Palo Alto Networks Prisma Cloud 3.0 protects cloud environments from development to runtime

Palo Alto Networks announced Prisma Cloud 3.0, an integrated platform to shift security left—significantly improving organizations’ entire cloud security posture by reducing security risk at runtime. With a customer base that already includes 77% of th… Continue reading Palo Alto Networks Prisma Cloud 3.0 protects cloud environments from development to runtime

Critical RCE in Palo Alto Networks (PAN) firewalls revealed, patch ASAP! (CVE-2021-3064)

The existence of a critical RCE vulnerability (CVE-2021-3064) affecting certain versions of Palo Alto Networks (PAN) firewalls using the GlobalProtect Portal VPN has been revealed by a cybersecurity company that exploited it during red team engagements… Continue reading Critical RCE in Palo Alto Networks (PAN) firewalls revealed, patch ASAP! (CVE-2021-3064)

Kerv acquires Gyrocom to expand its SD-WAN and SASE offerings

Kerv announced the acquisition of Gyrocom, a fast growing network and security integrator with a specialisation in SD-WAN. In addition to SD-WAN, Kerv’s strategic acquisition brings skills in managed networks and network security, including Secure Acce… Continue reading Kerv acquires Gyrocom to expand its SD-WAN and SASE offerings

Lightspin adds four executive members to its Advisory Board and Board of Directors

Lightspin announced the addition of four strategic executive members to its advisory board and board of directors: Guarav Kumar, Srinath Kuruvadi, Steve Pugh, and Ron Zoran. The new members each have an established track record as industry CISOs and cl… Continue reading Lightspin adds four executive members to its Advisory Board and Board of Directors

Hackers with Chinese links breach defense, energy targets, including one in US

Suspected spies using similar tools and tactics to a Chinese government-connected hacking group compromised nine organizations in the defense, education, energy and health care industries across the globe beginning in September, according to new research. The hackers were “indiscriminate” in targeting that included parts of the U.S. Defense Department, according to Palo Alto Networks, which published its findings on Sunday with an assist from the National Security Agency’s Cybersecurity Collaboration Center. That center primarily works with defense contractors to collect and share threat information. At least one of the victims was a U.S. organization, Palo Alto Networks said, but didn’t name the nine compromised entities. The company “believes that the actor’s primary goal involved gaining persistent access to the network and the gathering and exfiltration of sensitive documents from the compromised organization.” The research comes on the heels of a Sept. 16 warning from the Department of Homeland Security’s Cybersecurity […]

The post Hackers with Chinese links breach defense, energy targets, including one in US appeared first on CyberScoop.

Continue reading Hackers with Chinese links breach defense, energy targets, including one in US

SUSE acquires NeuVector to strengthen container management security for customers

SUSE announced the acquisition of NeuVector, a container security company that delivers end-to-end security, from DevOps pipeline vulnerability protection to automated security and compliance in production. Security and compliance have been a long-term… Continue reading SUSE acquires NeuVector to strengthen container management security for customers

Security changes needed to protect corporate networks from non-business IoT devices

Cyber adversaries know that one small IoT sensor can provide entry into a corporate network to launch ransomware attacks and more. According to a survey of IT decision-makers by Palo Alto Networks, 78% of respondents (among those whose organization has… Continue reading Security changes needed to protect corporate networks from non-business IoT devices

Ransomware demands are up more than 500%, the latest concern for insurers

Ransomware attacks aren’t just becoming more frequent, they’re getting more expensive. Scammers demanded an average payment of $5.3 million from hacking victims through the first six months of 2021, though extortion victims paid a median fee in the hundreds of thousands of dollars, according to a new report from the insurer Allianz. The $5.3 million average represents a 518% increase from the 2020 figure, driven in part by demands to pay up to $50 million after a data breach. The highest demand last year was for $30 million, according to the latest report, which did not identify affected organizations by name. Victims paid an average of $570,000 during the first six months, compared to $312,000 in 2020, Palo Alto Networks said. The figures, published Thursday by Allianz, represent the latest glimpse into how ransomware attacks are becoming exponentially more expensive as victim organizations look to insurance providers to cover the […]

The post Ransomware demands are up more than 500%, the latest concern for insurers appeared first on CyberScoop.

Continue reading Ransomware demands are up more than 500%, the latest concern for insurers

Eric Schou joins Cisco AppDynamics as CMO

Cisco AppDynamics has today announced a significant addition to its executive leadership team with the appointment of Eric Schou as Chief Marketing Officer (CMO). The appointment comes at a key moment for AppDynamics as it continues to assert its leade… Continue reading Eric Schou joins Cisco AppDynamics as CMO

Orca Security raises $550M to accelerate transformation of cloud security industry

Orca Security announced that it has raised $550 million in its extended Series C fundraising round led by Temasek, an investment company headquartered in Singapore. The round boosted its valuation 50 percent in just seven months to $1.8 Billion. Orca S… Continue reading Orca Security raises $550M to accelerate transformation of cloud security industry