers warn of malicious attacks exploiting a recently patched critical vulnerability in Apache Struts 2 leading to remote code execution (RCE). The post appeared first on SecurityWeek .
DEC 17, 2024
IntelBroker has leaked 2.9 Gb of data stolen recently from a Cisco DevHub instance, but claims it’s only a fraction of the total. The post appeared first on SecurityWeek .
END OF FEED
Comments
Post a Comment
Please leave a comment about our recent post.