Sensitive Information stories - Page 2
Infoblox uncovers cyber threats exploiting domain spoofing
Wed, 15th Jan 2025
#
malware
#
phishing
#
advanced persistent threat protection
Research from Infoblox reveals ongoing exploitation of spoofed domains in malicious spam campaigns, highlighting the persistent threat posed by cybercriminals.
30,000 Postman workspaces leak API keys & credentials
Fri, 27th Dec 2024
#
phishing
#
martech
#
email security
CloudSEK has uncovered over 30,000 exposed Postman workspaces leaking sensitive API keys, affecting major firms across healthcare, finance, and sports sectors.
DeepL report reveals AI's transformative role in law
Tue, 17th Dec 2024
#
legaltech
#
communication
#
data security
A new report by DeepL reveals that 87% of legal professionals find AI tools enhance their work, marking a significant shift in the legal sector.
Upwind launches Shift Left to enhance build-time security
Thu, 12th Dec 2024
#
cx
#
martech
#
application security
Upwind has launched its Shift Left capability, enhancing CI/CD pipelines by integrating runtime context to help developers prioritise vulnerabilities.
UK firms double encryption policy use in 2024 study finds
Thu, 17th Oct 2024
#
data protection
#
ransomware
#
encryption
Research by Apricorn reveals that the adoption of encryption policies among UK organisations has doubled in 2024, with 46% now mandating encryption for all data.
Cyber attack disrupts 20 UK railway stations, sparks security fears
Mon, 30th Sep 2024
#
advanced persistent threat protection
#
iam
#
cybersecurity
A cyberattack disrupted services at 20 UK railway stations, exposing security flaws in public transport infrastructure and raising public anxiety over data breaches.
Cybercriminals exploit content platforms for phishing attacks
Wed, 18th Sep 2024
#
edutech
#
firewalls
#
breach prevention
Cybercriminals exploit popular content platforms to launch sophisticated phishing attacks, targeting users in Singapore and the Asia-Pacific region.
Entro Security report reveals critical risks in managing NHIs
Tue, 17th Sep 2024
#
cybersecurity
#
security vulnerabilities
#
secrets management
Report reveals grave cybersecurity flaws, with 97% of Non-Human Identities having excessive privileges and 44% of tokens exposed.
Content platforms exploited for phishing attacks, warns Barracuda
Tue, 17th Sep 2024
#
edutech
#
firewalls
#
phishing
Barracuda reveals cybercriminals exploiting content platforms for phishing, targeting educational institutions and businesses worldwide with deceitful emails.
Tenable finds critical flaw in Microsoft's Copilot Studio
Wed, 28th Aug 2024
#
agentic ai
#
copilots
#
microsoft
Tenable uncovers a critical SSRF vulnerability in Microsoft's Copilot Studio that could expose sensitive information across multiple tenants. Microsoft has since issued a fix.
Confidential AI gains traction as businesses adopt generative AI
Mon, 26th Aug 2024
#
encryption
#
physical security
#
genai
Businesses adopting generative AI tools must implement Confidential AI solutions to protect proprietary data and maintain robust Zero Trust policies.
Kaspersky uncovers Russian-led crypto & web3 fraud campaign
Thu, 22nd Aug 2024
#
malware
#
gaming
#
crypto
Kaspersky has uncovered a sophisticated cyber fraud scheme, 'Tusk,' exploiting popular trends like web3 and AI to steal cryptocurrency and sensitive data.
Oracle NetSuite glitch leaks data from thousands of websites
Tue, 20th Aug 2024
#
martech
#
cdp
#
api
Thousands of websites using Oracle NetSuite's SuiteCommerce may be leaking private customer information due to misconfigured access controls.
Barracuda exposes advanced phishing attacks with new malware
Thu, 15th Aug 2024
#
malware
#
edutech
#
firewalls
Barracuda Networks reports a new wave of phishing attacks using advanced “infostealer” malware that exfiltrates extensive sensitive data, urging enhanced cybersecurity measures.
Kaspersky warns of AI's growing use in sophisticated attacks
Wed, 14th Aug 2024
#
llms
#
ai
#
cybersecurity
Kaspersky warns that AI's growing accessibility is enabling cybercriminals to launch sophisticated attacks, making robust AI defences crucial.
Study finds employee use of GenAI apps poses privacy risks
Tue, 6th Aug 2024
#
agentic ai
#
copilots
#
software engineering
Employees' widespread use of GenAI apps poses privacy risks as 30.8% of these tools train on customer data, a new study by Harmonic Security reveals.
Cybercriminals exploit CrowdStrike outage with fake support sites
Thu, 1st Aug 2024
#
malware
#
cybersecurity
#
healthtech
Cybercriminals capitalised on a CrowdStrike Falcon outage by creating over 180 fake support websites, targeting 8.5 million affected devices worldwide.
Cybercriminals exploit URL protection to mask phishing attacks
Tue, 23rd Jul 2024
#
firewalls
#
email security
#
breach prevention
Cybercriminals are leveraging legitimate URL protection services to disguise phishing attacks, targeting hundreds of companies, reports Barracuda Networks.
Harmonic Security launches Harmonic Protect for zero-touch data protection
Fri, 19th Jul 2024
#
data protection
#
dlp
#
risk & compliance
Harmonic Security launches Harmonic Protect, a zero-touch data protection tool for the generative AI era, eliminating manual data labelling and complex rules.
Criminals misuse URL protection to mask phishing attacks
Tue, 16th Jul 2024
#
firewalls
#
phishing
#
email security
Barracuda Networks reveals cybercriminals are exploiting URL protection services to embed malicious code in phishing emails, deceiving recipients into clicking harmful links.