A data breach at global logistics company Ceva has exposed the personal information of its partners’ customers and disrupted operations at various warehouses, resulting in delays.
Requirements by insurers to implement security controls are already on the rise as 80% of cyber insurance policyholders have filed a claim and 50% have filed more than one.
A critical vulnerability discovered by AI spans most of the history of NGINX, which was first made available in 2004. The web server is frequently used as a load balancer and cache for static content, and some recent estimates find that about 20 to 30% of the world's busiest websites make use of it.
Colorado Energy Company, Delta-Montrose Electric Association (DMEA), suffered a malicious cyber attack that shut down 90% of its internal controls and wiped 25 years of historical data.
Panda Express, the largest Chinese fast food chain in the US, leaked sensitive personal data during the March 2024 cyber attack that affected the parent company’s corporate systems.
BlackCat ransomware group has claimed responsibility for the Reddit hack and threatened to leak 80GB of information stolen during the Feb 2023 data breach and claims to have obtained damaging information capable of destroying the company’s reputation.
Study of password managers finds security vulnerabilities in the way master passwords are stored. While password managers are still widely considered to be a best security practice, it's important to keep in mind that no system is perfect or without vulnerabilities.
The NSA urged developers and organizations to switch to memory-safe languages to address memory safety issues responsible for most exploitable vulnerabilities. Microsoft and Google attribute 70% of some of their product vulnerabilities to software memory safety issues.
Recently released IAPP-EY Annual Privacy Governance Report 2017 shows that privacy governance is outpacing data breach reporting as a board-level concern.
A consumer protection group has filed complaints against the social media giant: failure to protect children, unfair terms of video use and data collection misrepresentations among others.










