By Kevin Townsend

Rapid7 warns that traditional patch cycles cannot keep pace with soaring vulnerability disclosures and faster exploitation, forcing defenders to prioritize exposure over severity scores.

The post AI-Driven Vulnerability Surge Breaks the Traditional Patching Model appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page

By algerj@bnpmedia.com (Jordyn Alger)

The Medusa Ransomware gang has breached more than 500 organizations since June 2021.

…read more

Source:: Security magazin


Print pagePDF pageEmail page

By Sravish Sridhar

The skills that get a CISO hired are rarely the skills they are judged on later. Most security leaders are stuck in that gap. Closing it is the real job.

The post Hired for One Job, Judged on Another: The CISO’s Real Problem appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page

By algerj@bnpmedia.com (Jordyn Alger)

Meta will be making adjustments to its platforms following an $18 billion settlement.

…read more

Source:: Security magazin


Print pagePDF pageEmail page

By Eduard Kovacs

The Bureau of Alcohol, Tobacco, Firearms and Explosives has described it as a ‘major incident’ and it’s conducting an investigation with the DOJ.

The post ATF Confirms Cyber Incident After Ransomware Group Claims Attack appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page

By Eduard Kovacs

The private equity firm appears to have been targeted as part of a campaign focusing on major financial companies.

The post Personal Information Exposed in Apollo Global Data Breach appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page

By Ionut Arghire

The flaws could lead to remote code execution, authentication bypasses, and path traversal attacks.

The post Cisco Patches Critical Crosswork, Secure Workload Vulnerabilities appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page

By Eduard Kovacs

Australian and US authorities collaborated to identify and charge the alleged cybercriminals, who face many years in prison.

The post Australia Arrests 2 Alleged TeamPCP Hackers appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page

More than 50 gigabytes of documents were reportedly stolen.

…read more

Source:: Security magazin


Print pagePDF pageEmail page

By Ionut Arghire

The flaws could be exploited to execute arbitrary code, access sensitive information, and elevate privileges.

The post Atlassian, Splunk Patch Dozens of Critical, High-Severity Vulnerabilities appeared first on SecurityWeek.

…read more

Source:: securityweek


Print pagePDF pageEmail page