Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Latest Cybersecurity News

Cynomi announced a new $37 million Series B funding to grow its AI-powered vCISO platform for MSPs and MSSPs.

SquareX offers what it has dubbed a “Browser Detection and Response (BDR)” solution.

Venables has served as CISO and security executive across several large organizations, including Google Cloud, Goldman Sachs, Deutsche Bank.

Lattica has raised $3.25 million in pre-seed funding for a platform that uses FHE to enable AI models to process encrypted data. 

Mandiant’s latest threat report shows how attackers adapt faster than defenses, shifting strategies toward credential theft and insider threats.

With over 12,000 breaches analyzed, this year’s DBIR reveals a landscape shaped by not just individual threats, but by entire economies of compromise.

AI-powered threat protection startup Scamnetic has raised $13 million in a Series A funding round led by Roo Capital.

Software and AI supply chain transparency firm Manifest has raised $15 million in a Series A funding round led by Ensemble VC.

Noteworthy stories that might have slipped under the radar: former Disney employee sent to prison for hacking, MITRE releases ATT&CK v17, DDoS botnet powered by 1.3 million devices.

Multiple South Korean organizations across industries have been targeted in a recent Lazarus campaign dubbed Operation SyncHole.

Hundreds of companies are showcasing their products and services next week at the 2025 edition of the RSA Conference in San Francisco.

People on the Move

Wendi Whitmore has taken the role of Chief Security Intelligence Officer at Palo Alto Networks.

Phil Venables, former CISO of Google Cloud, has joined Ballistic Ventures as a Venture Partner.

David Currie, former CISO of Nubank and Klarna, has been appointed CEO of Vaultree.

Chris Burger has been named Chief Information Security Officer at F5.

Bedrock Security has appointed George Gerchow as Chief Security Officer.

More People On The Move
SAP zero-day exploited SAP zero-day exploited

A zero-day vulnerability in SAP NetWeaver potentially affects more than 10,000 internet-facing applications.

Healthcare data breach Healthcare data breach

Yale New Haven Health System recently discovered that the personal information of millions of patients was stolen from its systems.

Marks&Spencer cyberattack Marks&Spencer cyberattack

British retailer Marks & Spencer has been experiencing certain service disruptions after falling victim to a cyberattack.

Top Cybersecurity Headlines

SK Telecom, South Korea’s largest telecom company, disclosed a data leak involving a malware infection.

Microsoft security chief Charlie Bell says the SFI’s 28 objectives are “near completion” and that 11 others have made “significant progress.”

With unapproved AI tools entrenched in daily workflows, experts say it’s time to shift from monitoring to managing Shadow AI use across the enterprise.

SecurityWeek Industry Experts

More Expert Insights

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

Join this event as we dive into threat hunting tools and frameworks, and explore value of threat intelligence data in the defender’s security stack.

Register

This webinar will guide you in aligning your security testing strategy with the right tools, helping you move beyond identifying weaknesses to effectively validating your overall security posture.

Register

Upcoming Cybersecurity Events

The AI Risk Summit brings together security and risk management executives, AI researchers, policy makers, software developers and influential business and government stakeholders. [August 19-20, 2025 | Ritz-Carlton, Half Moon Bay]

Learn More

SecurityWeek’s CISO Forum Summer Summit & Golf Classic will take place August 19-20 at the Ritz-Carlton, Half Moon Bay, CA. (www.cisoforum.com)

Learn More

The Threat Detection & Incident Response Summit delves into big-picture strategies to reduce attack surfaces, improve patch management, conduct post-incident forensics, and tools and tricks needed in a modern organization. [May 21, 2025 – Virtual]

Learn More

SecurityWeek’s Cloud and Data Security Summit returns with a deliberate focus on exposed attack surfaces and weaknesses in public cloud infrastructure and APIs. [July 16, 2025 – Virtual]

Learn More

Vulnerabilities

Cybercrime

NetQin Mobile, a Beijing based provider of consumer-centric mobile security solutions, today announced that is has opened a Security Research Center in Raleigh, North Carolina.The Security Research Center will focus specifically on identifying and monitoring mobile security threats that could impact consumers.

Most breaches are not the result of hackers, but rather reflect the increase in the risks of the knowledgeable insider related to identity theft and human error. A majority of health organizations are under-prepared to protect patient privacy and secure data as new uses for digital health information emerge and access to confidential patient information expands, according to a new report released today by PricewaterhouseCoopers.

Attacks are Persistent, and Hackers have the Advantage. In the Fight Against Cyber Attacks, Knowledge is Power.Being aware of the methods used by hackers is an important step towards defending attacks on sensitive company data. Knowledge determines how a CEO will defend his ship, and whether or not he can prevent future attacks. Understanding hacker “know-how,” in conjunction with appropriate defense and countermeasures, will help identify potential threats to a company’s network.

Half of the Software Piracy Discovered is Being Committed by Existing Customers Who are Out of Compliance with their Licenses. How Can We Fix This?Many software makers ignore or dismiss the piracy of their products based on misperceptions around who is using it and why. However, by tracking the adoption of unlicensed software, your company can turn the age-old piracy problem into revenue generating business unit as well as source data for marketing. Here’s how.

Adobe today said it would release a Flash Player update tomorrow, September 21, 2011. The out of cycle update will address critical security issues in flash player as well as an important universal cross-site scripting issue that is reportedly being exploited in the wild in targeted attacks.Adobe’s Severity Rating System classifies “Critical” security issues as “a vulnerability, which, if exploited would allow malicious native-code to execute, potentially without a user being aware.”

McAfee Shares its Vision for Securing Mobile Devices in Corporate Environments McAfee unveiled a three-pronged approach to mobile security today with a new set of products.

Internet security company Kaspersky Lab today announced Kaspersky ONE, a "Universal Security" solution that helps users protect a wide selection of platforms and devices with a single license.With the offering, customers can protect multiple devices, including desktops, laptops, smartphones, and Android-based tablets.

Early this month, Juniper Networks conducted an informal survey on the show floor of VMworld 2011. The survey, which garnered responses from some 60 attendees of the Vegas-hosted event, found that more than 77% of respondents ranked security as a top concern for virtualizing workloads. However, the economic benefits of virtualizing are extremely compelling.

IronKey, a company that originally made its mark offering USB-based hardware solutions ranging from flash drives with encrypted storage, to a virtual desktop solution for carrying a secure computer operating system in your pocket, today said it will be selling off that part of its business.This is a strategic move for Sunnyvale, California based IronKey that has decided to focus its efforts on cloud-based solutions to secure access to Internet services.

Event image poster

The leading global conference series for Operations, Control Systems and IT/OT Security professionals to connect on SCADA, DCS PLC and field controller cybersecurity.

Learn More

Application Security

Application Security

Software and AI supply chain transparency firm Manifest has raised $15 million in a Series A funding round led by Ensemble VC.

Cloud Security

CISO Strategy

Venables has served as CISO and security executive across several large organizations, including Google Cloud, Goldman Sachs, Deutsche Bank.

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest cybersecurity news, threats, and expert insights. Unsubscribe at any time.