Security News > 2025 > May

Microsoft makes all new accounts passwordless by default
2025-05-02 07:21

Microsoft has announced that all new Microsoft accounts will be "passwordless by default" to secure them against password attacks such as phishing, brute force, and credential stuffing. [...]

Microsoft Sets Passkeys Default for New Accounts; 15 Billion Users Gain Passwordless Support
2025-05-02 06:40

A year after Microsoft announced passkeys support for consumer accounts, the tech giant has announced a big change that pushes individuals signing up for new accounts to use the phishing-resistant...

AI and automation shift the cybersecurity balance toward attackers
2025-05-02 06:00

Threat actors are increasingly harnessing automation, commoditized tools, and AI to systematically erode the traditional advantages held by defenders, according to Fortinet. The post AI and...

Phone theft is turning into a serious cybersecurity risk
2025-05-02 05:30

Phone theft is a rising issue worldwide, and it’s more than just a property crime. It’s a serious cybersecurity threat. In the UK alone, the Metropolitan Police recovers 1,000 phones each week....

People know password reuse is risky but keep doing it anyway
2025-05-02 05:00

35% of Gen Z said they never or rarely update passwords after a data breach affecting one of their accounts, according to Bitwarden. Only 10% reported always updating compromised passwords. 38% of...

Half of red flags in third-party deals never reach compliance teams
2025-05-02 04:30

Third-party risk management (TPRM) is compromised in many organizations because those holding the relationship with the third-party (relationship owners) don’t escalate red flags to compliance...

Infosec products of the month: April 2025
2025-05-02 04:00

Here’s a look at the most interesting products from the past month, featuring releases from: 1touch.io, Abnormal AI, AppViewX, Arctic Wolf Networks, Bitdefender, BitSight, Bugcrowd, Cato Networks,...

Hacker 'NullBulge' pleads guilty to stealing Disney's Slack data
2025-05-01 23:13

A California man who used the alias "NullBulge" has pleaded guilty to illegally accessing Disney's internal Slack channels and stealing over 1.1 terabytes of internal company data. [...]

Dems look to close the barn door after top DOGE dog has bolted
2025-05-01 22:33

House Oversight probes missing Musk disclosures, background checks, data mess at NLRB Elon Musk is backing away from his Trump-blessed government gig, but now House Democrats want to see the...

Pro-Russia hacktivists bombard Dutch public orgs with DDoS attacks
2025-05-01 20:04

Russia-aligned hacktivists persistently target key public and private organizations in the Netherlands with distributed denial of service (DDoS) attacks, causing access problems and service...