Security News > 2024 > October

Chinese attackers accessed Canadian government networks – for five years
2024-10-31 05:34

India makes it onto list of likely threats for the first time A report by Canada's Communications Security Establishment (CSE) revealed that state-backed actors have collected valuable information...

IoT needs more respect for its consumers, creations, and itself
2024-10-31 05:30

Yet again, connected devices are in the news for all the wrong reasons. In October, security researchers found that robot vacuums from Chinese company, Ecovacs, can be compromised via a backdoor....

How agentic AI handles the speed and volume of modern threats
2024-10-31 05:00

In this Help Net Security interview, Lior Div, CEO at Seven AI, discusses the concept of agentic AI and its application in cybersecurity. He explains how it differs from traditional automated...

Why cyber tools fail SOC teams
2024-10-31 04:30

A recent Vectra AI report highlights a growing distrust of threat detection tools. 47% of respondents note they do not trust their tools to work the way they need them to. Moreover, 60% of SOC...

99% of CISOs work extra hours every week
2024-10-31 04:00

The most common challenge for CISOs is resource constraints: not enough staff, budget or technology to support the security program needed or meet compliance requirements, according to...

Interbank confirms data breach following failed extortion, data leak
2024-10-30 22:22

​Interbank, one of Peru's leading financial institutions, has confirmed a data breach after a threat actor who hacked into its systems leaked stolen data online. [...]

Windows Themes zero-day bug exposes users to NTLM credential theft
2024-10-30 21:30

Plus a free micropatch until Redmond fixes the flaw There's a Windows Themes spoofing zero-day bug on the loose that allows attackers to steal people's NTLM credentials.…

Microsoft Entra "security defaults" to make MFA setup mandatory
2024-10-30 19:18

​Microsoft says it will improve security across Entra tenants where security defaults are enabled by making multifactor authentication (MFA) registration mandatory. [...]

Operation Magnus: Joint Law Enforcement Operation Targets Major Infostealer Networks
2024-10-30 18:13

Read more about a joint operation between several law enforcement agencies across the globe to tackle RedLine Stealer and META malware.

QNAP patches second zero-day exploited at Pwn2Own to get root
2024-10-30 17:36

QNAP has fixed a second zero-day vulnerability exploited at the Pwn2Own Ireland 2024 hacking contest to gain a root shell and take over a TS-464 NAS device. [...]