Security
A guilty plea has been entered in the case of a business owner who sold dodgy unlock codes for telecoms devices
Less than 2% of UK private businesses are NCSC certified- and half of the SMEs don't even know about certification schemes
Zscaler's latest report says the use of buggy VPNs by end-users could be putting networks at risk of attack
Ivanti has kicked out an urgent patch for cve-2023-35081, a zero-day flaw in EPMM that is under active exploit in the wild
The US Chamber of Commerce had fumed that the SEC’s “unprecedented micromanagement of companies’ cybersecurity programs is misguided"
"Operation Triangulation" continues after the Russian security firm was hacked by a sophisticated adversary using a zero-click iOS chain...
"In another example, a custom-built application relied on an old version of Apache Log4J for logging, and the updates to Log4J did not support data in the same way. There was no budget for this application to be rebuilt at the time..."
Imperva, generating ~$500 million in revenues, has suffered from executive churn in recent years that has caused some “adverse impact on Imperva’s roadmap execution."
Attackers dropped a webshell, collected and exfiltrated Active Directory data, then ran into some healthy obstacles...