A China-linked hacking group has been observed expanding a network of hijacked devices used to disguise cyber-attacks, arming it with several newly discovered pieces of custom malware, researchers have found. Cisco Talos said the actor, an advanced persistent threat (APT)… Read More "China-Linked APT Expands Proxy Network With New Malware"
How to Answer a Security Questionnaire: A 4-Step Guide
A security questionnaire is a crucial part of an organization’s vendor risk assessment process. Client organizations use security questionnaires to gather insights into the security posture of their third-party vendors, such as their information security policies and practices. Ensuring that… Read More "How to Answer a Security Questionnaire: A 4-Step Guide"
Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’
Security researcher Nightmare Eclipse has dropped a fresh zero-day exploit leading to privilege escalation on Windows. Also known as Chaotic Eclipse, the disgruntled researcher released multiple zero-day exploits targeting Microsoft products over the past several months, usually right after the… Read More "Nightmare Eclipse Drops Windows Zero-Day Exploit ‘ShieldBreak’"
Attackers target zero-day vulnerability in geospatial data platform GeoServer
If the database runs with administrator permissions on Microsoft SQL Server, the account also has the ability to execute commands on the system, so the SQL injection becomes a remote code execution vector. Another user confirmed on X that they… Read More "Attackers target zero-day vulnerability in geospatial data platform GeoServer"
New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation
Cybersecurity industry body CREST has added additional standards to accredit AI penetration testing services. Unveiled on July 28, the AI-Enabled Penetration Testing requirements are optional add-on requirements for cybersecurity service providers wishing to demonstrate responsible AI usage, both within their… Read More "New CREST AI Standards to Deliver AI-Enabled Pentesting Accreditation"
What is a Security Questionnaire?
A security questionnaire is a set of questions designed to help an organization identify potential cybersecurity weaknesses among its third-party and fourth-party vendors, business partners, and service providers. Organizations use security questionnaires to deliver informed vendor risk assessments. They allow… Read More "What is a Security Questionnaire?"
White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs
A presidential memorandum issued on Wednesday expands federal capabilities against foreign cybercrime by establishing a program that allows vetted private US companies to conduct offensive and intelligence-gathering cyber operations under federal control. Managed by the National Coordination Center (NCC), the… Read More "White House Mobilizes Security Firms for Operations Against Foreign Cybercrime Gangs"
Trump Authorizes Private Sector Participation in Offensive Cyber Opera
The White House has authorized federal law enforcement agencies to collaborate with private firms in conducting offensive cyber strikes on foreign threat actors targeting the US. The National Security Presidential Memorandum (NSPM), signed by President Donald Trump on August 12,… Read More "Trump Authorizes Private Sector Participation in Offensive Cyber Opera"
The Architecture of an AI-Powered Breach: The Shadow Supply Chain
CISOs and security analysts understand that the narrative surrounding artificial intelligence risk has changed. The old assumption that AI risk begins and ends with an employee copying and pasting a sensitive paragraph into a public ChatGPT prompt has dissipated, and… Read More "The Architecture of an AI-Powered Breach: The Shadow Supply Chain"
Fortinet Patches Authentication Flaws in FortiWeb and FortiManager
Fortinet on Wednesday announced patches for eight vulnerabilities across its products, including high-severity authentication bugs in FortiWeb and FortiManager. In FortiWeb, the company resolved an improper authentication issue impacting deployments configured with specific, non-default settings. A remote, unauthenticated attacker could… Read More "Fortinet Patches Authentication Flaws in FortiWeb and FortiManager"