Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

WEF's Global Risks Report 2023 Keeps Cybersecurity on the Agenda

Critical national infrastructure, widespread cybercrime, and cyber insecurity are major risks in the report

DARKReading
#web
Researchers Find 'Digital Crime Haven' While Investigating Magecart Activity

A security vendor's investigation of infrastructure associated with a new, crypto-focused Magecart skimmer leads to discovery of cryptoscam sites, malware distribution marketplace, Bitcoin mixers, and more.

$20K Buys Insider Access to Telegram Servers, Dark Web Ad Claims

In the ad, cybercriminals are offering to sell employee-level access to Telegram, researchers warn.

Software Supply Chain Security Needs a Bigger Picture

SBOMs aren't enough. OpenSSF's Alpha-Omega brings in new blood to help secure the open source projects most impactful to the software supply chain.

SailPoint Acquires SecZetta to Provide Identity Security for Non-Employee Identities

This move accelerates the company’s vision of becoming the de facto identity security platform of choice for the modern enterprise.

Critical Cisco SMB Router Flaw Allows Authentication Bypass, PoC Available

Unpatched Cisco bugs, tracked as CVE-2023-20025 and CVE-2023-20026, allow lateral movement, data theft, and malware infestations.

Securing the World's Energy Systems: Where Physical Security and Cybersecurity Must Meet

Energy has become the new battleground for both physical and cyber security warfare, driven by nation-state actors, increasing financial rewards for ransomware gangs and decentralized devices. Chris Price reports.

Big Prizes, Cash on Offer for Joining 'DDosia' Anti-Ukraine Cyberattack Project

Russia's NoName057(16) group offers incentives and prizes via Telegram channel for "heroes" to mount attacks against targets within Ukraine and pro-Ukrainian countries.