How AI can fix cybersecurity compliance: From dashboards to continuous execution

Most compliance work goes into proving security, not improving it. That isn’t because the rules are unreasonable. Regulators, customers, and cyber insurers are right to expect organizations to implement hundreds of technical and administrative co… Continue reading How AI can fix cybersecurity compliance: From dashboards to continuous execution→

The people who know passkeys best are still typing passwords

Yubico and Okta asked 1,890 technology and security professionals across nine countries how they sign in to work accounts. The most common answer was a username and password, at 43%, from a group in which 87% said they were familiar with passkeys. High… Continue reading The people who know passkeys best are still typing passwords→

Java library vulnerabilities: IBM and Red Hat fix 400+ previously unknown flaws

IBM and Red Hat have found and fixed more than 400 previously unknown vulnerabilities in widely used Java libraries through Lightwell, their program for patching open source code that companies already run in production. Companies running the affected … Continue reading Java library vulnerabilities: IBM and Red Hat fix 400+ previously unknown flaws→

Medical devices patients rely on most are least prepared for quantum attacks

Threat actors are exploiting IT, IoMT, OT and IoT devices across healthcare delivery organizations (HDOs) to deploy ransomware, demand payments and monetize stolen patient data, according to Forescout’s Post-Quantum Cryptography (PQC) in Healthcare: Fr… Continue reading Medical devices patients rely on most are least prepared for quantum attacks→