CISO Corner: Verizon DBIR Lessons; Workplace Microaggression; Shadow APIs

Our collection of the most relevant reporting and industry perspectives for those guiding cybersecurity strategies and focused on SecOps. Also included: a Tech Tip on setting up DMARC, a DNS mystery from Muddling Meerkat, and a cybersecurity checklist for M&A transitions.

darkreading – ​Read More

Paris Olympics Cybersecurity at Risk via Attack Surface Gaps

Though Olympics officials appear to have better secured their digital footprint than other major sporting events have, significant risks remain for the Paris Games.

darkreading – ​Read More

GAO: NASA Faces ‘Inconsistent’ Cybersecurity Across Spacecraft

The space agency needs to implement stricter policies and standards when it comes to its cybersecurity practices, but doing so the wrong way would put machinery at risk, a federal review found.

darkreading – ​Read More

Code faster with generative AI, but beware the risks when you do

Software developers can achieve significant productivity gains with GenAI-powered coding help, but these may come with baggage.

Latest stories for ZDNET in Security – ​Read More

“Dirty Stream” Attack Affects Popular Android Apps

A vulnerability in popular Android apps like Xiaomi File Manager and WPS Office could allow malicious apps to overwrite files in the vulnerable app’s home directory, potentially leading to code execution and unauthorized access to user data.

Cyware News – Latest Cyber News – ​Read More

REvil Affiliate Off to Jail for Multimillion-Dollar Ransomware Scheme

Charges against the ransomware gang member included damage to computers, conspiracy to commit fraud, and conspiracy to commit money laundering.

darkreading – ​Read More

Microsoft Overhauls Cybersecurity Strategy After Scathing CSRB Report

Microsoft security chief Charlie Bell pledges significant reforms and a strategic shift to prioritize security above all other product features.

The post Microsoft Overhauls Cybersecurity Strategy After Scathing CSRB Report appeared first on SecurityWeek.

SecurityWeek – ​Read More