Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Time Constraints Hamper Security Awareness Programs

Even as more attacks target humans, lack of dedicated staff, relevant skills, and time are making it harder to develop a security-aware and engaged workforce, SANS says.

DARKReading
#git#auth
Criminals Use Deepfake Videos to Interview for Remote Work

The latest evolution in social engineering could put fraudsters in a position to commit insider threats.

DragonForce Malaysia Releases LPE Exploit, Threatens Ransomware

The hacktivist group is ramping up its activities and ready to assault governments and businesses with escalating capabilities.

RSA 2022: Omdia Research Take Aways

The RSA conference in San Francisco always feels like drinking from a fire hose but especially this year at the first in-person RSA since the pandemic began.

When It Comes to SBOMs, Do You Know the Ingredients in Your Ingredients?

Transitive dependencies can complicate the process of developing software bills of materials.

Microsoft Going Big on Identity with the Launch of Entra

With more staff working remotely, identity, authentication, and access (IAA) has never been more important. Microsoft has a new response.

Google: Hack-for-Hire Groups Present a Potent Threat

Cyber mercenaries in countries like India, Russia, and the UAE are carrying out data theft and hacking missions for a wide range of clients across regions, a couple of new reports said.

18 Zero-Days Exploited So Far in 2022

It didn't have to be this way: So far 2022's tranche of zero-days shows too many variants of previously patched security bugs, according Google Project Zero.

API Security Losses Total Billions, But It's Complicated

A recent analysis of breaches involving application programming interfaces (APIs) arrives at some eye-popping damage figures, but which companies are most affected, and in what ways?

Exchange Servers Backdoored Globally by SessionManager

Malicious ISS module exploitation is the latest trend among threat actors targeting Exchange servers, analysts say.