Security News

Data security and cost are key cloud adoption challenges for financial industry
2023-12-27 04:00

91% of banks and insurance companies have now initiated their cloud journey, a significant increase from 2020, when only 37% of firms had embarked on their cloud transformations, according to Capgemini. "For today's financial services organization, ignoring the cloud is simply not an option. Moving to the cloud requires looking beyond a cost-savings approach and being centered around driving innovation to gain a competitive edge," said Ravi Khokhar, Global Head of Cloud for Financial Services at Capgemini.

Tackling cloud security challenges head-on
2023-12-26 05:30

Cloud security is a critical aspect of modern computing, as businesses and individuals increasingly rely on cloud services to store, process, and manage data. Cloud computing offers numerous benefits, including scalability, flexibility, and cost efficiency, but it also introduces unique security challenges that need to be addressed to ensure the confidentiality, integrity, and availability of sensitive information.

Ubisoft says it's investigating reports of a new security breach
2023-12-22 18:10

Ubisoft is investigating whether it suffered a breach after images of the company's internal software and developer tools were leaked online. Ubisoft is a French video game publisher known for well-known titles, including Assassin's Creed, FarCry, Tom Clancy's Rainbow Six Siege, and the new Avatar: Frontiers of Pandora.

Third-Party Supply Chain Risk a Challenge for Cyber Security Professionals in Australia
2023-12-21 14:57

Third-party supply chain risk is a key concern from Australian cyber security professionals. ASIC reveals third-party supply chain risk as key gap in Australia.

Mozilla decides Trusted Types is a worthy security feature
2023-12-21 11:03

Mozilla last week revised its position on a web security technology called Trusted Types, which it has decided to implement in its Firefox browser. Trusted Types addresses the risk of unsafe input by limiting the attack surface via Content Security Policy and a content filtering mechanism.

Cyber Security Trends to Watch in Australia in 2024
2023-12-20 20:01

The year 2023 was a big year for cyber security professionals in Australia. Experts from Rapid7 have argued that Australia can expect both advantages and risks from AI cyber tools in 2024.

Terrapin attacks can downgrade security of OpenSSH connections
2023-12-19 17:03

This manipulation lets attackers remove or modify messages exchanged through the communication channel, which leads to downgrading the public key algorithms used for user authentication or disabling defenses against keystroke timing attacks in OpenSSH 9.5. "The Terrapin attack exploits weaknesses in the SSH transport layer protocol in combination with newer cryptographic algorithms and encryption modes introduced by OpenSSH over 10 years ago."

Wiz and Apiiro partner to provide context-driven security from code to cloud
2023-12-19 14:00

Apiiro, a leading application security posture management solution, today announced its partnership with Wiz, the leading cloud security company and Cloud Native Application Protection Platform provider. By joining Wiz Integrations, Apiiro brings the power of deep ASPM to the partner ecosystem, providing unified and contextual code-to-cloud application security.

Are We Ready to Give Up on Security Awareness Training?
2023-12-19 11:53

Some of you have already started budgeting for 2024 and allocating funds to security areas within your organization. It is safe to say that employee security awareness training is one of the...

EMBA: Open-source security analyzer for embedded devices
2023-12-19 05:00

The EMBA open-source security analyzer is tailored as the central firmware analysis tool for penetration testers and product security groups. It assists throughout the security evaluation procedure, extracting firmware, conducting static and dynamic analysis through emulation, and creating a web-based report.