-
"70% of Leaders See Cyber Knowledge Gap in Employees"
According to a new study by researchers at Fortinet, nearly 70% of business leaders believe their employees lack critical cybersecurity knowledge, a sharp increase from 56% in 2023.
-
"CISA, DOJ Propose Rules for Protecting Personal Data Against Foreign Adversaries"
The United States Department of Justice and the cybersecurity agency CISA have started seeking comments on a proposed rule for protecting the personal data of Americans against foreign adversaries.
-
"NotLockBit Ransomware Can Target macOS Devices"
Researchers at SentinelOne have observed a new macOS malware family dubbed "NotLockBit" that poses as "LockBit" ransomware. NotLockBit, which is written in the Go programming language, targets both Windows and macOS systems.
-
"LLMjacking and Open-Source Tool Abuse Surge in 2024 Cloud Attacks"
The Sysdig Threat Research Team (TRT) has reported that cloud-based cyberattacks increased significantly in 2024 as threat actors used new methods to exploit cloud resources.
-
"BlackCat Ransomware Successor Cicada3301 Emerges"
The "Alphv/BlackCat" ransomware gang appears to have resurfaced as "Cicada3301," which is written in the Rust programming language.
-
"Engineers Build Zero-Trust, Real-Time Cybersecurity Tools to Protect Renewables on the Grid"
Researchers at Iowa State University are building zero-trust cybersecurity tools to protect power grids that include renewable resources such as wind or solar farms.
-
"Critical Vulnerabilities Expose mbNET.mini, Helmholz Industrial Routers to Attacks"
Germany's CERT@VDE has notified organizations of several critical and high-severity vulnerabilities found in industrial routers.
-
"Penn Engineering Research Discovers Critical Vulnerabilities in AI-Enabled Robots to Increase Safety and Security"
Researchers at the University of Pennsylvania's School of Engineering and Applied Science (Penn Engineering) discovered that certain features of Artificial Intelligence (AI)-governed robots have previously unidentified security vulnerabilities.
-
"Severe Flaws in E2EE Cloud Storage Platforms Used by Millions"
According to ETH Zurich researchers Jonas Hofmann and Kien Tuong Turong, multiple End-to-End Encrypted (E2EE) cloud storage platforms have security vulnerabilities that could expose user data to malicious actors.
-
"Half of Organizations Have Unmanaged Long-Lived Cloud Credentials"
Datadog's "State of Cloud Security 2024" report found that 46 percent of organizations have unmanaged users with long-lived credentials in cloud services, putting them at risk of data breaches.
-
"ESET Distributor's Systems Abused to Deliver Wiper Malware"
ESET is investigating the abuse of the systems of its official product distributor in Israel to send emails delivering wiper malware.
-
News