Security News

How Your Business Can Benefit from a Network Security Policy
2024-06-10 08:05

This is why a network security policy must be in place to create security guidelines for devices that transport and store company data. To protect company data and reputation, it is essential to ensure the network is secured from unauthorized access, data loss, malware infestations and security breaches.

Sticky Werewolf Expands Cyber Attack Targets in Russia and Belarus
2024-06-10 05:29

Cybersecurity researchers have disclosed details of a threat actor known as Sticky Werewolf that has been linked to cyber attacks targeting entities in Russia and Belarus. The phishing attacks...

AI’s role in accelerating vulnerability management
2024-06-10 04:45

As we integrate AI more deeply into vulnerability management processes, organizations can expect enhanced security postures and a shift towards a more proactive and predictive approach to handling cybersecurity threats. AI has some major limitations and even security concerns, especially regarding vulnerability management.

Radare: Open-source reverse engineering framework
2024-06-10 04:30

Radare is an open-source UNIX-like reverse engineering framework and command-line toolset. "I started the project in 2006 when I was working as a forensic analyst, and I wrote a simple command-line hexadecimal editor to scan a hard drive looking for keywords and dump the results to disk to recover some files. Over time, the project evolved to meet my diverse requirements, serving as a debugger, a disassembler, and a platform for exploring various architectures. It proved invaluable during CTF competitions, at work, and for personal reverse engineering projects," Sergi Àlvarez, the creator of Radare, told Help Net Security.

Why CISOs need to build cyber fault tolerance into their business
2024-06-10 04:00

CISOs who elevate response and recovery to equal status with prevention are generating more value than those who adhere to outdated zero tolerance for failure mindsets, according to Gartner. "Each new cybersecurity disruption exposes the fact that CISOs manage more through adrenaline than intention, which is unsustainable," said Dennis Xu, VP Analyst at Gartner.

Cybersecurity pros change strategies to combat AI-powered threats
2024-06-10 03:30

75% of security professionals had to change their cybersecurity strategy in the last year due to the rise in AI-powered cyber threats, with 73% expressing a greater focus on prevention capabilities, according to Deep Instinct. 97% of respondents are concerned their organization will suffer a security incident due to adversarial AI. "The biggest challenge for SecOps teams is keeping pace with the rapidly evolving threat landscape being driven by AI. These never-before-seen threats are disrupting organizations, causing breaches that are accompanied by costly remediation. SecOps must stay ahead of these unknown attacks that often penetrate existing defenses, despite investment in technology and talented cybersecurity professionals," said Lane Bess, CEO of Deep Instinct.

Protecting identity in a world of deepfakes and social engineering
2024-06-10 03:00

In this Help Net Security video round-up, security experts discuss various aspects of identity verification and security, including generative AI's impact, the state of identity fraud prevention, and the potential impact of identity challenges on the security sector. Complete videos Peter Violaris, Head of Legal, Compliance and Risk, EMEA for OCR Labs, discusses generative AI's impact on identity verification.

Brave says May 2024 was its biggest growth month ever
2024-06-09 17:49

Brave browser experienced its most significant growth month ever in May 2024, now used by more than 78.95 million monthly users, up 7.3%. The privacy-focused web browser experienced substantial growth in Latin America, where the browser became one of the top apps in the Google Play Store in several countries. As Brave Search is the default search engine for Brave Browser, it also saw increased growth due to the additional users.

Malicious VSCode extensions with millions of installs discovered
2024-06-09 14:22

Further research into the VSCode Marketplace found thousands of extensions with millions of installs. Previous reports have highlighted gaps in VSCode's security, allowing extension and publisher impersonation and extensions that steal developer authentication tokens.

Malicious VSCode extensions with millions of installs discovered
2024-06-09 14:22

Further research into the VSCode Marketplace found thousands of extensions with millions of installs. Previous reports have highlighted gaps in VSCode's security, allowing extension and publisher impersonation and extensions that steal developer authentication tokens.