Security vulnerabilities stories

Distology partners with Flare to boost threat intelligence tools
2 days ago
#
ransomware
#
partner programmes
#
apm
Distology partners with Flare to enhance threat intelligence and dark web monitoring for UK and European security resellers and MSSPs.

Adidas data breach highlights supply chain risk for retailers
3 days ago
#
data protection
#
phishing
#
martech
Adidas has suffered a data breach via a third-party provider, exposing customer information and highlighting rising cyber risks in retail supply chains.

Picus launches tool for real-time validation of exploitable risks
Last week
#
devops
#
advanced persistent threat protection
#
soc
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.

Google DeepMind reveals new strategy to defend Gemini 2.5 AI
Last week
#
ai security
#
llms
#
cybersecurity
Google DeepMind has unveiled a new strategy to bolster Gemini 2.5 AI against indirect prompt injection attacks, enhancing its security and resilience.

Fintech sector faces mounting third-party security breach risks
Last week
#
mfa
#
fintech
#
application security
Nearly 42% of data breaches in top fintech firms stem from third-party vendors, highlighting critical supply chain vulnerabilities despite strong internal security.

Cybercriminals industrialise attacks on hospitality sector, report finds
Last week
#
ransomware
#
digital transformation
#
cybersecurity
Cybercriminals increasingly target Australia's hospitality sector, exploiting digital gaps with sophisticated attacks and dark web services, Trustwave warns.

Organisations prioritise AI security as GenAI adoption accelerates
Last week
#
malware
#
ransomware
#
encryption
Nearly 70% of organisations see AI, especially generative AI, as their top security risk, says Thales' 2025 Data Threat Report based on over 3,100 experts.

Tenable One unifies risk data with new connectors & dashboards
Last month
#
cloud security
#
ai security
#
risk & compliance
Tenable launches connectors and customisable dashboards in Tenable One, unifying security data from multiple tools to enhance risk visibility and management.

Dior & Nucor cyberattacks highlight risks for global firms
Last month
#
ransomware
#
martech
#
breach prevention
Luxury brand Dior and US steel producer Nucor both face major cyberattacks, exposing vulnerabilities in fashion and industrial sectors globally.

e2e-assure & Validato partner to enhance cyber resilience
Last month
#
devops
#
advanced persistent threat protection
#
apm
e2e-assure partners with Validato to offer businesses continuous cyber security validation, enhancing defence against evolving threats using MITRE ATT&CK framework.

Lastwall IdP earns FedRAMP nod for quantum-ready Zero Trust
Last month
#
hybrid cloud
#
cloud security
#
advanced persistent threat protection
Lastwall's Identity Platform has earned FedRAMP Moderate Authorisation, enabling US federal agencies to deploy quantum-resistant Zero Trust cybersecurity solutions.

Lazarus Group targets South Korean supply chains via software flaws
Last month
#
firewalls
#
network security
#
financial systems
Kaspersky reveals Lazarus Group's 'Operation SyncHole,' targeting South Korean supply chains via software vulnerabilities and watering hole attacks.

Kaspersky warns AI-generated passwords expose users to attacks
Last month
#
encryption
#
llms
#
ai
Kaspersky warns AI-generated passwords from ChatGPT, Llama, and DeepSeek often show predictable patterns, leaving users vulnerable to cyberattacks.

Immersive launches live AppSec exercises to boost secure coding
Last month
#
it training
#
application security
#
devsecops
Immersive has launched AppSec Range Exercises, a live training tool to boost secure coding and improve application security in development teams.

Cloudhouse & ServiceNow join forces to boost IT governance
Last month
#
itsm
#
servicenow
#
security vulnerabilities
Cloudhouse partners with ServiceNow to boost IT governance via integrated Guardian platform, enhancing application compatibility and infrastructure visibility.

Businesses intensify efforts to secure data in cloud computing
Last month
#
malware
#
firewalls
#
data protection
Businesses are boosting cloud security efforts as rising cloud adoption brings complex risks, requiring new strategies to protect sensitive data and maintain compliance.

Cloud Security Alliance report urges new defences for cloud
Last month
#
devops
#
cloud security
#
iam
The Cloud Security Alliance's 2025 report reveals repeated cloud security failures, urging firms to bolster identity controls and shared defence measures.

Zero-day hackers shift focus to enterprise tech in Google's report
Last month
#
smartphones
#
firewalls
#
network security
Google's GTIG reports 75 zero-day exploits in 2024, highlighting a rising threat to enterprise tech despite a slight overall decrease from 2023.

GitHub Copilot surpasses 15 million users as AI tools expand
Last month
#
ai
#
software development
#
microsoft
GitHub Copilot has exceeded 15 million users, growing rapidly as Microsoft advances its AI tools in software development and cloud services.

Unseen & Unsecured: The machine identity threat you can’t ignore
Thu, 1st May 2025
#
ai
#
cybersecurity
#
agentic ai
70% of firms manage more machine than human identities, with only 38% having real-time oversight, exposing a growing cybersecurity risk.