UK government
UK.gov's “ostrich” approach to cybersecurity leaves country “exposed and unprepared”
Departments need to go away and rethink how to protect country from ransomware
UK government
Departments need to go away and rethink how to protect country from ransomware
Microsoft
A raid by Russian hackers penetrated deeper than first thought: "Some of these secrets were shared between customers and Microsoft..."
Rust
New White House report cites a 2019 Microsoft paper. But analysis this month showed that memory corruption accounted for just 19.5% of “known exploited” vulnerabilities in 2023
NIST
Some CIOs and CISOs use customised versions of NIST's CSF as a tool to communicate cybersecurity progress to the board.
Russia
Service accounts, MFA bombing and residential proxies are being widely deployed by APT29.
cybersecurity
"ICBC’s inability to access its systems caused securities to be delivered for settlement with no funds backing the trades"
vulnerabilities
"There might be active exploitation attempts across common AWS IP space"
Ivanti
“Security” product shipped with a 13-year-old, unsupported base OS and software libraries with 973 vulnerabilities; 111 of which have publicly known exploits available.
AnyDesk
"We can confirm that the situation is under control" is not the world's greatest incident response report we've seen.
News
Sysdig research shows companies still not getting it right when shifting left
SolarWinds
Software firm calls for dismissal of SEC action
CFTC
Just how do you make trading places more secure