CONFERENCE Watch Now: Threat Detection & Incident Response (TDIR) Summit - Watch Event On-Demand
Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Signal said the privacy feature is on by default for every Windows 11 user to block Microsoft from taking screenshots for Windows Recall.

Noteworthy stories that might have slipped under the radar: serious vulnerabilities found in a Volkswagen app, Australian hacker DR32 sentenced in the US, and Immersive launches OT security training solution.

SecurityWeek’s 2025 Threat Detection & Incident Response (TDIR) Summit took place as a virtual summit on May 21st.

Russian national Rustam Gallyamov was indicted in the US for his leading role in the development and distribution of Qakbot malware.

CISA warns companies of a widespread campaign targeting a Commvault vulnerability to hack Azure environments.

A Chinese threat actor exploited a zero-day vulnerability in Trimble Cityworks to hack local government entities in the US.

The DanaBot botnet ensnared over 300,000 devices and caused more than $50 million in damages before being disrupted.

A Chinese espionage group has been chaining two recent Ivanti EPMM vulnerabilities in attacks against organizations in multiple critical sectors.

Akamai documents a privilege escalation flaw in Windows Server 2025 after Redmond declines to ship an immediate patch.

Marlboro-Chesterfield Pathology has been targeted by the SafePay ransomware group, which stole personal information from its systems.

UK retailer Marks & Spencer expects the disruptions caused by the recent cyberattack to continue through July. 

People on the Move

Jeremy Koppen has left Mandiant after 13 years to become the CISO of Equifax.

Engineering and technology solutions provider Amentum has appointed Max Shier as its CISO.

PAM provider Keeper Security has appointed Shane Barney as its Chief Information Security Officer.

SpecterOps has appointed Tim Bender as CFO, Pat Sheridan as CRO, and Bryce Hein as CMO.

CISA has officially announced the appointment of Madhu Gottumukkala as its new deputy director.

More People On The Move
DanaBot botnet disrupted DanaBot botnet disrupted

The DanaBot botnet ensnared over 300,000 devices and caused more than $50 million in damages before being disrupted.

Marks&Spencer cyberattack Marks&Spencer cyberattack

UK retailer Marks & Spencer expects the disruptions caused by the recent cyberattack to continue through July. 

ICS honeypot scanning ICS honeypot scanning

Many of the industrial control system (ICS) instances seen in internet scanning are likely or possibly honeypots, not real devices.

Top Cybersecurity Headlines

Pwn2Own participants demonstrated exploits against VMs, AI, browsers, servers, containers, and operating systems.

The 15th edition of NATO’s Locked Shields cyber defense exercise brought together 4,000 experts from 41 countries.

American steel giant Nucor on Wednesday disclosed a cybersecurity incident that bears the hallmarks of a ransomware attack.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this event as we dive into threat hunting tools and frameworks, and explore value of threat intelligence data in the defender’s security stack.

Register

Join this webinar for a fascinating discussion to understand why data in itself is not enough to make informed decisions for prioritization.

Register

Upcoming Cybersecurity Events

The AI Risk Summit brings together security and risk management executives, AI researchers, policy makers, software developers and influential business and government stakeholders. [August 19-20, 2025 | Ritz-Carlton, Half Moon Bay]

Learn More

SecurityWeek’s CISO Forum Summer Summit & Golf Classic will take place August 19-20 at the Ritz-Carlton, Half Moon Bay, CA. (www.cisoforum.com)

Learn More

The Threat Detection & Incident Response Summit delves into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization. [May 21, 2025 – Virtual]

Learn More

SecurityWeek’s Cloud and Data Security Summit returns with a deliberate focus on exposed attack surfaces and weaknesses in public cloud infrastructure and APIs. [July 16, 2025 – Virtual]

Learn More

Vulnerabilities

Cybercrime

After publishing the leaks given to them by Edward Snowden, a former technical assistant for the CIA and NSA contractor due to his job Booz Allen Hamilton, the Guardian has revealed another interesting fact: President Obama ordered a list of foreign cyber targets as part of Presidential Policy Directive 20, issued late last year. 

Researchers at Kaspersky Lab have discovered an Android Trojan so advanced, that during the first examination, the company said, the research team knew it was special. In a blog post describing the function of the latest Android threat, Kaspersky noted that the complexity in the Trojan’s code is similar to Windows malware.

WASHINGTON - The United States' top intelligence official angrily defended his government's secret monitoring of Internet users Saturday, insisting the vast operation is both legal and vital to national security.

SAN FRANCISCO - Google chief Larry Page on Friday branded Internet spying a threat to freedoms and called for governments to be more revealing about what they try to find out about people's online activities.

WASHINGTON - WikiLeaks founder Julian Assange said Friday he fears the whistleblower who exposed a vast US surveillance program could face the same fate as the US soldier who leaked files to his website.

Well, it is probably not quite game-changing yet, or people would be talking about it more. But the Omnibus Rule (PDF) that updated the Health Insurance Portability and Accountability Act (HIPAA) has the potential to be a game changer because of the things it says in writing, as well as some of the things that it doesn’t say.

The Guardian and the Washington Post are on fire this week, crushing the secrecy that used to belong to two intelligence-gathering operations controlled by the FBI and NSA. As a result, there has been a massive backlash against the Obama administration and the Department of Justice, while lawmakers call for an investigation into the latest leak of classified information.

WASHINGTON - The White House defended phone-tapping as a vital tool to combat terrorism Thursday but a further wave of revelations about a vast Internet surveillance program looked certain to trigger fresh outrage.

WASHINGTON - A group of lawmakers proposed legislation Thursday that would deny US entry and freeze the assets of foreign nationals involved in hacking or cybercrimes targeting the United States.

Microsoft is planning for a relatively quiet Patch Tuesday next week that features only one critical security bulletin.The 'Critical' bulletin addresses issues in Internet Explorer. The bulletin will be released alongside four others that are rated 'Important' and affect Microsoft Windows and Office. Those bulletins cover remote code execution, denial-of-service, information disclosure and elevation of privilege issues. 

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Code quality and security firm CodeAnt has secured $2 million in seed funding and it has been valued at $20 million.

Cloud Security

Cloud Security

VMware patches flaws that expose users to data leakage, command execution and denial-of-service attacks. No temporary workarounds available. 

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.