The British Broadcasting Corporation (BBC) has notified the UK's Information Commissioner's Office (ICO) and the Pensions Regulator of an employee data breach affecting 25,000 BBC Pension Scheme members.
Security researchers at Wiz Research have discovered a critical vulnerability in the Redis in-memory database that could allow an attacker to gain remote code execution (RCE) capabilities and take over the host.
While Presidents Putin and Biden still appear to be far apart on the issue of cyber attacks originating from the former's country, the two at least appear to be negotiating. Biden presented Putin with a list of critical infrastructure targets that could trigger serious retaliation.
A recent audit of websites by the well-known Online Trust Alliance has revealed something that many consumers have long suspected. Financial institutions are the least trusted when it comes to cybersecurity. Although the results are no doubt coloured by the inherent fear that many consumers have when it comes to the security of their money, it should still be a worry for banks which have long struggled with issues around online trust.
A security flaw enabled hackers to take over Instagram accounts by tricking Meta AI support chatbot into adding an attacker-controlled email address and triggering a password reset.
The United States Department of Justice (DOJ) has indicted three Iranian hackers for a campaign of attacks dating back to 2020, including critical infrastructure companies and government agencies.
Critical infrastructure companies may soon be subject to tighter cyber incident reporting requirements, as new cybersecurity legislation has passed the Senate and will now go before the House.
INTERPOL’s Global Rapid Intervention of Payments system recovered an exceptionally large sum of over $40 million, stolen in a single BEC attack, in record time.
NSA director of cybersecurity says ransom payments are more difficult to process due to lack of access to assorted banking options, and inability to purchase necessary technology to set up the infrastructure for new ransomware campaigns.
A new paper from global law multinational DLA Piper lays out the case for a risk-based approach to GDPR international data transfers, arguing that the status quo is too onerous and that data exporters are suffering.










