Security Week

Subscribe to Security Week feed Security Week
Latest cybersecurity news and expert insights from SecurityWeek's RSS feed
Updated: 34 min 6 sec ago

Tech CEOs Altman, Nadella, Pichai and Others Join Government AI Safety Board Led by DHS’ Mayorkas

Mon, 04/29/2024 - 9:49pm

CEOs of major tech companies are joining a new artificial intelligence safety board to advise the federal government on how to protect the nation’s critical services from “AI-related disruptions.”

The post Tech CEOs Altman, Nadella, Pichai and Others Join Government AI Safety Board Led by DHS’ Mayorkas appeared first on SecurityWeek.

Categories: SecurityWeek

CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure

Mon, 04/29/2024 - 1:57pm

New CISA guidelines categorize AI risks into three significant types and pushes a four-part mitigation strategy.

The post CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure appeared first on SecurityWeek.

Categories: SecurityWeek

How TikTok Grew From a Fun App for Teens Into a Potential National Security Threat

Mon, 04/29/2024 - 1:29pm

History of TikTok and how it many view it as a national security threat.

The post How TikTok Grew From a Fun App for Teens Into a Potential National Security Threat appeared first on SecurityWeek.

Categories: SecurityWeek

Google Says it Blocked 2.28 Million Apps from Google Play Store

Mon, 04/29/2024 - 12:00pm

In 2023, Google said it blocked 2.28 million bad applications from being published on Google Play and banned 333,000 developer accounts.

The post Google Says it Blocked 2.28 Million Apps from Google Play Store appeared first on SecurityWeek.

Categories: SecurityWeek

Should Cybersecurity Leadership Finally be Professionalized?

Mon, 04/29/2024 - 11:18am

The majority opinion is that a cybersecurity professional body is long overdue and would benefit cybersecurity and cybersecurity practitioners.

The post Should Cybersecurity Leadership Finally be Professionalized? appeared first on SecurityWeek.

Categories: SecurityWeek

Kaiser Permanente Data Breach Impacts 13.4 Million Patients

Mon, 04/29/2024 - 10:43am

US healthcare giant is warning millions of current and former patients that their personal information was exposed to third-party advertisers.

The post Kaiser Permanente Data Breach Impacts 13.4 Million Patients appeared first on SecurityWeek.

Categories: SecurityWeek

Beyond the Buzz: Rethinking Alcohol as a Cybersecurity Bonding Ritual

Mon, 04/29/2024 - 9:45am

Jennifer Leggio makes the case for more alcohol-free networking events at conferences, and community-building opportunities for sober individuals working in cybersecurity.

The post Beyond the Buzz: Rethinking Alcohol as a Cybersecurity Bonding Ritual appeared first on SecurityWeek.

Categories: SecurityWeek

Honeywell: USB Malware Attacks on Industrial Orgs Becoming More Sophisticated

Mon, 04/29/2024 - 9:00am

An analysis conducted by Honeywell shows that much of the USB-borne malware targeting industrial organizations can still cause OT disruption.

The post Honeywell: USB Malware Attacks on Industrial Orgs Becoming More Sophisticated appeared first on SecurityWeek.

Categories: SecurityWeek

Okta Warns of Credential Stuffing Attacks Using Tor, Residential Proxies

Mon, 04/29/2024 - 6:23am

Okta warned of a spike in credential stuffing attacks using anonymizing services such as Tor, DataImpulse, Luminati, and NSocks.

The post Okta Warns of Credential Stuffing Attacks Using Tor, Residential Proxies appeared first on SecurityWeek.

Categories: SecurityWeek

Collection Agency FBCS Says Data Breach Exposed Nearly 2 million People

Mon, 04/29/2024 - 5:59am

Financial Business and Consumer Solutions (FBCS) says compromised information may include names, dates of birth, Social Security numbers, and account information.

The post Collection Agency FBCS Says Data Breach Exposed Nearly 2 million People appeared first on SecurityWeek.

