The Open Worldwide Application Security Project (OWASP) suffered a data breach stemming from a server misconfiguration that leaked members' personal information.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
With the first new release since 2021, the one thing that hasn't changed about the OWASP Top 10 is that "broken access control" is still the lead category after all this time, present as a security risk in 3.73% of the apps that were tested.
A third-party data breach affecting Oxford University’s CareerConnect job portal has exposed personal information belonging to students, alumni, researchers, and employers.
An in-depth study from the University of Oxford has examined 24,000 Apple App Store and Google Play apps, and found that Apple's "walled garden" approach has not necessarily made a difference in terms of app privacy.
Panasonic's Canadian operation suffered a targeted cyber attack with the Conti Ransomware gang taking responsibility and claiming to have stolen 2.8 GB of corporate documents.
Study shows that mobile application security is not a given, as thousands of the most popular apps within the boundaries of the official app stores contain common vulnerabilities.
Pandemic response to coronavirus has forced many Americans to work from home and exposed a digital divide in which online resources are the luxury of people in terms of their income and wealth.
Off-airport parking operator Park ‘N Fly has experienced a data breach that impacted a million customers after a threat actor compromised the company’s virtual private network.
GitHub has shared a DMCA filing from Twitter that indicates source code leak was apparently posted on the site shortly after Elon Musk's introductory round of layoffs began.
Passkey authentication replaces traditional passwords with a pair of cryptographic keys—public and private.









