Atlassian has fixed a critical authentication bypass flaw in Jira Service Management.
Michelle Finneran Dennedy, co-founder of Privacy Code and co-author of The Privacy Engineer's Manifesto, joins Dennis Fisher to talk about her new startup, her path from studying psychology to becoming the first chief privacy officer at Sun and Cisco, and what everyone gets wrong about privacy.
New data compiled by Cyentia Institute and SecurityScorecard shows that 98 percent of organizations have a direct relationship with a company that has been breached recently.
A new vulnerability has emerged in the F5 BIG-IP security appliances that can allow an attacker to crash the device.
Exploit traffic against the Fortinet VPN CVE-2022-43475 vulnerability have spiked in recent weeks.
Researchers have developed an exploit for a group of vulnerabilities in VMware vRealize Log Insight that can lead to remote code execution as root.
An attacker exfiltrated three encrypted code-signing certificates from GitHub used to sign versions of Desktop for Mac and Atom.
The ISC has released a fix for a serious denial-of-service vulnerability in many versions of BIND 9.
The FBI and international alw enforcement agencies have taken down the Hive ransomware infrastructure.
Google has disrupted more than 50,000 accounts linked to the Dragonbridge pro-China information operation in the last year.
GoTo says an attacker stole some encrypted customer backups as well as an encryption key for some of those databases.
The TA444 threat group has changed its tactics in recent weeks, moving to new delivery methods and payloads.
The FBI says the North Korean threat actor Lazarus Group is responsible for the theft of $100 million in cryptocurrency from Harmony Horizon Bridge in June.
OpenText has fixed two remote code execution vulnerabilities in its Extended ECM content management server.
Rick Holland, CISO at Digital Shadows, talks about the role of empathy in building out an organization’s security program.