Infosec pros: We need CVSS, warts and all

The Common Vulnerability Scoring System has a lot of critics, but experts say it’s still the best unified way to share the severity of cybersecurity flaws.

The post Infosec pros: We need CVSS, warts and all appeared first on CyberScoop.

Continue reading Infosec pros: We need CVSS, warts and all

Here’s all the ways an abandoned cloud instance can cause security issues

Research released Tuesday by watchTowr shows how easy an old storage bucket can be repurposed by malicious attackers.

The post Here’s all the ways an abandoned cloud instance can cause security issues appeared first on CyberScoop.

Continue reading Here’s all the ways an abandoned cloud instance can cause security issues

From credit card fraud to zero-day exploits: Xe Group expanding cybercriminal efforts

The Vietnam-based group has grown more sophisticated since 2013, new research shows.

The post From credit card fraud to zero-day exploits: Xe Group expanding cybercriminal efforts appeared first on CyberScoop.

Continue reading From credit card fraud to zero-day exploits: Xe Group expanding cybercriminal efforts

Department of Justice partners with Dutch police to break up HeartSender network

Also known as “Saim Raza,” the group was allegedly responsible for over $3 million in losses.

The post Department of Justice partners with Dutch police to break up HeartSender network appeared first on CyberScoop.

Continue reading Department of Justice partners with Dutch police to break up HeartSender network

Wiz researchers find sensitive DeepSeek data exposed to internet

Experts for the cloud security firm pulled sensitive data from the service with simple SQL queries.

The post Wiz researchers find sensitive DeepSeek data exposed to internet appeared first on CyberScoop.

Continue reading Wiz researchers find sensitive DeepSeek data exposed to internet

Open-source security spat leads companies to join forces for new tool

A company’s licensing change to a static analysis tool has forced 10 companies together to create Opengrep.

The post Open-source security spat leads companies to join forces for new tool appeared first on CyberScoop.

Continue reading Open-source security spat leads companies to join forces for new tool