SecurityBrief US - Technology news for CISOs & cybersecurity decision-makers

Security vulnerabilities stories - Page 4

Techday f cb9f1895f78bcde3d321

Zero-day hackers shift focus to enterprise tech in Google's report

Thu, 1st May 2025
#
firewalls
#
network security
#
breach prevention
Google's GTIG reports 75 zero-day exploits in 2024, highlighting a rising threat to enterprise tech despite a slight overall decrease from 2023.
Techday f 90731ea51f5e94c1a9f4

GitHub Copilot surpasses 15 million users as AI tools expand

Thu, 1st May 2025
#
ai
#
software development
#
microsoft
GitHub Copilot has exceeded 15 million users, growing rapidly as Microsoft advances its AI tools in software development and cloud services.
Techday f ee6642ffd0fb34c630cd

Legit Security unveils AI features to improve app vulnerability fixes

Wed, 30th Apr 2025
#
cloud security
#
risk & compliance
#
ai
Legit Security has launched AI features in its platform to help developers quickly identify and fix software vulnerabilities, enhancing app security and compliance.
Techday f 5034f33d360008657b77

Diligent teams with Cloudflare, Qualys to deliver cyber risk tool

Wed, 30th Apr 2025
#
cloud security
#
advanced persistent threat protection
#
cybersecurity
Diligent teams up with Cloudflare and Qualys to launch Cyber Risk Report, offering real-time threat insights for boards and executives on one platform.
Techday f b372f1a24260fb06ac4d

Anetac launches Human Link Pro to combat access risk with AI

Wed, 30th Apr 2025
#
iam
#
cybersecurity
#
unify
Anetac launches Human Link Pro, unifying human and non-human identity management with AI to combat rising security risks amid workforce shifts globally.
Techday f ac0eb73b8ae86c63127a

NetRise launches AI tool to spot unknown software weaknesses

Wed, 30th Apr 2025
#
manufacturing
#
supply chain
#
risk & compliance
NetRise launches ZeroLens, an AI tool that detects undisclosed software weaknesses in compiled code, aiming to prevent cyberattacks before vulnerabilities emerge.
Techday f 8eedd6ceb4f6b3bf049b

BeyondTrust unveils free assessment to expose hidden identity risks

Tue, 29th Apr 2025
#
cloud security
#
ai
#
cybersecurity
BeyondTrust launches free Identity Security Risk Assessment, helping organisations identify and address vulnerabilities across cloud, hybrid, and on-premise environments.
Techday f 088d1534ed0478e7b674

Checkmarx One brings cloud security tools directly into IDEs

Mon, 28th Apr 2025
#
application security
#
devsecops
#
supply chain
Checkmarx integrates its Application Security Posture Management into IDEs, enhancing developer experience by streamlining vulnerability management and boosting AppSec efficiency.
Techday f 52f91b11c1999da1570c

Skyfire & Cequence partner to enable secure AI agent access

Mon, 28th Apr 2025
#
risk & compliance
#
ai
#
payment technologies
Skyfire and Cequence Security partner to enable secure, compliant access and transactions for AI agents across digital services globally.
Techday f b1ba984744010ca29c72

Qualys launches Policy Audit to slash compliance audit costs

Mon, 28th Apr 2025
#
digital transformation
#
cloud security
#
risk & compliance
Qualys unveils Policy Audit to boost compliance efficiency, cut costs, and reduce risks amid rising regulatory demands and system complexities.
Techday f 60e159bd9e0216b8313b

Datadog acquires Metaplane to boost AI & data observability

Thu, 24th Apr 2025
#
siem
#
cloud security
#
martech
Datadog reveals updated DevSecOps report showing Java's vulnerabilities and announces Metaplane acquisition to boost data observability and AI monitoring.
Techday f 8260c5171e8784aa0e54

Armis offers free access to real-time cyber threat database

Thu, 24th Apr 2025
#
firewalls
#
network security
#
advanced persistent threat protection
Armis launches free Vulnerability Intelligence Database to help security teams anticipate and tackle cyber threats with real-time, AI-driven insights.
Techday f 9aa38aa7aee13627c256

in-toto reaches CNCF graduation, boosting software supply chain

Thu, 24th Apr 2025
#
supply chain
#
open source
#
cybersecurity
The Cloud Native Computing Foundation has awarded its highest maturity status to in-toto, a security framework ensuring integrity in software development workflows.
Techday f 930357c672cff4ee35d2

Perforce launches upgraded Puppet to cut cyber risk downtime

Thu, 24th Apr 2025
#
uc
#
application security
#
advanced persistent threat protection
Perforce Software updates Puppet Enterprise Advanced to accelerate vulnerability fixes and boost collaboration amid rising cyber threats and AI-driven attacks.
Techday f 14e6e1e1bcc0951ffcf4

Cycode unveils AI Teammates & real-time runtime protection

Thu, 24th Apr 2025
#
application security
#
advanced persistent threat protection
#
devsecops
Cycode launches AI Teammates and CI/MON runtime protection to enhance software supply chain security and threat detection in application security.
Techday f 4dc2c172fa0e4512224a

Tenable reveals privilege risk in Google Cloud Composer flaw

Thu, 24th Apr 2025
#
storage
#
edutech
#
cloud security
Tenable Research revealed a privilege escalation flaw in Google Cloud Composer, risking unauthorised access to key cloud resources before Google's fix.
Techday f 55d51f0b929842822b0a

Socket acquires Coana to cut false positive security alerts

Thu, 24th Apr 2025
#
application security
#
supply chain
#
cybersecurity
Socket has acquired cybersecurity startup Coana to enhance its supply chain security platform, cutting false positives by up to 80% for faster threat remediation.
Techday f feb74dd73989b858e8c8

Lasso introduces first security gateway for MCP workflows

Sat, 19th Apr 2025
#
ai security
#
open source
#
genai
Lasso has unveiled its MCP Gateway, the first security tool tailored for Model Context Protocol, aiming to bolster safety in generative AI workflows.
Techday f 2fdb40bf3eb241c35693

Cobalt report reveals gaps in critical vulnerability fixes

Fri, 18th Apr 2025
#
devops
#
cloud security
#
supply chain
Cobalt's 2025 State of Pentesting Report reveals that 31% of serious security vulnerabilities remain unaddressed, despite 81% of leaders' confidence in their security.
Techday f 79b96508a8d794789418

Microsoft April Patch Tuesday highlights zero-day risks

Fri, 11th Apr 2025
#
ransomware
#
cybersecurity
#
microsoft
Microsoft's recent Patch Tuesday sparked scrutiny with a 40-minute delay in updates and notable vulnerabilities, including a critical zero-day in the CLFS Driver.