www.secnews.physaphae.fr This is the RSS 2.0 feed from www.secnews.physaphae.fr. IT's a simple agragated flow of multiple articles soruces. Liste of sources, can be found on www.secnews.physaphae.fr. 2025-05-10T14:32:18+00:00 www.secnews.physaphae.fr Dark Reading - Informationweek Branch North Korea\\'s Lazarus APT Evolves Developer-Recruitment Attacks "Operation 99" uses job postings to lure freelance software developers into downloading malicious Git repositories. From there, malware infiltrates developer projects to steal source code, secrets, and cryptocurrency.]]> 2025-01-15T16:02:08+00:00 https://www.darkreading.com/threat-intelligence/north-korea-lazarus-apt-developer-recruitment-attacks www.secnews.physaphae.fr/article.php?IdArticle=8637791 False Malware APT 38 2.0000000000000000 Dark Reading - Informationweek Branch OWASP\\'s New LLM Top 10 Shows Emerging AI Threats Ultimately, there is no replacement for an intuitive, security-focused developer working with the critical thinking required to drive down the risk of both AI and human error.]]> 2025-01-15T15:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/owasps-llm-top-10-shows-emerging-ai-threats www.secnews.physaphae.fr/article.php?IdArticle=8637763 False None None 3.0000000000000000 Dark Reading - Informationweek Branch As Tensions Mount With China, Taiwan Sees Surge in Cyberattacks In 2024, the Taiwanese government saw the daily average of attempted attacks by China double to 2.4 million, with a focus on government targets and telecommunications firms.]]> 2025-01-15T02:00:00+00:00 https://www.darkreading.com/cyber-risk/as-tensions-with-china-mount-taiwan-sees-surge-in-cyberattacks www.secnews.physaphae.fr/article.php?IdArticle=8637429 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Microsoft Rings in 2025 With Record Security Update Company has issued patches for an unprecedented 159 CVEs, including eight zero-days, three of which attackers are already exploiting.]]> 2025-01-14T22:56:16+00:00 https://www.darkreading.com/application-security/microsoft-january-2025-record-security-update www.secnews.physaphae.fr/article.php?IdArticle=8637383 False None None 3.0000000000000000 Dark Reading - Informationweek Branch 1Password\\'s Trelica Buy Part of Broader Shadow IT Play The acquisition accelerates 1Password\'s ongoing efforts to expand the role of the password manager with secure SaaS management.]]> 2025-01-14T21:52:52+00:00 https://www.darkreading.com/identity-access-management-security/1password-trelica-buy-shadow-it-play www.secnews.physaphae.fr/article.php?IdArticle=8637730 False Cloud None 2.0000000000000000 Dark Reading - Informationweek Branch Apple Bug Allows Root Protections Bypass Without Physical Access Emergent macOS vulnerability lets adversaries circumvent Apple\'s System Integrity Protection (SIP) by loading third-party kernels.]]> 2025-01-14T21:45:43+00:00 https://www.darkreading.com/vulnerabilities-threats/apple-bug-root-protections-bypass-physical-access www.secnews.physaphae.fr/article.php?IdArticle=8637356 False Vulnerability None 3.0000000000000000 Dark Reading - Informationweek Branch FBI Wraps Up Eradication Effort of Chinese \\'PlugX\\' Malware Two hacker groups were paid to develop malware targeting victims in the US, Europe, and Asia, as well as various Chinese dissident groups.]]> 2025-01-14T21:24:34+00:00 https://www.darkreading.com/cybersecurity-operations/fbi-wraps-up-eradication-chinese-plugx-malware www.secnews.physaphae.fr/article.php?IdArticle=8637357 False Malware None 3.0000000000000000 Dark Reading - Informationweek Branch Zero-Day Security Bug Likely Fueling Fortinet Firewall Attacks An ongoing campaign targeting FortiGate devices with management interfaces exposed on the public Internet is leading to unauthorized administrative logins and configuration changes, creating new accounts, and performing SSL VPN authentication.]]> 2025-01-14T17:50:24+00:00 https://www.darkreading.com/threat-intelligence/zero-day-security-bug-fortinet-firewall-attacks www.secnews.physaphae.fr/article.php?IdArticle=8637257 True Vulnerability,Threat None 3.0000000000000000 Dark Reading - Informationweek Branch New Startups Focus on Deepfakes, Data-in-Motion & Model Security In times of unprecedented change, innovative mindsets and attentiveness of startup culture make for a community everyone can leverage to understand the world and guard against its dangers.]]> 2025-01-14T15:00:00+00:00 https://www.darkreading.com/cybersecurity-operations/startups-focus-deepfakes-data-motion-model-security www.secnews.physaphae.fr/article.php?IdArticle=8637195 False None None 2.0000000000000000 Dark Reading - Informationweek Branch CISA Releases the Cybersecurity Performance Goals Adoption Report 2025-01-13T21:51:36+00:00 https://www.darkreading.com/cybersecurity-operations/cisa-releases-the-cybersecurity-performance-goals-adoption-report www.secnews.physaphae.fr/article.php?IdArticle=8636877 False None None 3.0000000000000000 Dark Reading - Informationweek Branch K2 Secures Navy SeaPort Next Generation Contract 2025-01-13T21:44:23+00:00 https://www.darkreading.com/ics-ot-security/k2-secures-navy-seaport-next-generation-contract www.secnews.physaphae.fr/article.php?IdArticle=8636878 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Grupo Bimbo Ventures Announces Investment in NanoLock Security 2025-01-13T21:42:26+00:00 https://www.darkreading.com/ics-ot-security/grupo-bimbo-ventures-announces-investment-in-nanolock-security www.secnews.physaphae.fr/article.php?IdArticle=8636879 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Microsoft Cracks Down on Malicious Copilot AI Use According to the tech giant, it has observed a threat group seeking out vulnerable customer accounts using generative AI, then creating tools to abuse these services.]]