Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

ThreatMate has raised $3.2 million in seed funding for its AI-powered attack surface management solution for MSPs.

Noteworthy stories that might have slipped under the radar: NanoLock Security ceases operations, NSO publishes transparency report, cybersecurity salaries data.  

Hospital Sisters Health System says the personal information of 883,000 individuals was compromised in a 2023 crippling cyberattack.

UK engineering firm IMI says it suffered a cyberattack that resulted in unauthorized access to some of its systems.

University Diagnostic Medical Imaging and Allegheny Health Network have disclosed data breaches impacting approximately 430,000 patients.

An analysis by Chainalysis shows that ransomware payments dropped to $813 million in 2024, from $1.25 billion in 2023. 

Trimble Cityworks is affected by a zero-day vulnerability that has been exploited in attacks involving the delivery of malware.

A bipartisan duo in the the U.S. House is proposing legislation to ban the Chinese artificial intelligence app DeepSeek from federal devices.

Zimperium warns that threat actors have stolen the information of tens of thousands of Android users in India using over 1,000 malicious applications.

Astra Security and Invary have received new funding to fuel development of their vulnerability scanning and runtime security solutions.

Spanish authorities have arrested an individual who allegedly hacked several high-profile organizations, including NATO and the US army.

People on the Move

Gigamon has promoted Tony Jarjoura to CFO and Ram Bhide has been hired as Senior VP of engineering.

Cloud security firm Mitiga has appointed Charlie Thomas as Chief Executive Officer.

Cynet announced the appointment of Jason Magee as Chief Executive Officer.

Ajay Garg has joined Saviynt as Chief Development Officer.

Penetration testing and offensive security firm Cobalt has named Gunter Ollmann as Chief Technology Officer.

More People On The Move
Healthcare data breach Healthcare data breach

Hospital Sisters Health System says the personal information of 883,000 individuals was compromised in a 2023 crippling cyberattack.

DeepSeek Ban DeepSeek Ban

A bipartisan duo in the the U.S. House is proposing legislation to ban the Chinese artificial intelligence app DeepSeek from federal devices.

Natohub hacker arrested Natohub hacker arrested

Spanish authorities have arrested an individual who allegedly hacked several high-profile organizations, including NATO and the US army.

Top Cybersecurity Headlines

David Kennedy is a hacker. There is no doubt about that. He has qualities common among hackers, but also many differences.

Multiple Zyxel legacy DSL CPE products are affected by exploited zero-day vulnerabilities that will not be patched.

AMD has released patches for a microprocessor vulnerability found by Google that could allow an attacker to load malicious microcode.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Examine the state of cybersecurity in the context of quantum computing and artificial intelligence. Discuss the implications of the new White House administration’s cybersecurity policies and how they will influence the industry’s direction in 2025 and beyond.

Register

Dive into critical topics such as incident response, threat intelligence, and attack surface management. Learn how to align cyber resilience plans with business objectives to reduce potential impacts and secure your organization in an ever-evolving threat landscape.

Watch Now

Upcoming Cybersecurity Events

The AI Risk Summit brings together security and risk management executives, AI researchers, policy makers, software developers and influential business and government stakeholders. [June 2025, Stay Tuned]

Learn More

SecurityWeek’s CISO Forum Summer Summit & Golf Classic will take place June 25-26 at the Ritz-Carlton, Half Moon Bay, CA

Learn More

SecurityWeek’s Ransomware Resilience and Recovery Summit helps businesses to plan, prepare, and recover from a ransomware incident.(February 26, 2025)

Learn More

Supply Chain Security Summit
Join us as we explore the critical nature of software and vendor supply chain security issues with a focus on understanding how attacks against identity infrastructure come with major cascading effects. (March 19, 2025)

Learn More

Vulnerabilities

Cybercrime

Thousands of Unreleased Michael Jackson Songs Accessed and Downloaded By Attackers. Other Compromised Works Include Songs From Jimi Hendrix, Paul Simon, the Foo Fighters, and others.The plot thickens, and Sony once again has found itself in the news surrounding another hacking-related incident. This time around, the breach doesn’t appear to be in regard any lost user data or customer accounts, but instead, some valuable property owned by the record company.

EnCase 7 Expands on Device Support, Encryption, and User Experience Guidance Software announced some enhancements to its EnCase forensics tool last week at the RSA Conference, which expands on its existing platform and compliance-related investigation needs within the enterprise.

Cybersecurity and hacking incidents have made a significant shift over the past two years from previously only being reported in technology-focused publications, to now often covered by mainstream media. While the Stuxnet worm is nothing new to information security professionals, CBS's “60 Minutes” will broadcast a segment on topic of Stuxnet this Sunday and bring the incident to the attention of milllions of Americans.

The Department of Justice announced on Friday that a Redmond, Oregon, man who provided products and services to help users steal Internet services, was convicted on Thursday of seven counts of wire fraud.According the Department of Justice, Ryan Harris, 26, owned and operated TCNISO, a company that distributed hardware and software tools that let users modify their cable modems in order to disguise themselves as legit customers and obtain Internet service without paying.

Report Shows Serious Weakness In NASA's Cyber Security Posture, Reveals Several Breaches and Security Incidents at the Space AgencyRecent testimony by NASA Inspector General Paul K. Martin before the Subcommittee on Investigations and Oversight, House Committee on Science, Space, and Technology, revealed that NASA faces serious challenges when it comes to protecting its information and systems from cyber attacks.

SAN FRANCISCO -- RSA CONFERENCE 2012 -- Qualys CEO Philippe Courtot is pushing a new initiative aimed at taking on security issues fundamental to the Internet.The effort will be led by the Trustworthy Internet Movement (TIM), a nonprofit created to take on issues such as SSL governance and the spread of botnets and malware. TIM is built around three core pillars:

SAN FRANCISCO – RSA CONFERENCE 2012 – Organizations with large and disparate IT systems are often challenged in dealing with vulnerability management initiatives and determining what order vulnerabilities should be addressed in order to more effectively improve their risk posture.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Cloud Security

Application Security

APIs are easy to develop, simple to implement, and frequently attacked. They are  prime and lucrative targets for cybercriminals. 

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.