Civil actions brought by the SolarWinds Corp and its CISO Timothy Brown have been dismissed with prejudice by the Manhattan federal court handling the case, the end result of a settlement negotiation process that began in July of this year.
Conduent Business Solutions experienced a data breach that exposed the personal and health information of over 10.5 million people, resulting in numerous lawsuits.
Simply confirming that phone numbers are linked to WhatsApp accounts can be a security risk. Confirming that a number is registered and active makes it more valuable and more of a priority to spammers, scammers and hackers. The security flaw can also expose someone using the app in a country where it is banned.
Microsoft says its Azure cloud platform was hit by the largest of its kind DDoS attack from a Turbo Mirai-class IoT botnet, Aisuru, harnessing over 500,000 residential IPs.
Google says that Chinese SMS phishing campaigns have collectively yielded somewhere between 15 million and 100 million stolen credit cards in the US alone. The case names 25 individuals and believes the hackers produced over 100 different fraudulent websites that made use of Google branding.
DoorDash has confirmed a data breach that exposed customer, Dasher, and merchant information after an employee fell victim to a compelling social engineering scam.
With the first new release since 2021, the one thing that hasn't changed about the OWASP Top 10 is that "broken access control" is still the lead category after all this time, present as a security risk in 3.73% of the apps that were tested.
Logitech confirms a third-party data breach after Cl0p ransomware, which is infamous for exploiting Oracle’s E-Business Suite zero-day vulnerabilities, claims responsibility.
Anthropic's calls the incident the "first reported AI-orchestrated cyber espionage campaign" and has attributed it with high confidence to a Chinese state-sponsored group it calls GTG-1002. The campaign took place in mid-September and the integration of AI agents for performance of autonomous tasks is described as unprecedented.
While the proposed EU privacy law changes seem almost entirely like concessions to big tech desires at first glance, the European Commission is selling them as removement of onerous restrictions on smaller businesses. Critics such as noyb are calling this a "side-show" meant to pass changes that are instead really tailored to the tech industry.










