CFOtech UK - Technology news for CFOs & financial decision-makers

Sensitive Information stories - Page 2

Techday fb9543ff17766b009d2c

Infoblox uncovers cyber threats exploiting domain spoofing

Wed, 15th Jan 2025
#
malware
#
phishing
#
advanced persistent threat protection
Research from Infoblox reveals ongoing exploitation of spoofed domains in malicious spam campaigns, highlighting the persistent threat posed by cybercriminals.
Techday c6128a86cdbdb7854b0f

30,000 Postman workspaces leak API keys & credentials

Fri, 27th Dec 2024
#
phishing
#
martech
#
email security
CloudSEK has uncovered over 30,000 exposed Postman workspaces leaking sensitive API keys, affecting major firms across healthcare, finance, and sports sectors.
Techday bc6c4b1875c13aa578cd

DeepL report reveals AI's transformative role in law

Tue, 17th Dec 2024
#
legaltech
#
communication
#
data security
A new report by DeepL reveals that 87% of legal professionals find AI tools enhance their work, marking a significant shift in the legal sector.
Techday c875827c28c97e73fd28

Upwind launches Shift Left to enhance build-time security

Thu, 12th Dec 2024
#
cx
#
martech
#
application security
Upwind has launched its Shift Left capability, enhancing CI/CD pipelines by integrating runtime context to help developers prioritise vulnerabilities.
Techday 5a1ac4e2a25e357edef9

UK firms double encryption policy use in 2024 study finds

Thu, 17th Oct 2024
#
data protection
#
ransomware
#
encryption
Research by Apricorn reveals that the adoption of encryption policies among UK organisations has doubled in 2024, with 46% now mandating encryption for all data.
Techday 0ac90b4d03ea38eb592c

Cyber attack disrupts 20 UK railway stations, sparks security fears

Mon, 30th Sep 2024
#
advanced persistent threat protection
#
iam
#
cybersecurity
A cyberattack disrupted services at 20 UK railway stations, exposing security flaws in public transport infrastructure and raising public anxiety over data breaches.
Techday f62d68d94442d4c71817

Cybercriminals exploit content platforms for phishing attacks

Wed, 18th Sep 2024
#
edutech
#
firewalls
#
breach prevention
Cybercriminals exploit popular content platforms to launch sophisticated phishing attacks, targeting users in Singapore and the Asia-Pacific region.
Techday 52c5788fba1e05df36f1

Entro Security report reveals critical risks in managing NHIs

Tue, 17th Sep 2024
#
cybersecurity
#
security vulnerabilities
#
secrets management
Report reveals grave cybersecurity flaws, with 97% of Non-Human Identities having excessive privileges and 44% of tokens exposed.
Techday 752ba04f542c3935b19b

Content platforms exploited for phishing attacks, warns Barracuda

Tue, 17th Sep 2024
#
edutech
#
firewalls
#
phishing
Barracuda reveals cybercriminals exploiting content platforms for phishing, targeting educational institutions and businesses worldwide with deceitful emails.
Techday 4af7e77584e1e711bf37

Tenable finds critical flaw in Microsoft's Copilot Studio

Wed, 28th Aug 2024
#
agentic ai
#
copilots
#
microsoft
Tenable uncovers a critical SSRF vulnerability in Microsoft's Copilot Studio that could expose sensitive information across multiple tenants. Microsoft has since issued a fix.
Techday 831cb61d84e195fc8852

Confidential AI gains traction as businesses adopt generative AI

Mon, 26th Aug 2024
#
encryption
#
physical security
#
genai
Businesses adopting generative AI tools must implement Confidential AI solutions to protect proprietary data and maintain robust Zero Trust policies.
Techday c27f7b81431ce75a68c1

Kaspersky uncovers Russian-led crypto & web3 fraud campaign

Thu, 22nd Aug 2024
#
malware
#
gaming
#
crypto
Kaspersky has uncovered a sophisticated cyber fraud scheme, 'Tusk,' exploiting popular trends like web3 and AI to steal cryptocurrency and sensitive data.
Techday 2f6a4f943e620e1d906c

Oracle NetSuite glitch leaks data from thousands of websites

Tue, 20th Aug 2024
#
martech
#
cdp
#
api
Thousands of websites using Oracle NetSuite's SuiteCommerce may be leaking private customer information due to misconfigured access controls.
Techday 14d1e69834ed31a8180c

Barracuda exposes advanced phishing attacks with new malware

Thu, 15th Aug 2024
#
malware
#
edutech
#
firewalls
Barracuda Networks reports a new wave of phishing attacks using advanced “infostealer” malware that exfiltrates extensive sensitive data, urging enhanced cybersecurity measures.
Techday 568c83c5be38e8e3bdc2

Kaspersky warns of AI's growing use in sophisticated attacks

Wed, 14th Aug 2024
#
llms
#
ai
#
cybersecurity
Kaspersky warns that AI's growing accessibility is enabling cybercriminals to launch sophisticated attacks, making robust AI defences crucial.
Techday d2a1e987c2732f904803

Study finds employee use of GenAI apps poses privacy risks

Tue, 6th Aug 2024
#
agentic ai
#
copilots
#
software engineering
Employees' widespread use of GenAI apps poses privacy risks as 30.8% of these tools train on customer data, a new study by Harmonic Security reveals.
Techday 80593123cb4502d19175

Cybercriminals exploit CrowdStrike outage with fake support sites

Thu, 1st Aug 2024
#
malware
#
cybersecurity
#
healthtech
Cybercriminals capitalised on a CrowdStrike Falcon outage by creating over 180 fake support websites, targeting 8.5 million affected devices worldwide.
Techday f3dea3960af0e00022cc

Cybercriminals exploit URL protection to mask phishing attacks

Tue, 23rd Jul 2024
#
firewalls
#
email security
#
breach prevention
Cybercriminals are leveraging legitimate URL protection services to disguise phishing attacks, targeting hundreds of companies, reports Barracuda Networks.
Techday 59727e190d1905dbdeed

Harmonic Security launches Harmonic Protect for zero-touch data protection

Fri, 19th Jul 2024
#
data protection
#
dlp
#
risk & compliance
Harmonic Security launches Harmonic Protect, a zero-touch data protection tool for the generative AI era, eliminating manual data labelling and complex rules.
Techday 4a83d2960cf017099387

Criminals misuse URL protection to mask phishing attacks

Tue, 16th Jul 2024
#
firewalls
#
phishing
#
email security
Barracuda Networks reveals cybercriminals are exploiting URL protection services to embed malicious code in phishing emails, deceiving recipients into clicking harmful links.