Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Software Supply Chain Security Needs a Bigger Picture

SBOMs aren't enough. OpenSSF's Alpha-Omega brings in new blood to help secure the open source projects most impactful to the software supply chain.

DARKReading
#vulnerability#web#google#microsoft#amazon#linux#red_hat#nodejs#js#git#rce#aws
SailPoint Acquires SecZetta to Provide Identity Security for Non-Employee Identities

This move accelerates the company’s vision of becoming the de facto identity security platform of choice for the modern enterprise.

Critical Cisco SMB Router Flaw Allows Authentication Bypass, PoC Available

Unpatched Cisco bugs, tracked as CVE-2023-20025 and CVE-2023-20026, allow lateral movement, data theft, and malware infestations.

Securing the World's Energy Systems: Where Physical Security and Cybersecurity Must Meet

Energy has become the new battleground for both physical and cyber security warfare, driven by nation-state actors, increasing financial rewards for ransomware gangs and decentralized devices. Chris Price reports.

Big Prizes, Cash on Offer for Joining 'DDosia' Anti-Ukraine Cyberattack Project

Russia's NoName057(16) group offers incentives and prizes via Telegram channel for "heroes" to mount attacks against targets within Ukraine and pro-Ukrainian countries.

Kubernetes-Related Security Projects to Watch in 2023

Organizations must be vigilant about balancing performance gains with security, governance, and compliance as they expand their use of Kubernetes.