> 2025-01-13T21:34:29+00:00 https://www.darkreading.com/application-security/microsoft-cracks-down-malicious-copilot-ai-use www.secnews.physaphae.fr/article.php?IdArticle=8636880 False Tool,Threat None 3.0000000000000000 Dark Reading - Informationweek Branch Cloud Attackers Exploit Max-Critical Aviatrix RCE Flaw The security vulnerability tracked as CVE-2024-50603, which rates 10 out of 10 on the CVSS scale, enables unauthenticated remote code execution on affected systems, which cyberattackers are using to plant malware.]]> 2025-01-13T20:44:00+00:00 https://www.darkreading.com/cloud-security/cloud-attackers-exploit-max-critical-aviatrix-rce-flaw www.secnews.physaphae.fr/article.php?IdArticle=8636859 False Malware,Vulnerability,Threat,Cloud None 3.0000000000000000 Dark Reading - Informationweek Branch Cyberattackers Hide Infostealers in YouTube Comments, Google Search Results Threat actors are targeting people searching for pirated or cracked software with fake downloaders that include infostealing malware such as Lumma and Vidar.]]> 2025-01-13T17:26:08+00:00 https://www.darkreading.com/threat-intelligence/cyberattackers-infostealers-youtube-comments-google-search www.secnews.physaphae.fr/article.php?IdArticle=8636804 False Malware,Threat None 3.0000000000000000 Dark Reading - Informationweek Branch Telefonica Breach Exposes Jira Tickets, Customer Data The Hellcat ransomware group has stolen roughly 5,000 documents, potentially containing confidential information, from the telecom giant\'s internal database.]]> 2025-01-13T16:37:39+00:00 https://www.darkreading.com/cyberattacks-data-breaches/telefonica-breach-exposes-jira-tickets-customer-data www.secnews.physaphae.fr/article.php?IdArticle=8636784 False Ransomware None 3.0000000000000000 Dark Reading - Informationweek Branch The Shifting Landscape of Open Source Security By focusing on vigilant security practices, responsible AI deployment, and alignment with global regulatory standards, the OSS community can make 2025 a transformative year for security.]]> 2025-01-13T15:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/shifting-landscape-open-source-security www.secnews.physaphae.fr/article.php?IdArticle=8636750 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Threat Actors Exploit a Critical Ivanti RCE Bug, Again New year, same story. Despite Ivanti\'s commitment to secure-by-design principles, threat actors - possibly the same ones as before - are exploiting its edge devices for the nth time.]]> 2025-01-10T22:37:54+00:00 https://www.darkreading.com/vulnerabilities-threats/critical-ivanti-rce-bug www.secnews.physaphae.fr/article.php?IdArticle=8636079 False Threat None 3.0000000000000000 Dark Reading - Informationweek Branch Fake CrowdStrike \\'Job Interviews\\' Become Latest Hacker Tactic Cybercriminals are luring victims into downloading the XMRig cryptomining malware via convincing emails, inviting them to schedule fake interviews using a malicious link.]]> 2025-01-10T20:53:13+00:00 https://www.darkreading.com/threat-intelligence/crowdstrike-job-interviews-hacker-tactic www.secnews.physaphae.fr/article.php?IdArticle=8635762 False Malware None 3.0000000000000000 Dark Reading - Informationweek Branch Russia Carves Out Commercial Surveillance Success Globally Growing sales of the System for Operative Investigative Activities (SORM), a Russian wiretapping platform, in Central Asia and Latin American suggests increasing risks for Western businesses.]]> 2025-01-10T20:22:31+00:00 https://www.darkreading.com/threat-intelligence/russia-commercial-surveillance-success-globally www.secnews.physaphae.fr/article.php?IdArticle=8635763 False Commercial None 3.0000000000000000 Dark Reading - Informationweek Branch The Path Toward Championing Diversity in Cybersecurity Education To build a truly inclusive and diverse cybersecurity workforce, we need a comprehensive approach beyond recruitment and retention.]]> 2025-01-10T15:00:00+00:00 https://www.darkreading.com/cybersecurity-operations/championing-diversity-cybersecurity-education www.secnews.physaphae.fr/article.php?IdArticle=8635655 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Chinese APT Group Is Ransacking Japan\\'s Secrets Since 2019, MirrorFace has been stealing information from myriad Japanese organizations to gain leverage over Japan in the event of hostilities between the two countries, experts said.]]> 2025-01-10T02:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/chinese-apt-group-ransacking-japans-secrets www.secnews.physaphae.fr/article.php?IdArticle=8635453 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Banshee 2.0 Malware Steals Apple\\'s Encryption to Hide on Macs The most recent iteration of the open source infostealer skates by antivirus programs on Macs, using an encryption mechanism stolen from Apple\'s own antivirus product.]]> 2025-01-09T22:47:15+00:00 https://www.darkreading.com/threat-intelligence/banshee-malware-steals-apple-encryption-macs www.secnews.physaphae.fr/article.php?IdArticle=8635425 False Malware None 2.0000000000000000 Dark Reading - Informationweek Branch Hacking Group \\'Silk Typhoon\\' Linked to US Treasury Breach The attack used a stolen remote support SaaS API key to exfiltrate data from workstations in the Treasury Department\'s Office of Foreign Assets Control.]]> 2025-01-09T21:11:38+00:00 https://www.darkreading.com/cyberattacks-data-breaches/hacking-group-silk-typhoon-linked-us-treasury-breach www.secnews.physaphae.fr/article.php?IdArticle=8635410 False Cloud None 3.0000000000000000 Dark Reading - Informationweek Branch New AI Challenges Will Test CISOs & Their Teams in 2025 CISOs need to recognize the new threats AI can present - while also embracing AI-powered solutions to stay ahead of those threats.]]