New cyber security directive from DHS has cut mandatory time for U.S. federal government agencies to patch vulnerabilities considered critical from 30 to 15 days, failure to do so may result in administrative penalties.
Japanese car-sharing service Times Car experienced a data breach affecting 6.6 million people, as a ransomware attack hits the country’s subway operator Keio Corporation.
Software security flaws are present in three-quarters of applications, and teams are taking over six months to fix half of them.
A ransomware gang that recently hit major UK retailers such as Marks & Spencer with cyber attacks is now setting its sights on US companies, according to a warning from Google's security team.
An international law enforcement effort that involved multiple agencies from the United States and Europe has taken out a significant chunk of the dark web, putting 179 vendors out of business.
UK water supplier, South Staffordshire PLC, suffered a Clop ransomware attack during one of the country’s worst droughts, with the gang mistakenly identifying another water utility as the victim.
Google's new Cybersecurity Action Team warned that cybercriminals compromised unsecured or misconfigured Google Cloud instances to perform cryptocurrency mining.
Microsoft 365 Defender researcher team discovered a privilege escalation vulnerability dubbed Nimbuspwn allowing an attacker to gain root privileges and deploy malicious payloads.
Ukrainian hackers suspected of hijacking 100 million Instagram accounts for sale were arrested and charged with disrupting information systems, which carries 15 years in prison.
A new password leak, the largest to date, contains over 8.4 billion credentials among which may have been the account used to get into Colonial Pipeline's network.