Categories: SecurityWeek

Hackers Claim to Have Infiltrated Belarus’ Main Security Service

Sun, 04/28/2024 - 11:46am

A Belarusian hacker activist group claims to have infiltrated the network of the country’s main KGB security agency and accessed personnel files of over 8,600 employees.

The post Hackers Claim to Have Infiltrated Belarus’ Main Security Service appeared first on SecurityWeek.

Categories: SecurityWeek

Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices

Fri, 04/26/2024 - 10:08am

A new Android trojan named Brokewell can steal user’s sensitive information and allows attackers to take over devices.

The post Powerful ‘Brokewell’ Android Trojan Allows Attackers to Takeover Devices appeared first on SecurityWeek.

Categories: SecurityWeek

Over 1,400 CrushFTP Instances Vulnerable to Exploited Zero-Day

Fri, 04/26/2024 - 9:44am

More than 1,400 CrushFTP servers remain vulnerable to an actively exploited zero-day for which PoC has been published.

The post Over 1,400 CrushFTP Instances Vulnerable to Exploited Zero-Day appeared first on SecurityWeek.

Categories: SecurityWeek

Self-Spreading PlugX USB Drive Malware Plagues Over 90k IP Addresses

Fri, 04/26/2024 - 9:41am

More than 90,000 unique IPs are still infected with a PlugX worm variant that spreads via infected flash drives.

The post Self-Spreading PlugX USB Drive Malware Plagues Over 90k IP Addresses appeared first on SecurityWeek.

Categories: SecurityWeek

In Other News: China Hacked Volkswagen, DDoS Service Shutdown, Rubrik IPO

Fri, 04/26/2024 - 8:00am

Noteworthy stories that might have slipped under the radar: Volkswagen hacked by Chinese threat group, DDoS service shut down, Rubrik IPO.

The post In Other News: China Hacked Volkswagen, DDoS Service Shutdown, Rubrik IPO appeared first on SecurityWeek.

Categories: SecurityWeek

Darktrace to be Taken Private in $5.3 Billion Sale to Thoma Bravo

Fri, 04/26/2024 - 7:32am

UK cybersecurity firm Darktace has agreed to sell itself to private equity giant Thoma Bravo for approximately $5.32 million in cash.

The post Darktrace to be Taken Private in $5.3 Billion Sale to Thoma Bravo appeared first on SecurityWeek.

Categories: SecurityWeek

Critical WordPress Automatic Plugin Vulnerability Exploited to Inject Backdoors

Fri, 04/26/2024 - 5:34am

A vulnerability in the WordPress Automatic plugin is being exploited to inject backdoors and web shells into websites.

The post Critical WordPress Automatic Plugin Vulnerability Exploited to Inject Backdoors appeared first on SecurityWeek.

Categories: SecurityWeek

Predictive Security Startup BforeAI Raises $15 Million

Thu, 04/25/2024 - 11:47am

Predictive attack intelligence and risk protection startup BforeAI has raised $15 million in a Series A funding round led by SYN Ventures.

The post Predictive Security Startup BforeAI Raises $15 Million appeared first on SecurityWeek.

Categories: SecurityWeek

Palo Alto Networks Shares Remediation Advice for Hacked Firewalls

Thu, 04/25/2024 - 9:24am

Palo Alto Networks has shared remediation instructions for organizations whose firewalls have been hacked via CVE-2024-3400.

The post Palo Alto Networks Shares Remediation Advice for Hacked Firewalls appeared first on SecurityWeek.

Categories: SecurityWeek

Autodesk Drive Abused in Phishing Attacks 

Thu, 04/25/2024 - 8:25am

A new phishing campaign abuses compromised email accounts and targets corporate users with PDF files hosted on Autodesk Drive.

The post Autodesk Drive Abused in Phishing Attacks  appeared first on SecurityWeek.

Categories: SecurityWeek

Pages