The Chinese hackers are able to run a massive but stealthy campaign of password-spraying attacks while evading logs, targeting Microsoft 365 accounts that require only basic authentication and do not have MFA enabled.
Ride hailing giant Didi's exile into the wilderness appears to be ending, and the Chinese government's harsh wave of regulatory crackdowns has taken sharper focus, as the investigation has concluded and a fine of $1.2 billion has been announced.
The central objection raised is a predictable one, and one that some analysts believe will inevitably cause the EU-US data transfer proposal to fail yet another court challenge if it makes it to implementation: the lack of a federal-level data privacy law in the US.
Onapsis and SAP say that cybercriminals are actively exploiting known SAP security vulnerabilities in the wild, sometimes with a cyber attack within 72 hours after patches are released.
While cybercrime gangs like Maze and DoppelPaymer has promised to stop, Ryuk ransomware continues to target hospitals and medical organizations despite the ongoing coronavirus pandemic.
U.S. Department of Defense requires all defense contractors to complete a cybersecurity certification before submitting proposals by 2026, starting with higher-level contractors this June.
The FTC’s new COPPA amendments would bolster children's privacy by further restricting how companies can collect, use and monetize the data of underage users, shifting a greater deal of responsibility for privacy online to service providers.
New Zero-Day RCE Vulnerability in Spring Java Framework; Could “Spring4Shell” Be the Next Log4Shell?
A new zero-day remote code execution (RCE) vulnerability in the Spring Java Framework is drawing comparisons to Log4Shell. It can be exploited by simply sending a crafted HTTP request to a target system.
This is the third time the FBI is warning of the persistent Kwampirs malware conducting supply chain attack now targeting the healthcare sector and with increased intensity during the ongoing COVID-19 crisis.
A Canvas hack has leaked nearly 280 million records from faculty, staff, and students across 8,809 colleges, online learning platforms, and school districts.










