In a Fox News interview with Tucker Carlson, Elon Musk revealed that all unencrypted Twitter data was regularly subject to government surveillance under the previous ownership.
A water treatment facility in the City of Arkansas, Kansas, has suffered a suspected ransomware cyber attack, highlighting the persistent threat facing U.S. water systems.
Taiwanese networking giant D-Link has confirmed a data breach after an employee fell victim to a phishing attack. The company said the stolen information originated from a product registration system that reached its end of life in 2015.
The FBI, CISA, and MS-ISAC have issued a joint cybersecurity advisory on the Medusa ransomware attacks impacting over 300 critical infrastructure organizations.
A new vulnerability chain discovered by Oasis Security can compromise the Claude AI chatbot and does not require the target to have the app installed or even have an account with the service. The attack chain instead begins with a malicious webpage doctored up to place highly in search results for Claude, which passes the user to a pre-filled chat URL that exploits other vulnerabilities in the AI agent.
A little-known law from 1984, originally intended to discourage large cash transfers, has been repurposed as a crypto regulation and tucked into the massive US infrastructure bill.
The FTC placed collection bans on Mobilewalla Inc. and Gravy Analytics, both US-based data brokers that process huge amounts of information. Mobilewalla has tracking profiles on over 1.6 billion devices across more than 35 countries.
2020 saw a spike in healthcare data breaches. A new report from cybersecurity firm Tenable finds that this spike can be overwhelmingly attributed to ransomware attacks.
Both suspected state-backed foreign adversaries and more run-of-the-mill cyber criminals appear to mostly still be focused on using AI tools to make their existing operations faster, more efficient and more error-free. OpenAI's ChatGPT and other models appear to have fairly strong guardrails that are highly resistant to creation of malware or automation of attack operations.
In a hybrid identity environment, Active Directory professionals need a good understanding of Azure Active Directory (AAD) roles, applications, and multifactor authentication (MFA) to effectively secure the environment.