> 2025-01-09T15:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/new-ai-challenges-test-ciso-teams-2025 www.secnews.physaphae.fr/article.php?IdArticle=8635302 False None None 3.0000000000000000 Dark Reading - Informationweek Branch India Readies Overhauled National Data Privacy Rules The country awaits implementation guidelines for a framework that gives Indians greater autonomy and security over their personal data - and recognizes a right to personal privacy.]]> 2025-01-09T02:00:00+00:00 https://www.darkreading.com/cybersecurity-operations/india-overhauled-national-data-privacy-rules www.secnews.physaphae.fr/article.php?IdArticle=8635117 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Fed \\'Cyber Trust\\' Label: Good Intentions That Fall Short The voluntary program is intended to boost consumer confidence in vulnerable IoT devices, but experts want to see vendors held to a higher standard.]]> 2025-01-08T22:25:17+00:00 https://www.darkreading.com/cybersecurity-operations/white-house-launches-cyber-trust-mark-label-in-voluntary-cybersecurity-program www.secnews.physaphae.fr/article.php?IdArticle=8635080 False None None 3.0000000000000000 Dark Reading - Informationweek Branch CrowdStrike Achieves FedRAMP Authorization for New Modules 2025-01-08T22:20:59+00:00 https://www.darkreading.com/cyber-risk/crowdstrike-achieves-fedramp-authorization-for-new-modules www.secnews.physaphae.fr/article.php?IdArticle=8635081 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Trend Micro and Intel Innovate to Weed Out Covert Threats 2025-01-08T22:09:40+00:00 https://www.darkreading.com/endpoint-security/trend-micro-and-intel-innovate-to-weed-out-covert-threats www.secnews.physaphae.fr/article.php?IdArticle=8635082 False Prediction None 3.0000000000000000 Dark Reading - Informationweek Branch Zivver Report Reveals Critical Challenges in Email Security for 2025 2025-01-08T22:02:29+00:00 https://www.darkreading.com/endpoint-security/zivver-report-reveals-critical-challenges-in-email-security-for-2025 www.secnews.physaphae.fr/article.php?IdArticle=8635083 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Palindrome Technologies Approved as Cybersecurity Label Administrator for FCC\\'s IoT Program 2025-01-08T21:43:48+00:00 https://www.darkreading.com/ics-ot-security/palindrome-technologies-approved-as-cybersecurity-label-administrator-for-fcc-s-iot-program www.secnews.physaphae.fr/article.php?IdArticle=8635063 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Green Bay Packers\\' Online Pro Shop Sacked by Payment Skimmer Cyberattackers injected the NFL Wild Card team\'s online Pro Shop with malicious code to steal credit-card data from 8,500 fans.]]> 2025-01-08T21:40:27+00:00 https://www.darkreading.com/cyberattacks-data-breaches/green-bay-packers-online-pro-shop-payment-skimmer www.secnews.physaphae.fr/article.php?IdArticle=8635084 False None None 3.0000000000000000 Dark Reading - Informationweek Branch New Docuseries Spotlights Hackers Who Shaped Cybersecurity "Where Warlocks Stay Up Late" project speaks to hackers who have played pivotal roles in shaping the field of cybersecurity. The video interviews are complemented by an encyclopedia and an anthropological map.]]> 2025-01-08T18:06:34+00:00 https://www.darkreading.com/cybersecurity-careers/where-warlocks-stay-up-late-unearthing-the-stories-of-cybersecurity-trailblazers www.secnews.physaphae.fr/article.php?IdArticle=8634992 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Unconventional Cyberattacks Aim to Take Over PayPal Accounts Attackers are abusing a Microsoft 365 feature to send payment requests to users, tricking them into logging in to their accounts so attackers can seize control over them.]]> 2025-01-08T16:07:08+00:00 https://www.darkreading.com/threat-intelligence/unconventional-cyberattacks-take-over-paypal-accounts www.secnews.physaphae.fr/article.php?IdArticle=8634965 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Best Practices & Risks Considerations in LCNC and RPA Automation Low-code/no-code (LCNC) and robotic process automation (RPA) technologies allow companies to speed up development processes and reduce costs, but security is often overlooked. When this happens, the risks can outweigh the benefits.]]> 2025-01-08T15:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/best-practices-risks-considerations-lcnc-rpa-automation www.secnews.physaphae.fr/article.php?IdArticle=8634925 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Ransomware Targeting Infrastructure Hits Telecom Namibia The southern African telco is the latest entity on the continent to have its critical infrastructure hacked, and attackers release sensitive info online when Telecom Namibia refuses to negotiate.]]> 2025-01-08T07:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/ransomware-targeting-infrastructure-telecom-namibia www.secnews.physaphae.fr/article.php?IdArticle=8634781 False Ransomware None 2.0000000000000000 Dark Reading - Informationweek Branch 1Password Acquires SaaS Access Management Provider Trelica The deal will enhance 1Password Extended Access Management offering with capabilities to address challenges around SaaS sprawl and shadow IT.]]> 2025-01-07T23:25:51+00:00 https://www.darkreading.com/identity-access-management-security/1password-acqiures-saas-access-management-trelica www.secnews.physaphae.fr/article.php?IdArticle=8634884 False Cloud None 3.0000000000000000 Dark Reading - Informationweek Branch Sharing of Telegram User Data Surged After CEO Arrest Until September 2024, the encrypted messaging service acceded to 14 requests for user data from the US; that number jumped to 900 after its CEO was detained by French authorities in August.]]