SecurityWeek

Port of Seattle Says 90,000 People Impacted by Ransomware Attack

Security Week - Mon, 04/07/2025 - 6:30am

The Port of Seattle says the personal information of 90,000 individuals was stolen in an August 2024 ransomware attack.

The post Port of Seattle Says 90,000 People Impacted by Ransomware Attack appeared first on SecurityWeek.

Categories: SecurityWeek

Suspected Scattered Spider Hacker Pleads Guilty

Security Week - Mon, 04/07/2025 - 6:05am

A 20-year-old arrested last year and charged alongside others believed to be members of Scattered Spider has pleaded guilty.

The post Suspected Scattered Spider Hacker Pleads Guilty appeared first on SecurityWeek.

Categories: SecurityWeek

Call Records of Millions Exposed by Verizon App Vulnerability

Security Week - Fri, 04/04/2025 - 11:53am

A patch has been released for a serious information disclosure vulnerability affecting a Verizon call filtering application.

The post Call Records of Millions Exposed by Verizon App Vulnerability appeared first on SecurityWeek.

Categories: SecurityWeek

In Other News: Apple Improving Malware Detection, Cybersecurity Funding, Cyber Command Chief Fired

Security Week - Fri, 04/04/2025 - 10:30am

Noteworthy stories that might have slipped under the radar: Apple adding TCC events to Endpoint Security, cybersecurity funding report for Q1 2025, Trump fires the head of NSA and Cyber Command.

The post In Other News: Apple Improving Malware Detection, Cybersecurity Funding, Cyber Command Chief Fired appeared first on SecurityWeek.

Categories: SecurityWeek

State Bar of Texas Says Personal Information Stolen in Ransomware Attack

Security Week - Fri, 04/04/2025 - 8:44am

The State Bar of Texas is notifying thousands of individuals that their personal information was stolen in a February ransomware attack.

The post State Bar of Texas Says Personal Information Stolen in Ransomware Attack appeared first on SecurityWeek.

Categories: SecurityWeek

US, Allies Warn of Threat Actors Using ‘Fast Flux’ to Hide Server Locations

Security Week - Fri, 04/04/2025 - 8:09am

US and allied countries warn of threat actors using the “fast flux” technique to change DNS records and hide malicious servers’ locations.

The post US, Allies Warn of Threat Actors Using ‘Fast Flux’ to Hide Server Locations appeared first on SecurityWeek.

Categories: SecurityWeek

Oracle Confirms Cloud Hack

Security Week - Fri, 04/04/2025 - 6:30am

Oracle has confirmed suffering a data breach but the tech giant is apparently trying to downplay the impact of the incident.

The post Oracle Confirms Cloud Hack appeared first on SecurityWeek.

Categories: SecurityWeek

Critical Apache Parquet Vulnerability Leads to Remote Code Execution

Security Week - Fri, 04/04/2025 - 6:10am

A critical vulnerability in Apache Parquet can be exploited to execute arbitrary code remotely, leading to complete system compromise.

The post Critical Apache Parquet Vulnerability Leads to Remote Code Execution appeared first on SecurityWeek.

Categories: SecurityWeek

Compromised SpotBugs Token Led to GitHub Actions Supply Chain Hack

Security Week - Fri, 04/04/2025 - 5:48am

Evidence shows a SpotBugs token compromised in December 2024 was used in the March 2025 GitHub Actions supply chain attack.

The post Compromised SpotBugs Token Led to GitHub Actions Supply Chain Hack appeared first on SecurityWeek.

Categories: SecurityWeek

Chinese APT Pounces on Misdiagnosed RCE in Ivanti VPN Appliances 

Security Week - Thu, 04/03/2025 - 1:07pm

Ivanti misdiagnoses a remote code execution vulnerability and Mandiant reports that Chinese hackers are launching in-the-wild exploits.

The post Chinese APT Pounces on Misdiagnosed RCE in Ivanti VPN Appliances  appeared first on SecurityWeek.

