Content Paint

Security

How the NVD backlog highlights the need for context in vulnerability management

"A Vulnerability Operations Centre (VOC) approach can work wonders here..."

True scale of London hospital cyberattack revealed

800 planned operations and 700 outpatient appointments were rearranged following the incident

EU Cloud Certification Scheme could be "discriminatory" to Amazon, Google and Microsoft

Companies and countries clash over ENISA cloud security certification

Microsoft updates mitigation for critical “wormable” bug

256,000 devices believed publicly exposed. But are MSMQ bugs really attacked in the wild?

Microsoft President Brad Smith before a House Committee on Homeland Security.

Says State Department cyber team deserve a medal for spotting intrusion based on Microsoft security issue before Microsoft's own team did.

discord emojis malware C2

Camera emoji? "Take a screenshot of the victim's screen and upload it to the command channel as an attachment."

London hospitals face continued disruption after ransomware attack

Doctors reportedly forced to use pen-and-paper records as the NHS struggles to deal with the impact of significant cybersecurity incident

20,000 Fortinet devices breached by Chinese hackers – reboots, firmware updates no defence

"It is important that organizations practice the ‘assume breach’ principle..." YARA rules, hashes etc. available for defenders.

“Trivially exploitable” bug in SolarWinds file server needs prompt fixing

“CVE-2024-28995 is not known to be exploited in the wild as of 9 AM ET on June 11. We expect this to change."

Search the site

Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Your link has expired. Please request a new one.
Great! You've successfully signed up.
Great! You've successfully signed up.
Welcome back! You've successfully signed in.
Success! You now have access to additional content.