U.S. Cyberspace Solarium Commission has published a 182-page report that includes broad changes to cyber security policy and 75 recommendations on cyber deterrence.
CISA has released a roadmap establishing four overarching broad goals, with five more specific lines of effort that appear to indicate concrete immediate priorities. Defensive AI cybersecurity measures and plans for critical infrastructure adoption are repeating themes.
California State Comptroller’s office leaked details of 9,000 people after a Microsoft 365 email account of an Unclaimed Property Division employee was hacked in a phishing attack.
A10 Networks found an increase in DDoS attacks during the COVID-19 pandemic as attackers exploited new DDoS tools, 5G networks, and the increasing number of connected devices.
TikTok continues to remain entangled in children's privacy issues, as an ongoing investigation by the FTC has now been referred to the DOJ for potential violation of the Children’s Online Privacy Protection Act (COPPA).
Reddit hack shows that the industry standard two-factor authentication approach in certain cases might not offer as much protection of vulnerable data as has long been thought.
Verkada, a major provider of surveillance cameras throughout the United States, suffered a data breach that exposed the contents of over 150,000 of its live camera feeds.
A compromise of the popular GitHub Actions tool turned into a massive supply chain attack, at this point thought to be responsible for the follow-on exposure of over 23,000 GitHub repositories.
A leak on a hacking forum that exposed internal AMD data appears to have been confirmed by the company, as it acknowledged that an unnamed third-party vendor involved in product assembly was breached. Questions remain about the extent of the data breach, however.
A security breach has affected all users of the eSignature platform Dropbox Sign (formerly HelloSign), including those who received or signed a document without an account.