> 2025-01-07T22:42:45+00:00 https://www.darkreading.com/cybersecurity-operations/sharing-telegram-user-data-surged-after-ceo-arrest www.secnews.physaphae.fr/article.php?IdArticle=8634672 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Pentagon Adds Chinese Gaming Giant Tencent to Federal Ban The sprawling social media and gaming platform says that being considered a Chinese military business must be a mistake.]]> 2025-01-07T20:49:15+00:00 https://www.darkreading.com/cybersecurity-operations/pentagon-chinese-gaming-giant-tencent-federal-ban www.secnews.physaphae.fr/article.php?IdArticle=8634638 False None None 3.0000000000000000 Dark Reading - Informationweek Branch CISA: Third-Party Data Breach Limited to Treasury Dept. The breach was carried out by exploiting CVE-2024-12356 in BeyondTrust cybersecurity company, just last week.]]> 2025-01-07T17:20:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/cisa-third-party-data-breach-limited-treasury-dept www.secnews.physaphae.fr/article.php?IdArticle=8634594 False Data Breach None 3.0000000000000000 Dark Reading - Informationweek Branch PhishWP Plug-in Hijacks WordPress E-Commerce Checkouts The malware, found on a Russian cybercriminal site, impersonates e-commerce payment-processing services such as Stripe to steal user payment data from legitimate websites.]]> 2025-01-07T15:58:11+00:00 https://www.darkreading.com/threat-intelligence/phishwp-plugin-hijacks-wordpress-e-commerce-checkouts www.secnews.physaphae.fr/article.php?IdArticle=8634573 False Malware None 2.0000000000000000 Dark Reading - Informationweek Branch Name That Edge Toon: Greetings and Salutations Feeling creative? Submit your caption and our panel of experts will reward the winner with a $25 gift card.]]> 2025-01-07T15:38:11+00:00 https://www.darkreading.com/identity-access-management-security/name-that-edge-toon-greetings-and-salutations www.secnews.physaphae.fr/article.php?IdArticle=8634556 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Cybercriminals Don\\'t Care About National Cyber Policy We can\'t put defense on hold until Inauguration Day.]]> 2025-01-07T15:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/cybercriminals-dont-care-national-cyber-policy www.secnews.physaphae.fr/article.php?IdArticle=8634536 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Veracode Buys Package Analysis Technology From Phylum The deal adds Phylum\'s technology for malicious package analysis, detection, and mitigation to Veracode\'s software composition analysis portfolio.]]> 2025-01-07T01:28:48+00:00 https://www.darkreading.com/application-security/veracode-buys-package-analysis-technology-phylum www.secnews.physaphae.fr/article.php?IdArticle=8634520 False None None 2.0000000000000000 Dark Reading - Informationweek Branch In Appreciation: Amit Yoran, Tenable CEO, Passes Away Cybersecurity industry visionary and renowned executive Amit Yoran has passed away after an almost one-year battle with cancer.]]> 2025-01-06T22:15:29+00:00 https://www.darkreading.com/cloud-security/amit-yoran-tenable-passes-away www.secnews.physaphae.fr/article.php?IdArticle=8634277 False None None 3.0000000000000000 Dark Reading - Informationweek Branch China\\'s Salt Typhoon Adds Charter, Windstream to Telecom Victim List These latest attacks follow a long string of cyberattacks and breaches targeting US and global telecom and ISP companies.]]> 2025-01-06T21:39:46+00:00 https://www.darkreading.com/cyberattacks-data-breaches/china-salt-typhoon-charter-windstream-telecom-victims www.secnews.physaphae.fr/article.php?IdArticle=8634260 False None None 2.0000000000000000 Dark Reading - Informationweek Branch FireScam Android Spyware Campaign Poses \\'Significant Threat Worldwide\\' A fake Telegram Premium app delivers information-stealing malware, in a prime example of the rising threat of adversaries leveraging everyday applications, researchers say.]]> 2025-01-06T21:12:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/firescam-android-spyware-campaign-significant-threat-worldwide www.secnews.physaphae.fr/article.php?IdArticle=8634261 False Malware,Threat,Mobile None 2.0000000000000000 Dark Reading - Informationweek Branch EagerBee Backdoor Takes Flight Against Mideast ISPs, Government Targets The malware, operated by China-backed cyberattackers, has been significantly fortified with new evasive and post-infection capabilities.]]> 2025-01-06T19:42:30+00:00 https://www.darkreading.com/cyberattacks-data-breaches/eagerbee-backdoor-middle-east-isps-government-targets www.secnews.physaphae.fr/article.php?IdArticle=8634226 False Malware None 2.0000000000000000 Dark Reading - Informationweek Branch IoT\\'s Regulatory Reckoning Is Overdue New security regulations are more than compliance hurdles - they\'re opportunities to build better products, restore trust, and lead the next chapter of innovation.]]> 2025-01-06T15:00:00+00:00 https://www.darkreading.com/ics-ot-security/iot-regulatory-reckoning-overdue www.secnews.physaphae.fr/article.php?IdArticle=8634177 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Will AI Code Generators Overcome Their Insecurities This Year? In just two years, LLMs have become standard for developers - and non-developers - to generate code, but companies still need to improve security processes to reduce software vulnerabilities.]]> 2025-01-06T14:33:58+00:00 https://www.darkreading.com/application-security/will-ai-code-generators-overcome-their-insecurities-2025 www.secnews.physaphae.fr/article.php?IdArticle=8634278 False Vulnerability None 3.0000000000000000 Dark Reading - Informationweek Branch Thousands of Buggy BeyondTrust Systems Remain Exposed Weeks after the critical vulnerability was reported and a hacking of the Treasury Department, nearly 9,000 BeyondTrust instances remain wide open to the Internet, researchers say.]]