Highlights This Week: Chromecast, HP Printers, Microsoft, unencrypted sensitive data, AI going everywhere and still failing ...
This week's Lame List: secrets in logs, SSDLC without separation of duties, bad coding, vulnerable legacy applications, unencrypted data, unmanaged devices, AI deep fakes, ... the usual
Highlights This Week: Tracking Apple phones and laptops by Bluetooth, Mitre insecure app; AI data leaks & malevolence; dumb lawyers – again; robotics horror
Highlights This Week: New crypto attack record, enterprise network compromised in 48-minutes, Heath Care cyber security fails, data protection fails, new OWASP Top 10 for Non-Human Identities, AI, Lawsuits
This week's Lame List: Auto Infotainment Adverts, PostgreSQL arbitrary code execution, unreliability of LLMs, NPM supply chain attack, device code phishing, bankjacking
This week's Lame List: More secrets in code, Supply Chain attacks from not using SCA scanning, SSDF/SSDLC fails, etc.
More AI fails and Healthcare breaches, office phone botnets, US Copyright Office AI guidance, and much more ...
This Week's Highlights: Legal US InfoSec changes. Epic Fails: data breaches - Sage AI financial data leaks, PowerSchool 62m students and teachers, Mastercard DNS typo, HPE, United Healthcare 190m Americans + more
New Year Starts with a Bang: Cyber Security Legal & Regulatory Guidance
Lame List: Gravy Analytics, Marriott, Telfonica, Docker, Microsoft, traffic cams, DNA sequencers. And HIPAA update
UnitedHealth exposed chatbot, misconfigured AWS Bucket, sensitive info in Inbox, supply chain attacks, MS 365 security logging, VS Code, Cloudfare Tunnels, etc.
This week’s news roundup: Epic Fails Stolli Bankruptcy, Romanian elections, vulnerable gateway services, MOVEIT ongoing, NTLM, malicious coded backdoor, etc.