$10 Million Bounty on Iranian Hackers for Cyber Attacks on US Gov, Defense Contractors

Four Iranians are accused of hacking into critical systems at the Departments of Treasury and State and dozens of private US companies.
The post $10 Million Bounty on Iranian Hackers for Cyber Attacks on US Gov, Defense Contractors appeared first on Se… Continue reading $10 Million Bounty on Iranian Hackers for Cyber Attacks on US Gov, Defense Contractors

BreachRx Raises $6.5M to Revamp Incident Response Reporting Systems

Investors make an early-stage $6.5 million bet on BreachRx, a startup promising to shield cybersecurity executives from personal liability.
The post BreachRx Raises $6.5M to Revamp Incident Response Reporting Systems appeared first on SecurityWeek.
Continue reading BreachRx Raises $6.5M to Revamp Incident Response Reporting Systems

Cisco Duo Says Hack at Telephony Supplier Exposed MFA SMS Logs

Cisco Duo warns that breach exposed phone numbers, phone carriers, metadata and other logs that could lead to downstream social engineering attacks.
The post Cisco Duo Says Hack at Telephony Supplier Exposed MFA SMS Logs appeared first on SecurityWeek.
Continue reading Cisco Duo Says Hack at Telephony Supplier Exposed MFA SMS Logs

Wiz Acquires Gem Security, Pushes Security Tools Consolidation

Financial terms of the translation were not disclosed but reports out of Tel Aviv valued the deal in the range of $350 million.
The post Wiz Acquires Gem Security, Pushes Security Tools Consolidation appeared first on SecurityWeek.
Continue reading Wiz Acquires Gem Security, Pushes Security Tools Consolidation

US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft

The US government says Midnight Blizzard’s compromise of Microsoft corporate email accounts “presents a grave and unacceptable risk to federal agencies.”
The post US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microso… Continue reading US Government on High Alert as Russian Hackers Steal Critical Correspondence From Microsoft

Zscaler to Acquire Network Segmentation Tech Startup Airgap Networks

Zscaler announces plans to acquire Airgap Networks, a venture-backed startup selling network segmentation and secure access technologies.
The post Zscaler to Acquire Network Segmentation Tech Startup Airgap Networks appeared first on SecurityWeek.
Continue reading Zscaler to Acquire Network Segmentation Tech Startup Airgap Networks

Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets

The US government issues a red-alert for what appears to be a massive supply chain breach at Sisense, a company that sells big-data analytics tools.
The post Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets appeared first … Continue reading Sisense Data Breach Triggers CISA Alert and Urgent Calls for Credential Resets

Microsoft Plugs Gaping Hole in Azure Kubernetes Service Confidential Containers

Patch Tuesday: Microsoft warns that unauthenticated hackers can take complete control of Azure Kubernetes clusters.
The post Microsoft Plugs Gaping Hole in Azure Kubernetes Service Confidential Containers appeared first on SecurityWeek.
Continue reading Microsoft Plugs Gaping Hole in Azure Kubernetes Service Confidential Containers

Patch Tuesday: Code Execution Flaws in Multiple Adobe Software Products

Adobe calls attention to a pair of code execution bugs in Adobe Commerce and Magento Open Source, a product used to manage online stories.
The post Patch Tuesday: Code Execution Flaws in Multiple Adobe Software Products appeared first on SecurityWeek.
Continue reading Patch Tuesday: Code Execution Flaws in Multiple Adobe Software Products