> 2025-01-03T22:41:51+00:00 https://www.darkreading.com/threat-intelligence/thousands-of-buggy-beyondtrust-systems-still-exposed www.secnews.physaphae.fr/article.php?IdArticle=8633259 False Vulnerability None 3.0000000000000000 Dark Reading - Informationweek Branch New HIPAA Cybersecurity Rules Pull No Punches Healthcare organizations of all shapes and sizes will be held to a stricter standard of cybersecurity starting in 2025 with new proposed rules, but not all have the budget for it.]]> 2025-01-03T21:14:42+00:00 https://www.darkreading.com/vulnerabilities-threats/hipaa-security-rules-pull-no-punches www.secnews.physaphae.fr/article.php?IdArticle=8633243 False Medical None 3.0000000000000000 Dark Reading - Informationweek Branch Treasury Dept. Sanctions Chinese Tech Vendor for Complicity Integrity Technology Group was found complicit with Flax Typhoon as part of a broader Chinese strategy to infiltrate the IT systems of US critical infrastructure.]]> 2025-01-03T20:41:57+00:00 https://www.darkreading.com/cybersecurity-operations/treasury-department-sanctions-chinese-tech-vendor www.secnews.physaphae.fr/article.php?IdArticle=8633227 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Apple Offers $95M to Settle Siri Privacy Lawsuit The proposed settlement would amount to roughly $20 per Apple product that has Siri enabled, for each plaintiff.]]> 2025-01-03T17:39:51+00:00 https://www.darkreading.com/cyber-risk/apple-offers-95m-to-settle-siri-privacy-lawsuit www.secnews.physaphae.fr/article.php?IdArticle=8633177 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Why Small Businesses Can\\'t Rely Solely on AI to Combat Threats The growing complexity of cyber threats, paired with limited resources, makes it essential for companies to adopt a more comprehensive approach that combines human vigilance with AI\'s capabilities.]]> 2025-01-03T15:00:05+00:00 https://www.darkreading.com/vulnerabilities-threats/why-small-businesses-cant-rely-solely-ai-combat-threats www.secnews.physaphae.fr/article.php?IdArticle=8633131 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Chrome Extension Compromises Highlight Software Supply Challenges The Christmas Eve compromise of data-security firm Cyberhaven\'s Chrome extension spotlights the challenges in shoring up third-party software supply chains.]]> 2025-01-03T14:00:00+00:00 https://www.darkreading.com/application-security/chrome-extension-compromises-highlight-software-supply-challenges www.secnews.physaphae.fr/article.php?IdArticle=8633112 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Proposed HIPAA Amendments Will Close Healthcare Security Gaps The changes to the healthcare privacy regulation with technical controls such as network segmentation, multi-factor authentication, and encryption. The changes would strengthen cybersecurity protections for electronic health information and address evolving threats against healthcare entities.]]> 2025-01-02T21:30:43+00:00 https://www.darkreading.com/cyber-risk/proposed-hipaa-amendments-close-healthcare-security-gaps www.secnews.physaphae.fr/article.php?IdArticle=8632953 False Medical,Technical None 2.0000000000000000 Dark Reading - Informationweek Branch CDAO Sponsors Crowdsourced AI Assurance Pilot in the Context of Military Medicine 2025-01-02T21:18:36+00:00 https://www.darkreading.com/application-security/cdao-sponsors-crowdsourced-ai-assurance-pilot-in-the-context-of-military-medicine www.secnews.physaphae.fr/article.php?IdArticle=8632879 False None None 2.0000000000000000 Dark Reading - Informationweek Branch UN General Assembly Adopts Cybercrime Treaty 2025-01-02T21:03:05+00:00 https://www.darkreading.com/cybersecurity-operations/un-general-assembly-adopts-cybercrime-treaty www.secnews.physaphae.fr/article.php?IdArticle=8632880 False None None 2.0000000000000000 Dark Reading - Informationweek Branch VicOne and Zero Day Initiative (ZDI) to Lead Pwn2Own Automotive 2025-01-02T20:53:57+00:00 https://www.darkreading.com/application-security/vicone-and-zero-day-initiative-zdi-to-lead-pwn2own-automotive www.secnews.physaphae.fr/article.php?IdArticle=8632859 False Threat None 3.0000000000000000 Dark Reading - Informationweek Branch US Soldier Arrested in Verizon, AT&T Hacks Wagenius posted about hacking more than 15 telecom providers on the Telegram messaging service.]]> 2025-01-02T20:15:51+00:00 https://www.darkreading.com/cyberattacks-data-breaches/us-soldier-arrested-in-verizon-at-t-hack www.secnews.physaphae.fr/article.php?IdArticle=8632860 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Unpatched Active Directory Flaw Can Crash Any Microsoft Server Windows servers are vulnerable to a dangerous LDAP vulnerability that could be used to crash multiple servers at once and should be patched immediately.]]> 2025-01-02T16:28:38+00:00 https://www.darkreading.com/vulnerabilities-threats/active-directory-flaw-can-crash-any-microsoft-server-connected-to-the-internet www.secnews.physaphae.fr/article.php?IdArticle=8632861 False Vulnerability None 2.0000000000000000 Dark Reading - Informationweek Branch Volkswagen Breach Exposes Data of 800K EV Customers Ethical hacking group Chaos Computer Club uncovered exposed data of electrical vehicle owners across the company\'s VW, Audi, Seat, and Skoda brands.]]> 2025-01-02T16:21:56+00:00 https://www.darkreading.com/cyberattacks-data-breaches/volkswagen-breach-exposes-data-of-800k-customers www.secnews.physaphae.fr/article.php?IdArticle=8632807 False None None 3.0000000000000000 Dark Reading - Informationweek Branch \\'Bad Likert Judge\\' Jailbreak Bypasses Guardrails of OpenAI, Other Top LLMs A novel technique to stump artificial intelligence (AI) text-based systems increases the likelihood of a successful cyberattack by 60%.]]