Vendors
-
Change Healthcare Ransomware Attack Marks Historic Data Breach in the U.S.
The ransomware attack on Change Healthcare in February 2024 became the largest data breach in U.S. history, forcing healthcare providers to cancel appointments and leading to a $22 million ransom payment by the parent company, United Health Group.
-
OpenAI’s GPT Powers Spam Attack on 80,000 Websites
A recent report reveals that AkiraBot, utilizing OpenAI’s GPT technology, executed a significant spam campaign targeting over 80,000 websites, raising concerns about new challenges in spam prevention driven by AI advancements.
-
Critical WhatsApp Vulnerability Exposes Windows Users to Malicious Attacks
WhatsApp has identified a critical vulnerability affecting its Windows desktop application, allowing malicious file attachments to execute harmful code. Users are advised to update to mitigate risks, as the flaw highlights the importance of cautious file handling and regular software updates.
-
Europol Warns: AI is Transforming Organized Crime Operations
Europol’s latest report reveals that organized crime networks are increasingly leveraging artificial intelligence to enhance their operations and evade law enforcement, marking a significant evolution in criminal tactics.
-
NIST Places Pre-2018 Vulnerabilities on Deferred Status Amid Resource Reallocation
NIST has announced that all CVEs published before 2018 will be marked as ‘Deferred’ in the National Vulnerability Database, reallocating resources towards emerging threats while placing the responsibility for legacy vulnerabilities on individual organizations.
-
New Cyber Threat Emerges as PoisonSeed Targets CRM Accounts
The PoisonSeed campaign is exploiting compromised credentials from CRM tools and email services to send spam containing cryptocurrency seed phrases, endangering businesses and individuals alike.
-
Oracle Acknowledges Data Breach Amid Lawsuit Over Concealment
Oracle Corp. has admitted to a significant data breach, revealing that a hacker accessed sensitive client login details, shortly after a lawsuit accused the company of attempting to cover up the incident. The breach has raised serious concerns about cloud security and has led to legal action amid calls for enhanced security measures.
-
Massive Data Breach at Royal Mail Group Raises Concerns Over Supplier Security
Royal Mail Group has suffered a data breach revealing 144GB of sensitive data, raising alarms over the security of third-party supplier Spectos and highlighting ongoing vulnerabilities within the postal service’s cybersecurity posture.
-
EU Plans to Simplify GDPR in Move to Support Businesses
The European Union is set to revise its General Data Protection Regulation (GDPR) to ease compliance burdens for businesses, as part of efforts under Commission President Ursula von der Leyen. This move aims to enhance the competitive landscape for European enterprises amid growing criticisms regarding the complexity of the current legislation.
-
Security Bypasses Detected in Ubuntu Linux’s User Namespace Restrictions
A new report from Qualys reveals that three security bypasses have been found in Ubuntu Linux’s user namespace restrictions, potentially allowing local attackers to exploit kernel vulnerabilities. Canonical is working on enhancing AppArmor protections in response.








