Security vulnerabilities stories
AI platforms and software supply chains face rising cyber risks, urging firms to boost security and governance amid new vulnerabilities in generative AI systems.
Barracuda warns of a surge in advanced OAuth phishing attacks exploiting Microsoft 365 and other platforms to steal access tokens and bypass multifactor authentication.
FIRST launches new forums and special interest groups to boost global cybersecurity collaboration and host a 2025 Vulnerability Forecasting event in Cambridge.
Despite 93% confidence in defences, 62% of organisations faced mobile app breaches last year, prompting a shift towards proactive security in development.
Healthcare sector excels in preventing serious security flaws but takes nearly two months to fix them, risking sensitive data exposure amid rising cyber threats.
Cyberattacks on the financial sector have surged 25% in 2024, with phishing leading and nearly half of employees prone to clicking malicious links.
Quantum computing presents urgent security risks for organisations relying on Microsoft Active Directory, as legacy systems struggle to meet new cryptographic demands.
Over 6,500 Axis Communications camera servers worldwide face security risks from four critical flaws, risking hijacked or disabled live surveillance feeds.
Palo Alto Networks launches Cortex Cloud ASPM, a prevention-first tool to block security risks in cloud and AI apps before deployment, enhancing threat management.
Palo Alto Networks has enhanced Cortex Cloud with a new module to prevent AI-generated code risks, boosting security for faster, safer software development.
BeyondTrust launches Phantom Labs, a specialised team to research identity security threats and enhance protection against identity exploitation in hybrid and cloud environments.
Amsterdam-based cybersecurity startup Dawnguard secures USD $3 million to embed security into system design, aiming to prevent risks from the development phase onwards.
Panaseer has launched Key Drivers, an AI tool delivering real-time cybersecurity risk analysis to help organisations swiftly spot and address vulnerabilities.
Trend Micro warns that rapid AI deployment is exposing critical cybersecurity risks, with thousands of servers vulnerable to attacks due to unpatched and unsecured components.
Azul has launched a Managed Services Provider Programme to help partners offer Java asset management, security and code insights via its Intelligence Cloud platform.
Nearly 8% of UK and US employees use Chinese generative AI tools at work, raising concerns over frequent exposure of sensitive corporate data, a study finds.
Nearly half of UK firms faced data breaches last year due to unmanaged devices, revealing major security gaps amid growing hybrid work and shadow IT use.
Identities have become the prime target in cybersecurity, with businesses urged to secure digital access through ownership, least privilege, MFA, and secret management.
Security flaws in Google's Gemini AI exposed millions to unseen data breaches by enabling attackers to manipulate logs, search history and browsing tools.
eZaango Group has secured ISO 27001:2022 certification, reinforcing its commitment to robust information security and leadership against cyber threats.