> 2025-01-02T14:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/bad-likert-judge-jailbreak-bypasses-guardrails-openai-other-llms www.secnews.physaphae.fr/article.php?IdArticle=8632756 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Managing Cloud Risks Gave Security Teams a Big Headache in 2024 The results of Dark Reading\'s 2024 Strategic Security survey suggest that security teams continue to grapple with the challenges that come with increased cloud adoption such as data visibility and loss of controls. Managing cloud risks will be a focus for security teams in 2025.]]> 2024-12-31T20:19:30+00:00 https://www.darkreading.com/cloud-security/managing-cloud-risks-big-headache-2024 www.secnews.physaphae.fr/article.php?IdArticle=8632739 False Cloud None 2.0000000000000000 Dark Reading - Informationweek Branch Cybersecurity Lags in Middle East Business Development The fast growing region has its own unique cyber issues - and it needs its own talent to fight them.]]> 2024-12-31T20:07:09+00:00 https://www.darkreading.com/vulnerabilities-threats/cybersecurity-lags-middle-east-business-development www.secnews.physaphae.fr/article.php?IdArticle=8632148 False None None 2.0000000000000000 Dark Reading - Informationweek Branch 6 AI-Related Security Trends to Watch in 2025 AI tools will enable significant productivity and efficiency benefits for organizations in the coming year, but they also will exacerbate privacy, governance, and security risks.]]> 2024-12-31T14:00:00+00:00 https://www.darkreading.com/cyber-risk/6-ai-related-security-trends-watch-2025 www.secnews.physaphae.fr/article.php?IdArticle=8632038 False Tool None 2.0000000000000000 Dark Reading - Informationweek Branch Chinese State Hackers Breach US Treasury Department In what\'s being called a \'major cybersecurity incident,\' Beijing-backed adversaries broke into cyber vendor BeyondTrust to access US Department of Treasury workstations and steal unclassified data, according to a letter sent to lawmakers.]]> 2024-12-30T22:02:04+00:00 https://www.darkreading.com/cyberattacks-data-breaches/chinese-state-hackers-breach-us-treasury-department www.secnews.physaphae.fr/article.php?IdArticle=8631827 False None None 2.0000000000000000 Dark Reading - Informationweek Branch How to Get the Most Out of Cyber Insurance Cyber insurance should augment your cybersecurity strategy - not replace it.]]> 2024-12-30T15:00:00+00:00 https://www.darkreading.com/cyber-risk/get-most-out-cyber-insurance www.secnews.physaphae.fr/article.php?IdArticle=8631678 False None None 2.0000000000000000 Dark Reading - Informationweek Branch What Security Lessons Did We Learn in 2024? Proactive defenses, cross-sector collaboration, and resilience are key to combating increasingly sophisticated threats.]]> 2024-12-30T14:00:00+00:00 https://www.darkreading.com/cyber-risk/security-lessons-learn-2024 www.secnews.physaphae.fr/article.php?IdArticle=8631660 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Deepfakes, Quantum Attacks Loom Over APAC in 2025 Organizations in the region should expect to see threat actors accelerate their use of AI tools and mount ongoing "harvest now, decrypt later" attacks for various malicious use cases.]]> 2024-12-30T01:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/deepfakes-quantum-attacks-apac-2025 www.secnews.physaphae.fr/article.php?IdArticle=8630615 False Tool,Threat None 2.0000000000000000 Dark Reading - Informationweek Branch Hackers Are Hot for Water Utilities The US water sector suffered a stream of cyberattacks over the past year and half, from a mix of cybercriminals, hacktivists, and nation-state hacking teams. Here\'s how the industry and ICS/OT security experts are working to better secure vulnerable drinking and wastewater utilities.]]> 2024-12-27T14:00:00+00:00 https://www.darkreading.com/ics-ot-security/hackers-hot-water-utilities www.secnews.physaphae.fr/article.php?IdArticle=8630595 False Industrial None 3.0000000000000000 Dark Reading - Informationweek Branch Defining & Defying Cybersecurity Staff Burnout Sometimes it feels like burnout is an inevitable part of working in cybersecurity. But a little bit of knowledge can help you and your staff stay healthy.]]> 2024-12-27T14:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/defining-defying-cybersecurity-staff-burnout www.secnews.physaphae.fr/article.php?IdArticle=8630596 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Quantum Computing Advances in 2024 Put Security In Spotlight The work on quantum computing hit some major milestones in 2024, making the path to a workable quantum computer seem closer than ever. Google, Microsoft, and other research efforts hit significant milestones this year, but is the cybersecurity world ready?]]> 2024-12-27T13:37:08+00:00 https://www.darkreading.com/cyber-risk/quantum-computing-advances-2024-security-spotlight www.secnews.physaphae.fr/article.php?IdArticle=8630597 False None None 2.0000000000000000 Dark Reading - Informationweek Branch SEC Disclosures Up, But Not Enough Details Provided While companies have responded to the new SEC rules by disclosing incidents promptly, many of the reports don\'t meet the SEC\'s "material" standard.]]> 2024-12-26T15:03:13+00:00 https://www.darkreading.com/cyber-risk/sec-disclosures-up-but-not-enough-details www.secnews.physaphae.fr/article.php?IdArticle=8630238 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Emerging Threats & Vulnerabilities to Prepare for in 2025 From zero-day exploits to 5G network vulnerabilities, these are the threats that are expected to persist over the next 12 months.]]