Security Experts:

Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Ferrari said that a ransomware attack was responsible for a data breach that exposed customer details, but did not impact company operations.

Maryland startup Aembit gets funding to build an identity platform designed to manage, enforce, and audit access between federated workloads.

Cryptocurrency ATM maker General Bytes discloses a security incident resulting in the theft of millions of dollars’ worth of crypto-coins.

Waterfall Security Solutions and TXOne Networks have each announced launching new OT security appliances.

Hitachi Energy has blamed a data breach affecting employees on the recent exploitation of a zero-day vulnerability in Fortra’s GoAnywhere solution.

NBA is notifying individuals that their information was stolen in a data breach at a third-party mailing services provider.

Cybercriminals are abusing the Adobe Acrobat Sign service in a campaign distributing the RedLine information stealer malware.

Conor Brian Fitzpatrick of New York was arrested and charged last week for allegedly running the popular cybercrime forum BreachForums.

Huawei has replaced thousands of product components banned by the US with homegrown versions, its founder has said.

Latitude Financial Services says the personal information of 300,000 customers was stolen in a cyberattack.

Three US government agencies have issued a joint warning to organizations about LockBit 3.0 ransomware attacks.

The recently identified Trigona ransomware has been highly active, targeting tens of organizations globally.

Ferrari ransomware attack and data breach Ferrari ransomware attack and data breach

Ferrari said that a ransomware attack was responsible for a data breach that exposed customer details, but did not impact company operations.

Pompompurin arrested Pompompurin arrested

Conor Brian Fitzpatrick of New York was arrested and charged last week for allegedly running the popular cybercrime forum BreachForums.

Huawei Huawei

Huawei has replaced thousands of product components banned by the US with homegrown versions, its founder has said.

Top Cybersecurity Headlines

Ferrari said that a ransomware attack was responsible for a data breach that exposed customer details, but did not impact company operations.

Maryland startup Aembit gets funding to build an identity platform designed to manage, enforce, and audit access between federated workloads.

Cryptocurrency ATM maker General Bytes discloses a security incident resulting in the theft of millions of dollars’ worth of crypto-coins.

Waterfall Security Solutions and TXOne Networks have each announced launching new OT security appliances.

SecurityWeek Industry Experts

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this webinar to learn best practices that organizations can use to improve both their resilience to new threats and their response times to incidents. (Sponsored by: Immersive Labs)

Register

Join this live webinar as we explore the potential security threats that can arise when third parties are granted access to a sensitive data or systems. (Sponsored by: Saviynt)

Register

Upcoming Virtual Events

Attack Surface Management Summit

As network defenders adopt Attack Surface Management tools to continuously monitor for signs of weaknesses, this event will share best practices and actionable information to reduce risk from exposed attack surfaces.

Learn More
Ransomware Resilience & Recovery Summit

This event will separate hype from reality. SecurityWeek’s Ransomware Resilience and Recovery Summit will help cybersecurity teams to plan, prepare, and recover from ransomware incidents that continue to impose major costs businesses.

Learn More
Supply Chain Security Summit

The surge in software supply chain attacks has sent defenders scrambling to find mitigations and solutions. This event will address the complex nature of the problem, best practices for mitigating security issues, and tools and frameworks available.

Learn More
Zero Trust Strategies Summit

Zero Trust is more than a marketing buzzword. In this event, security experts will decipher the confusing world of Zero Trust, and share war stories on securing organizations by eliminating implicit trust and continuously validating every stage of digital interaction.

Learn More

Vulnerabilities

Cybercrime

Google Account Security ChecklistGoogle today pushed a “Security Checklist,” primarily designed for Gmail users but something useful for all Google Accounts and Google Apps users. Several of the tips are obvious, but some tips and features that Google references may not be commonly used or paid attention to.

New Information Security Resource Provides Guidance that Addresses the People, Process, Organization and Technology Aspects of Information Security. The ISACA this week published the Business Model for Information Security (BMIS), as an educational resource for security professionals and to provide comprehensive guidance that addresses the people, process, organization and technology aspects of information security.

Symantec's New LogoSymantec today officially launched its new company logo. The company says that the new logo “symbolizes the company's focus on enabling confidence and ensuring customers have simple and secure access to their information from anywhere, seamlessly moving between their personal and professional lives.”

Situation Management Solution for Electric Utilities Improves Security Operations and ComplianceOne of the main challenges being faced by electric utilities in the United States today is ensuring effective security operations that can handle incidents in real time, with limited resources across hundreds of sites that are often equipped with thousands of monitored sensors and multiple disparate security and safety systems.

McAfee and Citrix Systems have delivered the first product of a joint collaboration announced earlier this year to make virtual desktop security simpler and more scalable for large enterprise deployments. Released today at the Citrix Synergy conference in Berlin, McAfee Management for Optimized Virtualized Environments AntiVirus (MOVE AV) has been specifically designed for Citrix XenDesktop, helping customers secure corporate data and applications delivered to virtual desktops running on servers in the datacenter.

Cisco ASA 5585-X Adaptive Security Appliance and AnyConnect 3.0 Bring Enhanced Security and Performance Features to the EnterpriseCisco announced new products and services this week across several elements of its “Borderless Network Architecture,” Cisco’s vision of connecting anyone, anywhere, on any device -- securely, reliably, and seamlessly.

A new report issued by Verizon this week on compliance with the Payment Card Industry Data Security Standard (PCI DSS) reveals that only 22 percent of the organizations assessed were PCI compliant at the time of their initial examination. But compliance is worth the trouble. According to the report, organizations that suffer credit card data breaches are 50 percent less likely to be PCI compliant.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

GitHub this week made secret scanning generally available and free for all public repositories.

Cloud Security