Categories: SecurityWeek

Halo ITSM Vulnerability Exposed Organizations to Remote Hacking

Security Week - Thu, 04/03/2025 - 11:45am

An unauthenticated SQL injection vulnerability in Halo ITSM could have been exploited to read, modify, or insert data.

The post Halo ITSM Vulnerability Exposed Organizations to Remote Hacking appeared first on SecurityWeek.

Categories: SecurityWeek

Hunters International Ransomware Gang Rebranding, Shifting Focus

Security Week - Thu, 04/03/2025 - 9:02am

The notorious cybercrime group Hunters International is dropping ransomware to focus on data theft and extortion.

The post Hunters International Ransomware Gang Rebranding, Shifting Focus appeared first on SecurityWeek.

Categories: SecurityWeek

Cybersecurity M&A Roundup: 23 Deals Announced in March 2025

Security Week - Thu, 04/03/2025 - 8:00am

Less than two dozen cybersecurity merger and acquisition (M&A) deals were announced in March 2025.

The post Cybersecurity M&A Roundup: 23 Deals Announced in March 2025 appeared first on SecurityWeek.

Categories: SecurityWeek

39 Million Secrets Leaked on GitHub in 2024

Security Week - Thu, 04/03/2025 - 6:56am

GitHub has announced new capabilities to help organizations and developers keep secrets in their code protected.

The post 39 Million Secrets Leaked on GitHub in 2024 appeared first on SecurityWeek.

Categories: SecurityWeek

Details Emerge on CVE Controversy Around Exploited CrushFTP Vulnerability 

Security Week - Thu, 04/03/2025 - 6:30am

Two CVEs now exist for an actively exploited CrushFTP vulnerability and much of the security industry is using the ‘wrong one’.

The post Details Emerge on CVE Controversy Around Exploited CrushFTP Vulnerability  appeared first on SecurityWeek.

Categories: SecurityWeek

Vulnerabilities Expose Cisco Meraki and ECE Products to DoS Attacks

Security Week - Thu, 04/03/2025 - 6:00am

Cisco fixes two high-severity denial-of-service vulnerabilities in Meraki devices and Enterprise Chat and Email.

The post Vulnerabilities Expose Cisco Meraki and ECE Products to DoS Attacks appeared first on SecurityWeek.

Categories: SecurityWeek

Google Released Second Fix for Quick Share Flaws After Patch Bypass

Security Week - Thu, 04/03/2025 - 5:02am

Google’s patches for Quick Share for Windows vulnerabilities leading to remote code execution were incomplete and could be easily bypassed.

The post Google Released Second Fix for Quick Share Flaws After Patch Bypass appeared first on SecurityWeek.

Categories: SecurityWeek

Serial Entrepreneurs Raise $43M to Counter AI Deepfakes, Social Engineering

Security Week - Wed, 04/02/2025 - 12:48pm

Adaptive is pitching a security platform designed to replicate real-world attack scenarios through AI-generated deepfake simulations. 

The post Serial Entrepreneurs Raise $43M to Counter AI Deepfakes, Social Engineering appeared first on SecurityWeek.

Categories: SecurityWeek

Vulnerabilities Expose Jan AI Systems to Remote Manipulation

Security Week - Wed, 04/02/2025 - 12:10pm

Vulnerabilities in open source ChatGPT alternative Jan AI expose systems to remote, unauthenticated manipulation.

The post Vulnerabilities Expose Jan AI Systems to Remote Manipulation appeared first on SecurityWeek.

Categories: SecurityWeek

Cyberhaven Banks $100 Million in Series D, Valuation Hits $1 Billion

Security Week - Wed, 04/02/2025 - 11:28am

Cyberhaven bags $100 million in funding at a billion-dollar valuation, a sign that investors remain bullish on data security startups.

The post Cyberhaven Banks $100 Million in Series D, Valuation Hits $1 Billion appeared first on SecurityWeek.

Categories: SecurityWeek

Pages