Hacked home computer of engineer led to second LastPass data breachPassword management company LastPass, which was hit by two data breaches last year, has revealed that...
Month: March 2023
Timeline of the latest LastPass data breaches
Timeline of the latest LastPass data breachesOn November 30, 2022, password manager LastPass informed customers of a cybersecurity incident following unusual activity within a third-party cloud...
How security leaders can effectively manage Gen Z staff
How security leaders can effectively manage Gen Z staffIn 2022, I started a podcast aimed at converting more Gen Z to seek careers in cybersecurity. In...
Top 10 open source software risks for 2023
Top 10 open source software risks for 2023Known vulnerabilities, compromise of legitimate package, and name confusion attacks are expected to be among the top ten open...
BlackLotus bootkit can bypass Windows 11 Secure Boot: ESET
BlackLotus bootkit can bypass Windows 11 Secure Boot: ESETA Unified Extensible Firmware Interface (UEFI) bootkit called BlackLotus is found to be capable of bypassing an essential...
SANS, Google launch academy to promote cloud security, diversity in workforce
SANS, Google launch academy to promote cloud security, diversity in workforceSANS Institute has launched the SANS Cloud Diversity Academy (SCDA) in partnership with Google, to help...
‘A woman from Mars’: Life in the pursuit of space exploration
‘A woman from Mars’: Life in the pursuit of space explorationAn astrobiologist, analog astronaut, author and speaker, Dr. Michaela Musilova shares her experience as a woman...
Veeam warns to install patches to fix a bug in its Backup & Replication product
Veeam warns to install patches to fix a bug in its Backup & Replication productVeeam addressed a high-severity vulnerability in the Backup Service that impacts Backup...
A critical flaw affects Fortinet FortiOS and FortiProxy, patch it now!
A critical flaw affects Fortinet FortiOS and FortiProxy, patch it now!Fortinet addressed a critical heap buffer underflow vulnerability affecting FortiOS and FortiProxy, which can lead to...
Smashing Security podcast #312: Rule 34, Twitter scams, and Facebook fails
Smashing Security podcast #312: Rule 34, Twitter scams, and Facebook failsScammers get pwned by a Canadian granny! Don't be seduced in a bar by an iPhone...
McAfee Teammates Share How They #EmbraceEquity This International Women’s Day
McAfee Teammates Share How They #EmbraceEquity This International Women’s Day International Women’s Day is a time for us to celebrate the achievements and contributions of women...
OSV and the Vulnerability Life Cycle
OSV and the Vulnerability Life CyclePosted by Oliver Chang and Andrew Pollock, Google Open Source Security Team It is an interesting time for everyone concerned with...
Thank you and goodbye to the Chrome Cleanup Tool
Thank you and goodbye to the Chrome Cleanup ToolPosted by Jasika Bawa, Chrome Security Team Starting in Chrome 111 we will begin to turn down the...
Security incident response policy
Security incident response policyThe Security Incident Response Policy, from TechRepublic Premium, describes the organization’s process for minimizing and mitigating the results of an information technology security-related...
Veeam fixes bug that lets hackers breach backup infrastructure
Veeam fixes bug that lets hackers breach backup infrastructureVeeam urged customers to patch a high-severity Backup Service security vulnerability impacting its Backup & Replication software. [...]Read...
Microsoft testing File Explorer access keys, new VPN status icon
Microsoft testing File Explorer access keys, new VPN status iconMicrosoft has released a new Windows 11 preview build with new features such as File Explorer access...
Fortinet warns of new critical unauthenticated RCE vulnerability
Fortinet warns of new critical unauthenticated RCE vulnerabilityFortinet has disclosed a "Critical" vulnerability impacting FortiOS and FortiProxy, which allows an unauthenticated attacker to execute arbitrary code...
Microsoft enables LSA protection by default in Windows Canary build
Microsoft enables LSA protection by default in Windows Canary buildMicrosoft says the latest Windows 11 build that is rolling out to Insiders in the Canary channel...
Bitwarden flaw can let hackers steal passwords using iframes
Bitwarden flaw can let hackers steal passwords using iframesBitwarden's credentials autofill feature contains a risky behavior that could allow malicious iframes embedded in trusted websites to...
FBI investigates data breach impacting U.S. House members and staff
FBI investigates data breach impacting U.S. House members and staffThe FBI is investigating a data breach affecting U.S. House of Representatives members and staff after their...
Purpose, direction and innovation: The mindset of a successful leader
Purpose, direction and innovation: The mindset of a successful leaderIn her role as president and co-founder of Six Degrees Consulting, Molly actively oversees strategy, vision, marketing,...
Sensitive personal data of US House and Senate members hacked, offered for sale
Sensitive personal data of US House and Senate members hacked, offered for saleBreach in the systems of DC Health Link, a health insurance company, led to...
E-Sign on the Dotted Line: OneSpan Emerging as an M&A Target
E-Sign on the Dotted Line: OneSpan Emerging as an M&A TargetDespite Foes Like DocuSign, Latest Financials Are Up But Potential Buyers Are NearIdentity verification and e-signature...
Fireside Chat | Stopping the Threats That Get Through Your Defences
Fireside Chat | Stopping the Threats That Get Through Your DefencesPost ContentRead MoreDataBreachToday.com RSS Syndication
New Guide to Help Healthcare Entities Implement NIST CSF
New Guide to Help Healthcare Entities Implement NIST CSFHHS, Health Sector Coordinating Council Toolkit Will Help Sector Better Manage RiskThe Department of Health and Human Services...
UK Reintroduces Bill Proposing Modifying Country’s GDPR
UK Reintroduces Bill Proposing Modifying Country's GDPRCivil Society and Tech Firms Warn Aginst Modifying the European Privacy LawThe British government is proposing modifications to the European...
Transparent Tribe spread CapraRAT via fake Messaging Apps
Transparent Tribe spread CapraRAT via fake Messaging AppsCampaign Mainly Targets Indian And Pakistani Android Users with Romance Honey TrapA cyberespionage campaign using Trojanized apps implanted with...
Hackers Sell U.S. Lawmaker Data Stolen From Insurance Market
Hackers Sell U.S. Lawmaker Data Stolen From Insurance MarketTarget Does Not Appear to Have Deliberately Targeted Members of CongressA hacker has been selling data stolen from...
Vulnerabilidad crítica en MS Word al abrir documento RTF malicioso (CVE-2023-21716)
Vulnerabilidad crítica en MS Word al abrir documento RTF malicioso (CVE-2023-21716)El investigador Joshua J. Drake (@jduck) ha publicado los detalles de la vulnerabilidad Zero-Day de Microsoft...
Gmail and Google Calendar Now Support Client-Side Encryption (CSE) to Boost Data Privacy
Gmail and Google Calendar Now Support Client-Side Encryption (CSE) to Boost Data PrivacyGoogle has announced the general availability of client-side encryption (CSE) for Gmail and Calendar,...





























