Security news that informs and inspires

2339 articles by

HPE Discloses Hack by Russian Nation-State Actor

HPE's disclosure of the breach comes days after Microsoft said the same group was able to access corporate email accounts of its senior leadership team.

HPE, Data Breach

Exploit Code Released For Fortra GoAnywhere MFT Flaw

The flaw (CVE-2024-0204) could enable remote, unauthenticated attackers to bypass authentication in order to create new users.

Vulnerability

For AI Risk, ‘The Real Answer Has to be Regulation’

The development and deployment of AI systems based on LLMs includes many inherent risks and should be regulated, and soon, experts say.

AI, Government

SEC: SIM Swapping Attack Led to Twitter Account Compromise

New revelations from the investigation into the SEC's Twitter account compromise reveal that it stemmed from a SIM swapping attack and that MFA had been disabled on the account.

Identity

Apple Patches WebKit Zero Day, Adds Stolen Device Protection in iOS

Apple has fixed a actively exploited WebKit bug (CVE-2024-23222) in iOS and macOS. and added a new security feature called Stolen Device Protection.

Apple