Ex-WhatsApp Security Chief Sues Meta Over Vulnerabilities, Retaliation

Attaullah Baig has filed a lawsuit against Meta and its executives, accusing them of retaliation over critical cybersecurity failures.
The post Ex-WhatsApp Security Chief Sues Meta Over Vulnerabilities, Retaliation appeared first on SecurityWeek.
Continue reading Ex-WhatsApp Security Chief Sues Meta Over Vulnerabilities, Retaliation

Mitsubishi Electric to Acquire Nozomi Networks for Nearly $1 Billion

The industrial cybersecurity firm will become a wholly owned subsidiary of Mitsubishi Electric.
The post Mitsubishi Electric to Acquire Nozomi Networks for Nearly $1 Billion appeared first on SecurityWeek.
Continue reading Mitsubishi Electric to Acquire Nozomi Networks for Nearly $1 Billion

Chinese Spies Impersonated US Lawmaker to Deliver Malware to Trade Groups: Report 

China’s APT41 sent out malicious emails on behalf of Rep. John Moolenaar to collect information ahead of US-China trade talks.
The post Chinese Spies Impersonated US Lawmaker to Deliver Malware to Trade Groups: Report  appeared first on SecurityWeek.
Continue reading Chinese Spies Impersonated US Lawmaker to Deliver Malware to Trade Groups: Report 

GitHub Workflows Attack Affects Hundreds of Repos, Thousands of Secrets

A supply chain attack called GhostAction has enabled threat actors to steal secrets and exploit them.
The post GitHub Workflows Attack Affects Hundreds of Repos, Thousands of Secrets appeared first on SecurityWeek.
Continue reading GitHub Workflows Attack Affects Hundreds of Repos, Thousands of Secrets

Fintech Firm Wealthsimple Says Supply Chain Attack Resulted in Data Breach

Canadian firm Wealthsimple says a data breach impacts the information of some customers, but accounts and funds remain secure.
The post Fintech Firm Wealthsimple Says Supply Chain Attack Resulted in Data Breach appeared first on SecurityWeek.
Continue reading Fintech Firm Wealthsimple Says Supply Chain Attack Resulted in Data Breach

AI Supply Chain Attack Method Demonstrated Against Google, Microsoft Products

An AI supply chain issue named Model Namespace Reuse can allow attackers to deploy malicious models and achieve code execution.
The post AI Supply Chain Attack Method Demonstrated Against Google, Microsoft Products appeared first on SecurityWeek.
Continue reading AI Supply Chain Attack Method Demonstrated Against Google, Microsoft Products