> 2024-12-26T14:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/emerging-threats-vulnerabilities-prepare-2025 www.secnews.physaphae.fr/article.php?IdArticle=8630223 False Vulnerability,Threat,Prediction None 3.0000000000000000 Dark Reading - Informationweek Branch DDoS Attacks Surge as Africa Expands Its Digital Footprint As organizations on the continent expand their use of digital technologies, they increasingly face many of the same threats that entities in other regions have had to deal with for years.]]> 2024-12-26T08:00:00+00:00 https://www.darkreading.com/cloud-security/ddos-attacks-surge-africa-digital-footprint www.secnews.physaphae.fr/article.php?IdArticle=8630128 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Too Much \\'Trust,\\' Not Enough \\'Verify\\' "Zero trust" doesn\'t mean "zero testing."]]> 2024-12-24T15:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/too-much-trust-not-enough-verify www.secnews.physaphae.fr/article.php?IdArticle=8629538 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Trump 2.0 Portends Big Shift in Cybersecurity Policies Changes at CISA and promises of more public-private partnerships and deregulation are just a few ways the incoming administration could upend the feds\' role in cybersecurity.]]> 2024-12-24T14:00:00+00:00 https://www.darkreading.com/cybersecurity-operations/trump-20-portends-shift-cybersecurity-policies www.secnews.physaphae.fr/article.php?IdArticle=8629522 False None None 3.0000000000000000 Dark Reading - Informationweek Branch DNSSEC Denial-of-Service Attacks Show Technology\\'s Fragility The security extensions for the Domain Name System aimed to make the Internet more reliable, but instead the technology has exchanged one set of problems for another.]]> 2024-12-24T13:40:58+00:00 https://www.darkreading.com/cloud-security/dnssec-denial-of-service-attacks-show-fragility www.secnews.physaphae.fr/article.php?IdArticle=8629523 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Non-Human Identities Gain Momentum, Requires Both Management, Security The number of Non-Human Identities (NHIs) in many organizations has exploded. Key trends, drivers, and market landscape in this fast-developing area are explored.]]> 2024-12-23T19:48:08+00:00 https://www.darkreading.com/cybersecurity-operations/non-human-identities-gain-momentum-requires-both-management-security www.secnews.physaphae.fr/article.php?IdArticle=8629263 False None None 2.0000000000000000 Dark Reading - Informationweek Branch How CISOs Can Communicate With Their Boards Effectively With the increased frequency of board reporting, CISOs need to ensure their interactions are brief, productive, and valuable.]]> 2024-12-23T15:00:00+00:00 https://www.darkreading.com/cybersecurity-operations/how-cisos-communicate-boards-effectively www.secnews.physaphae.fr/article.php?IdArticle=8629146 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Middle East Cyberwar Rages On, With No End in Sight Since October 2023, cyberattacks among countries in the Middle East have persisted, fueled by the conflict between Israel and Hamas, reeling in others on a global scale.]]> 2024-12-23T14:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/middle-east-cyberwar-rages-no-end-sight www.secnews.physaphae.fr/article.php?IdArticle=8629125 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Name That Toon: Sneaking Around Feeling creative? Submit your caption and our panel of experts will reward the winner with a $25 gift card.]]> 2024-12-23T13:52:53+00:00 https://www.darkreading.com/vulnerabilities-threats/name-that-toon-sneaking-around www.secnews.physaphae.fr/article.php?IdArticle=8629264 False None None 3.0000000000000000 Dark Reading - Informationweek Branch How to Protect Your Environment from the NTLM Vulnerability This Tech Tip outlines what enterprise defenders need to do to protect their enterprise environment from the new NTLM vulnerability.]]> 2024-12-20T19:25:41+00:00 https://www.darkreading.com/endpoint-security/how-to-protect-your-environment-from-the-ntlm-vulnerability www.secnews.physaphae.fr/article.php?IdArticle=8628081 False Vulnerability None 3.0000000000000000 Dark Reading - Informationweek Branch US Ban on TP-Link Routers More About Politics Than Exploitation Risk While a number of threat groups have used TP-Link bugs to infiltrate networks, a proposed ban of the company\'s popular routers is more about geopolitics than actual cybersecurity - and that may not be a bad thing.]]> 2024-12-20T17:23:44+00:00 https://www.darkreading.com/endpoint-security/us-ban-tp-link-routers-politics-exploitation-risk www.secnews.physaphae.fr/article.php?IdArticle=8628040 False Threat None 2.0000000000000000 Dark Reading - Informationweek Branch LockBit Ransomware Developer Arrested in Israel Dual Russian-Israeli national Rostislav Panev was arrested last August and is facing extradition to the US for playing a critical role in LockBit\'s RaaS activities, dating back to the ransomware gang\'s origins.]]> 2024-12-20T17:00:23+00:00 https://www.darkreading.com/cyberattacks-data-breaches/lockbit-ransomware-developer-arrested-israel www.secnews.physaphae.fr/article.php?IdArticle=8628060 False Ransomware None 3.0000000000000000 Dark Reading - Informationweek Branch How Nation-State Cybercriminals Are Targeting the Enterprise Combating nation-state threat actors at the enterprise level requires more than just cyber readiness and investment - it calls for a collaborative effort.]]> 2024-12-20T15:00:00+00:00 https://www.darkreading.com/vulnerabilities-threats/how-nation-state-cybercriminals-target-enterprise www.secnews.physaphae.fr/article.php?IdArticle=8627987 False Threat None 3.0000000000000000 Dark Reading - Informationweek Branch Managing Threats When Most of the Security Team Is Out of the Office During holidays and slow weeks, teams thin out and attackers move in. Here are strategies to bridge gaps, stay vigilant, and keep systems secure during those lulls.]]