Threat actors compromised American automaker General Motors in a credential stuffing attack, accessed customers' personal information, and redeemed reward points for gift cards.
An attempted ransomware attack on SpiceJet systems disrupted flight operations leaving passengers frustrated and stranded for hours with flights canceled in some locations.
Conti Ransomware Group Voluntarily Shuttered, but Members Expected to Splinter off To Smaller Groups
Security researcher claims that the Conti ransomware attack on Costa Rica was an intentional smokescreen to cover a reorganization into smaller ransomware groups.
DuckDuckGo sells itself on its lack of user tracking. However, some new security research reveals that policy does not apply equally to Microsoft trackers.
Twitter has in recent years has begun periodically requiring phone number checks for "account security." What users have not always been aware of is that these items have been added in to Twitter's internal personalized advertising system.
In the case of the Cambridge Analytica scandal, the lawsuit asserts that Zuckerberg personally oversaw the engineering work that ultimately led to the exposure of Facebook user data.
Shadow code may pose a serious supply chain risk. Sampling 4,300 websites and applications ranked by traffic, researchers discovered that each website had an average of 12 third-party scripts and three fourth-party scripts.
Verizon’s DBIR finds that 82% of data breaches logged in 2021 involved a "human element" such as falling for phishing, re-use of stolen credentials, insider malfeasance or simply causing a configuration error.
Research found that email was the riskiest channel for accidental data loss, accounting for 65% of data losses, ahead of cloud sharing and instant messaging platforms.
NSA director of cybersecurity says ransom payments are more difficult to process due to lack of access to assorted banking options, and inability to purchase necessary technology to set up the infrastructure for new ransomware campaigns.









