AppSec Webinar: How to Turn Developers into Security Champions

18/07/2024 0 Comments 0 tags

Let’s face it: AppSec and developers often feel like they’re on opposing teams. You’re battling endless vulnerabilities while they just want to ship code. Sound familiar? It’s a common challenge,

Automated Threats Pose Increasing Risk to the Travel Industry

18/07/2024 0 Comments 0 tags

As the travel industry rebounds post-pandemic, it is increasingly targeted by automated threats, with the sector experiencing nearly 21% of all bot attack requests last year. That’s according to research

TAG-100: New Threat Actor Uses Open-Source Tools for Widespread Attacks

18/07/2024 0 Comments 0 tags

Unknown threat actors have been observed leveraging open-source tools as part of a suspected cyber espionage campaign targeting global government and private sector organizations. Recorded Future’s Insikt Group is tracking

SAP AI Core Vulnerabilities Expose Customer Data to Cyber Attacks

18/07/2024 0 Comments 0 tags

Cybersecurity researchers have uncovered security shortcomings in SAP AI Core cloud-based platform for creating and deploying predictive artificial intelligence (AI) workflows that could be exploited to get hold of access

Cisco Warns of Critical Flaw Affecting On-Prem Smart Software Manager

18/07/2024 0 Comments 0 tags

Cisco has released patches to address a maximum-severity security flaw impacting Smart Software Manager On-Prem (Cisco SSM On-Prem) that could enable a remote, unauthenticated attacker to change the password of

Meta Halts AI Use in Brazil Following Data Protection Authority’s Ban

18/07/2024 0 Comments 0 tags

Meta has suspended the use of generative artificial intelligence (GenAI) in Brazil after the country’s data protection authority issued a preliminary ban objecting to its new privacy policy. The development

North Korean Hackers Update BeaverTail Malware to Target MacOS Users

17/07/2024 0 Comments 0 tags

Cybersecurity researchers have discovered an updated variant of a known stealer malware that attackers affiliated with the Democratic People’s Republic of Korea (DPRK) have delivered as part of prior cyber

FIN7 Group Advertises Security-Bypassing Tool on Dark Web Forums

17/07/2024 0 Comments 0 tags

The financially motivated threat actor known as FIN7 has been observed using multiple pseudonyms across several underground forums to likely advertise a tool known to be used by ransomware groups

Navigating Insider Risks: Are your Employees Enabling External Threats?

17/07/2024 0 Comments 0 tags

Attacks on your network are often meticulously planned operations launched by sophisticated threats. Sometimes your technical fortifications provide a formidable challenge, and the attack requires assistance from the inside to

Critical Apache HugeGraph Vulnerability Under Attack – Patch ASAP

17/07/2024 0 Comments 0 tags

Threat actors are actively exploiting a recently disclosed critical security flaw impacting Apache HugeGraph-Server that could lead to remote code execution attacks. Tracked as CVE-2024-27348 (CVSS score: 9.8), the vulnerability