Security News > 2020 > June

IBM has announced a definitive agreement to acquire cloud cybersecurity posture management solutions provider Spanugo. Spanugo's technology allows organizations to demonstrate compliance in real time, while also helping them continuously improve their cloud security to ensure that attacks can be repelled.

ABBYY launched NeoML, an open source library for building, training, and deploying machine learning models. Available now on GitHub, NeoML supports both deep learning and traditional machine learning algorithms.

Germany launched a coronavirus tracing app Tuesday that officials say is so secure even government ministers can use it. Smartphone apps have been touted as a high-tech tool in the effort to track down potential COVID-19 infections.

Wireless carrier T-Mobile on Monday suffered a major outage in the United States that impacted service at other carriers as well, and it ended up being reported as a "Massive" distributed denial of service attack. Other carriers were also affected by the incident, but reportedly blamed the experienced technical issues on the outage impacting T-Mobile's network.

Hundreds of thousands of sensitive dating app profiles - including images of "a graphic, sexual nature" - were exposed online for anyone stumbling across them to download. Word of the uncontrolled emission burst forth from vpnMentor this week, which claims it found a misconfigured AWS S3 bucket containing 845GB of private dating app records. "Aside from exposing potentially millions of users of the apps to danger, the breach also exposed the various apps' entire AWS infrastructure through unsecured admin credentials and passwords," vpnMentor's researchers wrote.

Mimecast has been securing remote workers since long before the COVID-19 bio-nasty hit, so Mimecast's Thom Bailey will instruct our Tim Phillips on how to protect oneself in the new normal. How hackers have weaponized the coronavirus pandemic.

If your business operations and security of sensitive data rely on Oracle's E-Business Suite, make sure you recently updated and are running the latest available version of the software. It's worth noting that the BigDebIT attack vectors add to the already reported PAYDAY vulnerabilities in EBS discovered by Onapsis three years ago, following which Oracle released a series of patches as late as April 2019.Targeting General Ledger for Financial Fraud Tracked as CVE-2020-2586 and CVE-2020-2587, the new flaws reside in its Oracle Human Resources Management System in a component called Hierarchy Diagrammer that enables users to create organization and position hierarchies associated with an enterprise.

One of the long-standing barriers to collaboration is that security teams have had zero visibility into OT networks and no telemetry. Solutions that are purpose-built for OT visibility and continuous threat monitoring and that you can quickly implement, enable IT and OT teams to look at OT environments together, work from the same set of information, and take specific steps to build resiliency and reach new levels of productivity.

This has led to a resurgence of interest, advances, and commercialization in the area of privacy enhancing technologies, or PETs, a powerful category of technologies that enable, enhance, and preserve data privacy throughout its lifecycle. By adopting a data-centric approach to privacy and security, these technologies help ensure that sensitive data remains protected during processing.

Various factors such as growing e-commerce industry, increasing number of IoT devices, emergence of disruptive digital technologies across the industry verticals, and increasing demand for endpoint security are expected to boost the demand for endpoint security solutions and services across the globe. In order to protect endpoint devices and information from security breaches and cyber -attacks, the implementation of endpoint security solutions is increasing across various business verticals, which is ultimately driving the growth of endpoint security.