Security
"We also notified law enforcement and took prompt action to protect our systems and data, including shutting down certain systems."
An attacker could have been forging access tokens to Microsoft services for up to two years, unnoticed
Details of security perimeters for highly sensitive national security sites published for anyone to read
"Scanning for one type of content, for instance, opens the door for bulk surveillance" says Apple's user privacy chief.
The EU has proposed a new Cyber Resilience Act. The lack of industry dialogue has the open-source sector worry that the act will stifle development.
His "knowledge of software security appears to exceed that of most governments"
A study out of Germany has highlighted shortcomings in the CVSS system and the way security vulnerabilities are assessed and scored
The little-known hacking technique of subdomain hijacking is threatening thousands of sites and their visitors despite efforts to eradicate