Security News > 2024 > March

Licensing AI Engineers
2024-03-25 11:04

Stephen March 25, 2024 8:02 AM. Physician and attorney self governance are both organized at the state level. There are advantages to operation at this scale - chiefly that smaller communities will tend to know their members better.

#AI
APT29 hit German political parties with bogus invites and malware
2024-03-25 09:41

APT29 has been spotted targeting German political parties for the first time, Mandiant researchers have shared. The attack started in late February 2024, with phishing emails containing bogus invitations to a dinner reception, ostensibly sent by the Christian Democratic Union, a major political party in Germany.

Time to examine the anatomy of the British Library ransomware nightmare
2024-03-25 09:30

Opinion Quiz time: name one thing you know about the Library of Alexandria. The Rhysida ransomware attack on the British Library last October didn't have the visceral physical aspect that creates a folk memory, but it should for anyone who makes enterprise IT. Five months on, not only are significant systems not restored, they've gone forever.

New "GoFetch" Vulnerability in Apple M-Series Chips Leaks Secret Encryption Keys
2024-03-25 09:02

A new security shortcoming discovered in Apple M-series chips could be exploited to extract secret keys used during cryptographic operations. Dubbed GoFetch, the vulnerability relates to a...

Iran-Linked MuddyWater Deploys Atera for Surveillance in Phishing Attacks
2024-03-25 07:37

The Iran-affiliated threat actor tracked as MuddyWater (aka Mango Sandstorm or TA450) has been linked to a new phishing campaign in March 2024 that aims to deliver a legitimate Remote Monitoring...

That Asian meal you eat on holidays could launder money for North Korea
2024-03-25 06:32

If you dine out at an Asian restaurant on your next holiday, the United Nations thinks your meal could help North Korea to launder money. We mention the restaurants because the UN reckons they collectively help the DPRK to launder $700 million a year.

20 essential open-source cybersecurity tools that save you time
2024-03-25 06:00

When I started digging deeper into the open-source cybersecurity ecosystem, I discovered an engaged community of developers working to find practical solutions to many problems, one of them being saving time. Here are 20 essential open-source cybersecurity tools that are freely available and waiting for you to include them in your arsenal.

8 cybersecurity predictions shaping the future of cyber defense
2024-03-25 05:30

Among Gartner's top predictions are the collapse of the cybersecurity skills gap and the reduction of employee-driven cybersecurity incidents through the adoption of generative AI. Two-thirds of global 100 organizations are expected to extend directors' and officers' insurance to cybersecurity leaders due to personal legal exposure. "As we start moving beyond what's possible with GenAI, solid opportunities are emerging to help solve a number of perennial issues plaguing cybersecurity, particularly the skills shortage and unsecure human behavior. The scope of the top predictions this year is clearly not on technology, as the human element continues to gain far more attention. Any CISO looking to build an effective and sustainable cybersecurity program must make this a priority," said Deepti Gopal, Director Analyst at Gartner.

How immersive AI transforms skill development
2024-03-25 05:00

Organizations are becoming more laser-focused on extracting the value of AI, moving from the experimentation phase toward adoption. While the potential for AI is limitless, AI expertise sadly is not.

Scams are becoming more convincing and costly
2024-03-25 04:30

Scams directly targeting consumers continue to increase in both complexity and volume, according to Visa. While the number of individual scam reports from June to December decreased, the total money lost increased, indicating scammers are targeting victims with more effective - and costly - scams.