Security News > 2024 > September

Business services giant CBIZ discloses customer data breach
2024-09-02 15:34

CBIZ Benefits & Insurance Services (CBIZ) has disclosed a data breach that involves unauthorized access of client information stored in specific databases. [...]

RansomHub Ransomware Group Targets 210 Victims Across Critical Sectors
2024-09-02 13:33

Threat actors linked to the RansomHub ransomware group encrypted and exfiltrated data from at least 210 victims since its inception in February 2024, the U.S. government said. The victims span...

Passkey Adoption Is Accelerating in APAC — Except for Australia
2024-09-02 12:00

Australian banks and government agencies are not rushing to adopt passkey authentication methods, despite the added security benefits.

SQL Injection Attack on Airport Security
2024-09-02 11:07

Interesting vulnerability: …a special lane at airport security called Known Crewmember (KCM). KCM is a TSA program that allows pilots and flight attendants to bypass security screening, even when...

The 6 Best Small Business VPNs for 2024
2024-09-02 10:00

Looking for the best VPN services for SMBs? Here's a comprehensive guide covering the top options for secure remote access and data protection on a budget.

Complying with PCI DSS requirements by 2025
2024-09-02 09:20

Version 4.0.1 of the Payment Card Industry Data Security Standard (PCI DSS), which came into effect back in April, incorporates a few important changes to make it fit for the modern digital world,...

Webinar: Learn to Boost Cybersecurity with AI-Powered Vulnerability Management
2024-09-02 08:55

The world of cybersecurity is in a constant state of flux. New vulnerabilities emerge daily, and attackers are becoming more sophisticated. In this high-stakes game, security leaders need every...

Next-Generation Attacks, Same Targets - How to Protect Your Users' Identities
2024-09-02 07:00

The FBI and CISA Issue Joint Advisory on New Threats and How to Stop Ransomware Note: on August 29, the FBI and CISA issued a joint advisory as part of their ongoing #StopRansomware effort to help...

Damn Vulnerable UEFI: Simulate real-world firmware attacks
2024-09-02 04:30

Damn Vulnerable UEFI (DVUEFI) is an open-source exploitation toolkit and learning platform for unveiling and fixing UEFI firmware vulnerabilities. Simulate real-world firmware attacks DVUEFI was...

Ransomware crisis deepens as attacks and payouts rise
2024-09-02 04:00

During the second quarter, new ransomware groups, including PLAY, Medusa, RansomHub, INC Ransom, BlackSuit, and some additional lesser-known factions, led a series of attacks that eclipsed the...