GRIMM researchers discovered three 15-year-old bugs allowing local privilege escalation, while ZDI found another Linux vulnerability could allow remote code execution without authentication.
There are two pieces of legislation already in front of Congress that would set reporting requirements for ransomware payments, each proposing different time windows for different industries and company sizes. A third now seeks a 48-hour limit.
Prescription management provider Sav-Rx is notifying 2.8 million individuals of a data breach impacting their personal information after an unauthorized party accessed certain non-clinical systems.
Iranian hackers impersonated Munich Security Conference and Think 20 Summit organizers to target high ranking diplomats and government officials for intelligence collection.
Opet notes that the SaaS model is usually the default option for whatever software a company might need, and often is the only option available. That means a global concentration of risk such that numerous third-party security breaches could cascade.”
Many have turned to VPN services to protect their privacy. However, the 2018 high-profile hack which NordVPN only acknowledged recently has raised questions on just how safe they really are.
Clop ransomware gang breached 130 organizations via Fortra GoAnywhere managed file transfer tool and stole 1 million CHS Healthcare patients' records.
With tens of thousands of contractors serving the Defense Department, the new vendor cyber security certificate aims to improve supply chain security by assessing contractors before allowing them to bid.
Uber cybersecurity incident was the result of social engineering by teenage hacker. Network breach was a total compromise and that the attacker had full access to Uber's systems.
Ransomware attack’s main impact to derivative trading thus far has been long delays in processing for financial firms in Europe and the United States, but operations for other ION clients have also been strongly impacted.










