Project Zero Flags ‘Patch Gap’ Problems on Android

Vulnerability researchers at Google Project Zero are calling attention to the ongoing “patch-gap” problem in the Android ecosystem, warning that downstream vendors continue to be tardy at delivering security fixes to Android-powered devices.
read more Continue reading Project Zero Flags ‘Patch Gap’ Problems on Android

Proofpoint: Watch Out for Nighthawk Hacking Tool Abuse

Security researchers at Proofpoint are calling attention to the discovery of a commercial red-teaming tool called Nighthawk, warning that the command-and-control framework is likely to be abused by threat actors.
read more Continue reading Proofpoint: Watch Out for Nighthawk Hacking Tool Abuse

Palo Alto to Acquire Israeli Software Supply Chain Startup

Cybersecurity powerhouse Palo Alto Networks on Thursday announced plans to spend $195 million in cash to acquire Israeli startup Cider Security, a deal that adds software supply chain security capabilities to its Prisma Cloud platform.
read more Continue reading Palo Alto to Acquire Israeli Software Supply Chain Startup

US Gov Warning: Start Hunting for Iranian APTs That Exploited Log4j

The U.S. government on Wednesday issued a blunt recommendation for organizations running VMWare Horizon servers: Initiate threat-hunting activities to find and expel Iranian APT actors that used the Log4j crisis to slip undetected into corporate networ… Continue reading US Gov Warning: Start Hunting for Iranian APTs That Exploited Log4j

Akeyless Raises $65 Million for Secrets Management Tech

Israeli early-stage startup Akeyless has banked a whopping $65 million in venture capital funding to build technology to help businesses manage credentials, certificates, keys and other secrets flowing through multi-cloud environments.
read more Continue reading Akeyless Raises $65 Million for Secrets Management Tech

Bishop Fox Adds $46 Million to Series B Funding Round

Continuous attack surface management pioneer Bishop Fox continues to attract the attention of investors with the banking of another $46 million in growth funding led by WestCap.
read more Continue reading Bishop Fox Adds $46 Million to Series B Funding Round

Gaping Authentication Bypass Holes in VMWare Workspace One

Virtualization technology giant VMware joined the Patch Tuesday train this week to deliver urgent security patches to its VMWare Workspace One product.
read more Continue reading Gaping Authentication Bypass Holes in VMWare Workspace One

Microsoft Scrambles to Thwart New Zero-Day Attacks

The zero-day attacks against Microsoft’s software products are showing no signs of slowing down.
read more Continue reading Microsoft Scrambles to Thwart New Zero-Day Attacks

Microsoft: China Flaw Disclosure Law Part of Zero-Day Exploit Surge

The world’s largest software maker is warning that China-based nation state threat actors are taking advantage of a one-year-old law to “stockpile” zero-days for use in sustained malware attacks.
read more Continue reading Microsoft: China Flaw Disclosure Law Part of Zero-Day Exploit Surge