Security News

Pegasus Spyware Targeted iPhones of Journalists and Activists in Jordan
2024-02-05 07:37

The iPhones belonging to nearly three dozen journalists, activists, human rights lawyers, and civil society members in Jordan have been targeted with NSO Group's Pegasus spyware, according to...

Latio Application Security Tester: Use AI to scan your code
2024-02-05 06:00

Latio Application Security Tester is an open-source tool that enables the usage of OpenAI to scan code from the CLI for security and health issues. Easily send code changes to OpenAI without dealing with copy-pasting into ChatGPT or setting up the perfect prompt.

Researchers discover exposed API secrets, impacting major tech tokens
2024-02-05 05:30

The exposed secrets include hundreds of Stripe, GitHub/GitLab tokens, RSA private keys, OpenAI keys, AWS tokens, Twitch secret keys, cryptocurrency exchange keys, X tokens, and Slack and Discord webhooks. This approach shows how and where API secret keys and tokens are exposed in real-world settings, not only in code repositories.

Businesses banning or limiting use of GenAI over privacy risks
2024-02-05 05:00

Findings from a new Cisco study highlight the growing Privacy concerns with GenAI, trust challenges facing organizations over their use of AI, and the attractive returns from privacy investment. Most organizations are aware of these risks and are putting in place controls to limit exposure: 63% have established limitations on what data can be entered, 61% have limits on which employees can use GenAI tools, and 27% said their organization had banned GenAI applications altogether for the time being.

How cybersecurity strategies adapt to evolving threats
2024-02-05 04:30

Cybersecurity strategies are essential components of modern organizations, designed to protect digital assets, sensitive information, and overall business continuity from potential cyber threats. As technology advances, the complexity and frequency of cyber attacks continue to grow, making it imperative for businesses to develop robust and adaptive cybersecurity strategies.

Migrating to the cloud: An overview of process and strategy
2024-02-05 04:00

Looking at these predictions, perhaps you're feeling it's time for your organization to initiate its own cloud migration process. I'll identify key benefits, challenges, and methods of migrating to the cloud so that you can begin to think about what you'd like your cloud migration to look like.

New Mispadu Banking Trojan Exploiting Windows SmartScreen Flaw
2024-02-05 03:45

The threat actors behind the Mispadu banking Trojan have become the latest to exploit a now-patched Windows SmartScreen security bypass flaw to compromise users in Mexico. The attacks entail a new...

SBF likely off the hook for misplaced FTX funds after cops bust SIM swap ring
2024-02-05 01:27

The trio's biggest haul was the theft of more than $400 million in cryptocurrency from an unnamed "Victim Company-1" on November 11, 2022 - the same day that FTX declared bankruptcy and an unknown attacker stole roughly $415m in crypto from the firm. While SBF might be off the hook for this element of his mismanagement of FTX, that won't help him to walk free as was convicted on seven charges in October 2023 and faces up to 110 years in prison when sentenced next month.

Microsoft is bringing the Linux sudo command to Windows Server
2024-02-04 17:26

Microsoft is bringing the Linux 'sudo' feature to Windows Server 2025, offering a new way for admins to elevate privileges for console applications.Microsoft released the first Windows Server 2025 Insider preview build last week.

Vix Makes Travels Safer and Smoother With Proactive Global Visibility
2024-02-04 16:00

Vix Technology is a global leader in intelligent transportation systems, automated fare collection, and transit analytics. Transit agencies and operators - including the major transportation systems of major cities like Edmonton and Seattle - rely on Vix to help travelers process fare payments and arrive safely and on time at their destination.