Alibaba's web scraping data leak exposed over 1 billion user records leading to the imprisonment of the implicated software developer and his employer for three years.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Blood donation service OneBlood has confirmed that the July 2024 ransomware attack claimed by the Russian RansomHub cybercrime group resulted in personal data breach.
As organizations realize that there is no such of a thing as being “fully protected” from a cyberattack, what are the tactices and steps to improve and get an edge in the cyber security arms race?
Cloudflare reports attackers using the HTTP/2 protocol zero-day vulnerability to conduct over 1,100 DDoS attacks at over 10 million requests per second since August, and 184 broke the previous record of 71 million requests. At its peak, 200 million requests per second was observed.
There's a common misconception that the AI label automatically makes a cybersecurity solution better when that's far from the truth. Organizations don't need AI or ML tools to improve cybersecurity.
Recent survey on 200 banks worldwide found 4 in 5 of them had experienced at least one SWIFT fraud attempt since 2016, and the problem appears to be growing.
A data breach at the image-sharing platform Gyazo has leaked 23.6 million user records and 490 million image metadata records after hackers exploited a vulnerability in an upload server.
A ransomware attack has struck the New York Blood Center, disrupting collection and distribution across 200 hospitals across the Northeast, amid ongoing shortages.
The primary concern with Twitter’s zero-day security breach is that authoritarian governments might tie names to the anonymous accounts of activists, political opposition and journalists they are targeting.
The EU Cyber Resilience Act represents the most significant shift in product security requirements in a generation. Starting September 11, 2026, manufacturers must report actively exploited vulnerabilities to EU authorities within 24 hours of becoming aware of them.










