World Govs, Tech Giants Sign Spyware Responsibility Pledge

France, the UK, the US, and others will work on a framework for the responsible use of tools like NSO Group’s Pegasus, and Shadowserver Foundation gains £1 million investment.

darkreading – ​Read More

Twin Max-Severity Bugs Open Fortinet’s SIEM to Code Execution

Full 10s on the CVSS vulnerability severity scale have been assigned to two flaws discovered in Fortinet’s FortiSIEM cybersecurity operations platform.

darkreading – ​Read More

Crucial Airline Flight Planning App Open to Interception Risks

Airbus-owned NAVBLUE fixed the issue after a penetration testing firm disclosed the problem to the company.

darkreading – ​Read More

Verizon Insider Data Breach Hits Over 63,000 Employees

Verizon Communications has reported an insider data breach affecting nearly half of its workforce, exposing sensitive employee information such as names, addresses, Social Security numbers, and compensation details.

Cyware News – Latest Cyber News – ​Read More

Dutch Intelligence Finds Chinese Hackers Spying on Secret Defence Ministry Network

Chinese state-sponsored hackers breached the internal computer network of the Dutch Ministry of Defence using a vulnerability in FortiGate devices. The breach was for espionage purposes and the malware was found in a compartmentalized network.

Cyware News – Latest Cyber News – ​Read More

Python Info-stealer Distributed by Malicious Excel Document

The threat actors behind the campaign utilized multiple stages and techniques, including obfuscation and leveraging open platforms, to carry out the attack and steal sensitive information.

Cyware News – Latest Cyber News – ​Read More

How Neurodiversity Can Help Fill the Cybersecurity Workforce Shortage

Many people with ADHD, autism, dyslexia, and other neurodiverse conditions bring new perspectives that can help organizations solve cybersecurity challenges.

darkreading – ​Read More

Nigerian University Rolls Out Cybersecurity Degree Program

Nigerian University of Technology and Management plans to compete on the global cyber-education stage.

darkreading – ​Read More

ZeroFox to be Taken Private in $350 Million Deal

ZeroFox agrees to be acquired be acquired by PE firm Haveli Investments for $350 million and become a privately held company.

The post ZeroFox to be Taken Private in $350 Million Deal appeared first on SecurityWeek.

SecurityWeek – ​Read More

Millions of User Records Stolen From 65 Websites via SQL Injection Attacks

The ResumeLooters hackers compromise recruitment and retail websites using SQL injection and XSS attacks.

The post Millions of User Records Stolen From 65 Websites via SQL Injection Attacks appeared first on SecurityWeek.

SecurityWeek – ​Read More