Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Indigo Books Refuses LockBit Ransomware Demand

Canada's largest bookseller rejected the pressure of the ransomware gang's countdown timer, despite data threats.

DARKReading
#vulnerability
Polish Politician's Phone Patrolled by Pegasus

A mayor backing Polish opposition elections in parliament has been targeted by special services with Pegasus spyware.

3 Ways Security Teams Can Use IP Data Context

Innocently or not, residential proxy networks can obscure the actual geolocation of an access point. Here's why that's not great and what you can do about it.

Chick-fil-A Customers Have a Bone to Pick After Account Takeovers

A two-month-long automated credential-stuffing campaign exposed personal information of Chick-fil-A customers, including birthdays, phone numbers, and membership details.

It's Time to Assess the Potential Dangers of an Increasingly Connected World

With critical infrastructures ever more dependent on the cloud connectivity, the world needs a more stable infrastructure to avoid a crippling cyberattack.

IBM Contributes Supply Chain Security Tools to OWASP

License Scanner and SBOM Utility will boost the capabilities of OWASP's CycloneDX Software Bill of Materials standard.

CISA, MITRE Look to Take ATT&CK Framework Out of the Weeds

The Decider tool is designed to make the ATT&CK framework more accessible and usable for security analysts of every level, with an intuitive interface and simplified language.

Biden's Cybersecurity Strategy Calls for Software Liability, Tighter Critical Infrastructure Security

The new White House plan outlines proposed minimum security requirements in critical infrastructure — and for shifting liability for software products to vendors.

BlackLotus Bookit Found Targeting Windows 11

Sold for around $5,000 in hacking forums, the BlackLotus UEFI bootkit is capable of targeting even updated systems, researchers find.