A multinational cybersecurity advisory warned that cyber attacks on managed service providers (MSPs) could enable supply chain attacks, ransomware, and cyber espionage downstream.
Germany has opened an antitrust probe into Apple’s App Tracking Transparency framework. This follows a probe initiated by Poland in late 2021, and the expression of concerns along similar lines by both France and the UK.
Though Microsoft is hardly alone in terms of cloud services experiencing serious security breaches, a string of Redmond mishaps appears to have prompted new security reviews by the Cyber Safety Review Board (CSRB).
Known for their cyber crime product which infected over 41,000 victims in financial institutions, GozNym is going out of business with their key figures across Eastern Europe charged by U.S. federal court.
Tighter cybersecurity regulations that have already come for certain critical infrastructure industries are now being applied to rail and aviation, as the Biden administration continues a general program of hardening the country's cyber defenses.
Hackers exploited a zero-day vulnerability in antivirus software that caused a data breach at Mitsubishi Electric, exposing technical and sales materials, and personal data of over 8,000 employees.
CISA published an insight document for critical infrastructure organizations to prepare for the transition to new post-quantum cryptography standards that NIST will announce soon.
Google Threat Intelligence Group has tracked threat actor UNC6395 stealing OAuth tokens via Salesloft Drift integrations in a massive Salesforce data theft campaign.
When the first reports of the Colonial fuel pipeline attack appeared, it was natural to assume the worst but an investigation by the FBI has fingered a ransomware-as-a-service operator rather than a known state-backed group.
A credential stuffing attack on biotechnology firm 23andMe has resulted in a data theft incident exposing millions of genetic profiles and personal data records.









