Content Paint
Edward Targett

Edward Targett

Ed is a co-founder of The Stack. He previously edited Computer Business Review. He has also covered energy markets. He started his journalism career on local papers. He left school at 15 and has made a living asking "but why?" ever since.

Pre-auth RCE zero days in Ivanti VPNs are being exploited by a Chinese APT and there won’t be a patch for weeks. Buckle up.

Attackers re-write JavaScript loaded by the VPN login page for the Appliance to capture credentials; also grabbed Veeam credentials, moved laterally for full SYSTEM control.

Patch Tuesday brings lots of chaff, a little buggy wheat too. Some CVE highlights to review.

One vulnerability bears a striking resemblance to an 0day that was actively exploited in the wild in November 2023.

“We have our low latency stream which goes into MongoDB; we have our main engineering pipeline, which goes to S3 and gets encrypted for GDPR purposes. Then we have a Spark stream, which pulls the data into Delta Lake..."

Disclosed ransomware attacks hit two-per day in December: The real figure is ~500% higher

"Simulate and exercise breach readiness, especially abilities to reduce blast radius of a cyber attack. Involve top leadership, the board, and customers in separate cyber war games, as often as practical..."

The Big Interview: Very Group Chief Data Officer, Steven Pimblett

"If you get a good grip on that, happy customers, happy shareholders. If you get it wrong, you are sat on millions of pounds-worth of stock in a warehouse that you have to write off..."

As “Mr Bates” stirs police over Horizon, Post Office burns £31 million on failed cloud migration

Cloud migration "impairment" writes off the equivalent to 81% of the Post Office's annual restructuring costs.

The Big Interview: Rubrik CEO Bipul Sinha on going from no running water, to running a $500m business

On Magic Quadrants, deal size, changing approaches to cyber-resilience and learning from his father.

"Builders are creatives, if you unlock their creative power; empower them to compose with API services, new architectures… infinite possibilities emerge."

Kaspersky burns 11,000-line “NSA” exploit: Calls 14-step iPhone attack “definitely the most sophisticated attack chain we have ever seen”

Apex Predators aside and in other news, a major telco just got hacked because it didn't have MFA set up on a critical account...

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.