Security News

The Secrets of Hidden AI Training on Your Data
2024-06-27 11:40

While some SaaS threats are clear and visible, others are hidden in plain sight, both posing significant risks to your organization. Wing's research indicates that an astounding 99.7% of...

Largest Croatian hospital under cyberattack
2024-06-27 11:22

The University Hospital Centre Zagreb is under cyberattack that started on Wednesday night, the Croatian Radiotelevision has reported. Because of the attack, the hospital has shut down its information system and will be switching parts of it online once they are sure it's safe to do so.

Security Analysis of the EU’s Digital Wallet
2024-06-27 11:06

About Bruce Schneier I am a public-interest technologist, working at the intersection of security, technology, and people. I've been writing about security issues on my blog since 2004, and in my monthly newsletter since 1998.

Ransomware Cheat Sheet: Everything You Need To Know In 2024
2024-06-27 11:00

TechRepublic's cheat sheet about ransomware is an overview of this malware threat. As ransomware attacks have grown into the public consciousness, attackers have taken to crafting payloads that clearly indicate that a device has simply been hacked and that victims must pay the hackers to return access.

Polyfill claims it has been 'defamed', returns after domain shut down
2024-06-27 10:57

The owners of Polyfill.io have relaunched the JavaScript CDN service on a new domain after polyfill.io was shut down as researchers exposed it was delivering malicious code on upwards of 100,000 websites. The Polyfill service claims that it has been "Maliciously defamed" and been subject to "Media messages slandering Polyfill."

Prompt Injection Flaw in Vanna AI Exposes Databases to RCE Attacks
2024-06-27 10:04

Cybersecurity researchers have disclosed a high-severity security flaw in the Vanna.AI library that could be exploited to achieve remote code execution vulnerability via prompt injection...

How to Use Python to Build Secure Blockchain Applications
2024-06-27 09:30

Did you know it’s now possible to build blockchain applications, known also as decentralized applications (or “dApps” for short) in native Python? Blockchain development has traditionally required...

PoC exploit for critical Fortra FileCatalyst flaw published (CVE-2024-5276)
2024-06-27 09:19

A critical SQL injection vulnerability in Fortra FileCatalyst Workflow has been patched; a PoC exploit is already available online. Fortra FileCatalyst is an enterprise software solution for accellerated, UDP-based file transfer of large files.

Cloudflare: We never authorized polyfill.io to use our name
2024-06-27 09:18

Further, to keep the internet safe, Cloudflare is automatically replacing polyfill.io links with a safe mirror on websites that use Cloudflare protection. Cloudflare has criticized Polyfill.io's unauthorized usage of its name and logo as it could mislead users into believing that the illicit website is endorsed by Cloudflare.

Russian National Indicted for Cyber Attacks on Ukraine Before 2022 Invasion
2024-06-27 07:41

A 22-year-old Russian national has been indicted in the U.S. for his alleged role in staging destructive cyber attacks against Ukraine and its allies in the days leading to Russia's full-blown...