> 2024-12-20T14:38:07+00:00 https://www.darkreading.com/cybersecurity-operations/managing-threats-when-security-on-vacation www.secnews.physaphae.fr/article.php?IdArticle=8627988 False None None 3.0000000000000000 Dark Reading - Informationweek Branch OT/ICS Engineering Workstations Face Barrage of Fresh Malware Cyberattacks against OT/ICS engineering workstations are widely underestimated, according to researchers who discovered malware designed to shut down Siemens workstation engineering processes.]]> 2024-12-19T22:45:48+00:00 https://www.darkreading.com/vulnerabilities-threats/ot-ics-engineering-workstations-malware www.secnews.physaphae.fr/article.php?IdArticle=8627701 False Malware,Industrial None 3.0000000000000000 Dark Reading - Informationweek Branch Fortinet Addresses Unpatched Critical RCE Vector Fortinet has patched CVE-2023-34990 in its Wireless LAN Manager (FortiWLM), which combined with CVE-2023-48782 could allow for unauthenticated remote code execution (RCE) and the ability to read all log files.]]> 2024-12-19T22:29:13+00:00 https://www.darkreading.com/vulnerabilities-threats/fortinet-addresses-unpatched-critical-rce-vector www.secnews.physaphae.fr/article.php?IdArticle=8627702 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Orgs Scramble to Fix Actively Exploited Bug in Apache Struts 2 A newly discovered vulnerability, CVE-2024-53677, in the aging Apache framework is going to cause major headaches for IT teams, since patching isn\'t enough to fix it.]]> 2024-12-19T17:46:16+00:00 https://www.darkreading.com/application-security/actively-exploited-bug-struts-2 www.secnews.physaphae.fr/article.php?IdArticle=8627632 False Vulnerability,Patching None 2.0000000000000000 Dark Reading - Informationweek Branch Malvertisers Fool Google With AI-Generated Decoy Content Seemingly innocent "white pages," including an elaborate Star Wars-themed site, are bypassing Google\'s malvertising filters, showing up high in search results to lure users to second-stage phishing sites.]]> 2024-12-19T16:45:11+00:00 https://www.darkreading.com/cloud-security/malvertisers-fool-google-ai-generated-decoy-content www.secnews.physaphae.fr/article.php?IdArticle=8627591 False None None 2.0000000000000000 Dark Reading - Informationweek Branch CISA Releases Draft of National Cyber Incident Response Plan The draft of the long-awaited update to the NCIRP outlines the efforts, mechanisms, involved parties, and decisions the US government will use in response to a large-scale cyber incident.]]> 2024-12-19T15:56:27+00:00 https://www.darkreading.com/cyberattacks-data-breaches/cisa-releases-draft-of-national-cyber-incident-response-plan www.secnews.physaphae.fr/article.php?IdArticle=8627385 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Supply Chain Risk Mitigation Must Be a Priority in 2025 A balance of rigorous supplier validation, purposeful data exposure, and meticulous preparation is key to managing and mitigating risk.]]> 2024-12-19T15:00:00+00:00 https://www.darkreading.com/cyberattacks-data-breaches/supply-chain-risk-mitigation-priority-2025 www.secnews.physaphae.fr/article.php?IdArticle=8627543 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Vendors, Attackers Chase Potential of Non-Human ID Mgmt Non-human identities authenticate machine-to-machine communication. The big challenge now is to secure their elements and processes - and integrate them with human identity info.]]> 2024-12-19T13:40:49+00:00 https://www.darkreading.com/identity-access-management-security/vendors-attackers-chase-potential-of-non-human-identities www.secnews.physaphae.fr/article.php?IdArticle=8627544 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Bridging the \\'Keyboard-to-Chair\\' Gap With Identity Verification Modern identity verification (IDV) approaches aim to connect digital credentials and real-world identity without sacrificing usability.]]> 2024-12-19T13:34:54+00:00 https://www.darkreading.com/identity-access-management-security/bridging-the-keyboard-to-chair-gap-with-identity-verification www.secnews.physaphae.fr/article.php?IdArticle=8627519 False None None 2.0000000000000000 Dark Reading - Informationweek Branch India Sees Surge in API Attacks, Especially in Banking, Utilities The number of DDoS-related incidents targeting APIs have jumped by 30x compared with traditional Web assets, suggesting that attackers see the growing API landscape as the more attractive target.]]> 2024-12-19T03:30:00+00:00 https://www.darkreading.com/cyber-risk/india-surge-api-attacks-banking-utilities www.secnews.physaphae.fr/article.php?IdArticle=8627338 False None None 3.0000000000000000 Dark Reading - Informationweek Branch Interpol: Can We Drop the Term \\'Pig Butchering\\'? The agency asks the cybersecurity community to adopt "romance baiting" in place of dehumanizing language.]]> 2024-12-18T20:44:33+00:00 https://www.darkreading.com/cyberattacks-data-breaches/interpol-time-drop-term-pig-butchering www.secnews.physaphae.fr/article.php?IdArticle=8627241 False None None 2.0000000000000000 Dark Reading - Informationweek Branch Recorded Future: Russia\\'s \\'Undesirable\\' Designation Is a Compliment The threat intelligence business, which is set to be acquired by Mastercard for billions, is officially vendor non grata in Putin\'s regime.]]> 2024-12-18T20:23:22+00:00 https://www.darkreading.com/threat-intelligence/recorded-future-russias-undesirable-designation-compliment www.secnews.physaphae.fr/article.php?IdArticle=8627242 False Threat None 2.0000000000000000