Security News

The Annual SaaS Security Report: 2025 CISO Plans and Priorities
2024-06-18 11:23

Seventy percent of enterprises are prioritizing investment in SaaS security by establishing dedicated teams to secure SaaS applications, as part of a growing trend of maturity in this field of...

Mandiant Report: Snowflake Users Targeted for Data Theft and Extortion
2024-06-12 19:34

A new report from Mandiant, part of Google Cloud, reveals that a financially motivated threat actor named UNC5537 collected and exfiltrated data from about 165 organizations' Snowflake customer instances. Snowflake is a cloud data platform used for storing and analyzing large volumes of data.

White House report dishes deets on all 11 major government breaches from 2023
2024-06-12 16:15

The number of cybersecurity incidents reported by US federal agencies rose 9.9 percent year-on-year in 2023 to a total of 32,211, per a new White House report, which also spilled the details on the most serious incidents suffered across the government. Brute force attacks on networks and services were the only other vector to register more than 1,000 cases - but took the price for the biggest YoY percentage increase in incidents, up from just 197 the year before.

UK Trails Behind Europe in Technical Skills Proficiency, Coursera Report Finds
2024-06-12 08:00

The U.K. is by no means a reflection of Europe as a whole when it comes to technical proficiency. "We must strive for greater collaboration between higher education institutions, government and the technology industry to meet the rapidly evolving skill requirements of the digital economy. Without this collaboration and the right level of investment, we will continue to fall behind in technical skills proficiency."

Downtime Costs World’s Largest Companies $400 Billion a Year, According to Splunk Report
2024-06-12 00:45

Unplanned downtime is costing the world's largest companies $400 billion a year, or roughly 9% of their profits, a new report has found. The Hidden Costs of Downtime report surveyed 2,000 executives, including CFOs, CMOs, engineers, and IT and security professionals, from Global 2000 companies in 53 countries and a range of industries.

Telerik Report Server Flaw Could Let Attackers Create Rogue Admin Accounts
2024-06-04 14:43

Progress Software has rolled out updates to address a critical security flaw impacting the Telerik Report Server that could be potentially exploited by a remote attacker to bypass authentication...

Paris Olympics 2024: Cyber Attackers are Targeting Companies Associated With Games, Report Finds
2024-06-04 14:00

Organisations linked to the Paris Olympics 2024 have an increased risk of cyber attacks, including ransomware, credential leaks and phishing campaigns, a study has found. TechRepublic takes a closer look at the highest priority cyber threats to the 2024 Paris Olympics identified in the report.

Hudson Rock yanks report fingering Snowflake employee creds snafu for mega-leak
2024-06-04 02:25

Snowflake said if any customer data was taken from its servers, it may have been obtained by thieves who got hold of individual customers' account credentials - via targeted phishing, some other leak, or malware, for example - and not by a general compromise of Snowflake's security. On Friday, in its now-deleted write-up, Hudson Rock wrote that data thieves claimed to have signed into a Snowflake employee's ServiceNow work account and used this access to siphon databases belonging to as many as 400 Snowflake corporate clients.

Verizon users report blurry photos in Android messaging apps
2024-06-03 15:37

Verizon customers using Android phones report that they receive blurry images through text messages on different services and apps, with no response from Verizon as to why. Some report that the blurry photos problem on Verizon started in February 2024, but user reports escalated in May following a recent software update from their vendors.

SASE Threat Report: 8 Key Findings for Enterprise Security
2024-06-03 10:56

Threat actors are evolving, yet Cyber Threat Intelligence (CTI) remains confined to each isolated point solution. Organizations require a holistic analysis across external data, inbound and...