Security News

Pure Storage confirms data breach after Snowflake account hack
2024-06-11 12:48

Pure Storage, a leading provider of cloud storage systems and services, confirmed on Monday that attackers breached its Snowflake workspace and gained access to what the company describes as telemetry information. "Following a thorough investigation, Pure Storage has confirmed and addressed a security incident involving a third party that had temporarily gained unauthorized access to a single Snowflake data analytics workspace," the storage company said.

Users of JetBrains IDEs at risk of GitHub access token compromise (CVE-2024-37051)
2024-06-11 12:33

JetBrains has fixed a critical vulnerability that could expose users of its integrated development environments to GitHub access token compromise. CVE-2024-37051 is a vulnerability in the JetBrains GitHub plugin on the IntelliJ open-source platform, and affects all IntelliJ-based IDEs as of 2023.1 onwards that have it enabled and configured/in-use.

LLMs Acting Deceptively
2024-06-11 11:02

Given the steady increase in reasoning abilities, future LLMs are under suspicion of becoming able to deceive human operators and utilizing this ability to bypass monitoring efforts. As a prerequisite to this, LLMs need to possess a conceptual understanding of deception strategies.

Top 10 Critical Pentest Findings 2024: What You Need to Know
2024-06-11 11:00

One of the most effective ways for information technology (IT) professionals to uncover a company’s weaknesses before the bad guys do is penetration testing. By simulating real-world cyberattacks,...

Apple Launches Private Cloud Compute for Privacy-Centric AI Processing
2024-06-11 10:10

Apple has announced the launch of a "groundbreaking cloud intelligence system" called Private Cloud Compute (PCC) that's designed for processing artificial intelligence (AI) tasks in a...

China-Linked ValleyRAT Malware Resurfaces with Advanced Data Theft Tactics
2024-06-11 08:47

Cybersecurity researchers have uncovered an updated version of malware called ValleyRAT that's being distributed as part of a new campaign. "In the latest version, ValleyRAT introduced new...

Snowflake Breach Exposes 165 Customers' Data in Ongoing Extortion Campaign
2024-06-11 06:52

As many as 165 customers of Snowflake are said to have had their information potentially exposed as part of an ongoing campaign designed to facilitate data theft and extortion, indicating the...

Arm Warns of Actively Exploited Zero-Day Vulnerability in Mali GPU Drivers
2024-06-11 06:37

Arm is warning of a security vulnerability impacting Mali GPU Kernel Driver that it said has been actively exploited in the wild. Tracked as CVE-2024-4610, the use-after-free issue impacts the...

Cloud migration expands the CISO role yet again
2024-06-11 04:30

The CISO role used to be focused primarily on information security - creating and implementing policies to safeguard an organization's data and IT infrastructure from cybersecurity threats. As organizations rapidly migrate to cloud environments, the responsibilities and challenges for CISOs have expanded significantly.

Preparing for a career in cybersecurity? Check out these statistics
2024-06-11 04:00

This article includes excerpts from various reports that provide statistics and insights on cybersecurity jobs, skills shortages, and workforce dynamics. Lack of skills and budget slow zero-trust...