SecurityBrief US - Technology news for CISOs & cybersecurity decision-makers

CISA stories - Page 4

Techday a6b142551937f892071a

Veracode unveils new AI-driven features for Veracode Fix

Tue, 3rd Dec 2024
#
cisa
Veracode has unveiled enhancements to its AI-powered coding solution, Veracode Fix, aiming to cut vulnerability remediation time drastically.
Techday f3a9576ce12b437c339a

UK warned of cyber threats from China-backed Volt Typhoon

Wed, 20th Nov 2024
#
cisa
The UK faces increasing cyber threats from China-backed group Volt Typhoon, jeopardising critical infrastructure and national security, warns Certes.
Techday fdc73262884bf7464ac0

Cybersecurity advisory highlights top vulnerabilities of 2023

Tue, 19th Nov 2024
#
cisa
Leading cybersecurity agencies have issued an advisory identifying frequently exploited vulnerabilities in 2023, urging enhanced security measures across sectors.
Techday 70ffb0efa38448d45e7e

Memory safety vulnerabilities continue to plague ICS: Here’s what to do about it

Thu, 24th Oct 2024
#
cisa
Memory safety vulnerabilities are surging in industrial control systems, with over 3,000 reported in 2022, prompting urgent calls for enhanced security measures.
Techday 1227dd3be5af7511b70d

Cybersecurity warning issued over Iranian infrastructure threats

Thu, 24th Oct 2024
#
cisa
A coalition of global agencies warns of Iranian cyber threats targeting critical infrastructure, highlighting emerging tactics and unresolved vulnerabilities.
Techday bc21dd4633e4fbb6b381

Global advisory issued on Iranian cyber threat tactics

Thu, 24th Oct 2024
#
cisa
A joint advisory from international agencies warns of Iranian cyber actors targeting critical infrastructure sectors using brute force tactics for credential compromise.
Techday 79b0a26362bf609f928f

American Water breach highlights infrastructure vulnerabilities

Wed, 9th Oct 2024
#
cisa
American Water has reported a cybersecurity breach, highlighting the vulnerabilities threatening critical infrastructure such as water treatment facilities.
Techday da6818b558b20c7b20b3

Forescout's 2024 H1 Threat Review reveals surge in cyber threats

Fri, 6th Sep 2024
#
cisa
Report reveals a 43% surge in vulnerabilities and a 6% rise in ransomware attacks in H1 2024, with VPNs and network infrastructure under significant threat.
Techday 06de721a70ee9a0be95c

New research by OPSWAT & F5 reveals critical cyber concerns

Thu, 5th Sep 2024
#
cisa
OPSWAT and F5's new research reveals critical cyber concerns, with 83% of companies lacking robust defence-in-depth strategies, leaving them vulnerable to evolving cyber threats.
Techday 0b415d8b37b1b47eb27d

Survey reveals 83% of organisations lack robust cyber defences

Thu, 5th Sep 2024
#
cisa
A new survey reveals that 83% of organisations lack robust cyber defences, highlighting alarming vulnerabilities amidst rising application security threats.
Techday 16c148f0a2386a4659d9

AttackIQ commits to CISA's Secure by Design initiative

Thu, 29th Aug 2024
#
cisa
AttackIQ signs CISA's Secure by Design pledge, aiming to integrate robust security measures into all products, enhancing global digital safety and inspiring industry standards.
Techday 8b8cdf9e1592597b2750

Tenable launches new features to boost vulnerability management

Tue, 6th Aug 2024
#
cisa
Tenable has launched Vulnerability Intelligence and Exposure Response, aiming to revolutionise the USD $16 billion vulnerability management sector.
Techday 45cd61f7b3f0848d0954

Qualys unveils TruRisk Eliminate to streamline cybersecurity

Wed, 31st Jul 2024
#
cisa
Qualys launches TruRisk Eliminate, a novel solution aimed at addressing cybersecurity vulnerabilities without solely relying on patching, enhancing protection.
Techday a04ddf9764f8a80fa660

Patch Tuesday has revealed 139 vulnerabilities

Wed, 10th Jul 2024
#
cisa
Microsoft's July 2024 Patch Tuesday reveals 139 vulnerabilities, including two zero-days under active exploitation: Hyper-V's EoP and MSHTML Spoofing.
Techday ad73afd8ed189669a9da

Report reveals reliance on memory-unsafe languages in OSS projects

Tue, 2nd Jul 2024
#
cisa
A new cybersecurity report reveals that 52% of critical open-source projects rely on memory-unsafe programming languages, posing significant security risks.
Techday 08be4c6a578c5bd9d991

WatchGuard launches AI-driven ThreatSync+ NDR & compliance tools

Wed, 26th Jun 2024
#
cisa
WatchGuard Technologies unveils ThreatSync+ NDR and WatchGuard Compliance Reporting, leveraging AI to simplify cybersecurity for smaller IT teams and enhance compliance.
Techday 29e67ef611f650ef729e

Semperis launches AD Delegation Manager to enhance security

Thu, 13th Jun 2024
#
cisa
Semperis unveils Delegation Manager, an Active Directory tool to combat cyber threats by offering granular control of permissions, reducing over-privileged accounts.
Img bqswqrkji12uvcscsknevlbg

Fortinet ups cybersecurity game with Secure by Design pledge

Wed, 8th May 2024
#
cisa
Cybersecurity giant Fortinet has solidified its commitment to secure product development and transparency by becoming an early signatory to the Secure by Design pledge initiated by the Cybersecurity and Infrastructure Security Agency (CISA).
Img gnchkzlgsaw4kmtjkbedxp91

Zscaler report raises alarm over VPN vulnerabilities in Australia

Wed, 8th May 2024
#
cisa
Zscaler's 2024 ThreatLabz VPN Risk Report reveals concerns over VPN vulnerabilities amidst rising cyber attacks in Australia, prompting a shift towards Zero Trust architecture.
Img x06hvgpifdenltnwr7izwwok

Silver SAML, a new cyber threat, uncovered by Semperis researchers

Fri, 1st Mar 2024
#
cisa
Semperis researchers have identified a potential new threat called Silver SAML that exploits SAML to attack from cloud identity providers such as Entra ID, potentially endangering applications like Salesforce or ServiceNow.