SecurityBrief UK - Technology news for CISOs & cybersecurity decision-makers

Data exfiltration stories

Story image
BlackFog wins AI-based cybersecurity innovation award
4 days ago
#
malware
#
ransomware
#
cloud security
BlackFog has been honoured with the title of ‘AI-based Cybersecurity Innovation of the Year’ at the 2024 CyberSecurity Breakthrough Awards for its ADX technology.
Story image
Forescout discovers security flaws in DrayTek routers
Last week
#
ransomware
#
endpoint protection
#
iot security
Forescout Technologies has unveiled 14 security vulnerabilities in DrayTek routers, raising significant cybersecurity concerns globally and urging urgent protective measures.
Story image
Visibility is vital for detecting ransomware attacks
Last week
#
data protection
#
ransomware
#
advanced persistent threat protection
Ransomware attacks are evolving into a major cyberthreat, highlighting the critical need for enhanced network visibility to combat these incursions.
Story image
The insider threat: Why Australian businesses are most vulnerable from within
Last month
#
endpoint protection
#
edr
#
cybersecurity
Australian businesses face a growing insider threat, with a 2022 study revealing 67% of companies grappling with frequent internal security incidents.
Story image
Vectra AI reveals critical flaw in Google Cloud Document AI
Last month
#
storage
#
soc
#
ai security
Vectra AI reveals a critical Transitive Access Abuse vulnerability in Google Cloud's Document AI, raising data exfiltration risk for users.
Story image
ReliaQuest reveals sophisticated Inc Ransom tactics in attack analysis
Last month
#
storage
#
encryption
#
cybersecurity
ReliaQuest’s analysis of a ransomware attack by Inc Ransom on a healthcare customer reveals sophisticated tactics using legitimate tools for data theft.
Story image
Oracle unveils zero trust packet routing for enhanced security
Last month
#
firewalls
#
network security
#
cloud security
Oracle revolutionises cloud security with the launch of OCI Zero Trust Packet Routing, decoupling network security from architecture to prevent unauthorised data access.
Story image
Experts warn of security lapses in open-source AI deployments
Last month
#
devops
#
advanced persistent threat protection
#
apm
Sensitive data exposed by open-source large language model servers amid rapid AI adoption reveals critical security gaps, researcher Naphtali Deutsch uncovers.
Story image
Ransomware attacks surge 58% in July, breaking records
Sun, 18th Aug 2024
#
ransomware
#
cybersecurity
#
healthtech
Ransomware attacks surged by 58% in July, with 60 incidents reported. Blackfog's data shows a record-breaking month, particularly hitting government, education, and healthcare sectors.
Story image
AI-driven cyber threats dominate new Palo Alto Networks report
Thu, 15th Aug 2024
#
uc
#
firewalls
#
vpns
Palo Alto Networks' '2024 Unit 42 Report' reveals rising cybersecurity threats driven by AI, with sectors like insurance and pharmaceuticals facing heightened vulnerabilities.
Story image
Barracuda exposes advanced phishing attacks with new malware
Thu, 15th Aug 2024
#
malware
#
firewalls
#
phishing
Barracuda Networks reports a new wave of phishing attacks using advanced “infostealer” malware that exfiltrates extensive sensitive data, urging enhanced cybersecurity measures.
Story image
Aqua Security finds critical vulnerabilities in six AWS services
Wed, 14th Aug 2024
#
hyperscale
#
cloud security
#
application security
Aqua Security's researchers found critical flaws in six major AWS services, risking RCE, full-service takeovers, data breaches, and more.
Story image
Picus report reveals flaws in threat exposure management
Fri, 2nd Aug 2024
#
ransomware
#
advanced persistent threat protection
#
windows
Almost 40% of systems tested by Picus Security are vulnerable to complete takeover, with macOS being notably weaker in stopping cyber-attacks.
Story image
Malicious Python package targets macOS & GCP credentials
Tue, 30th Jul 2024
#
application security
#
supply chain & logistics
#
social engineering
A malicious Python package, lr-utils-lib, targets macOS developers to steal Google Cloud credentials, Checkmarx's research reveals, adding new threats to both systems and social engineering tactics.
Story image
SentinelLabs report exposes ransomware strategy of APT groups
Thu, 27th Jun 2024
#
ransomware
#
cybersecurity
#
government
SentinelLabs' latest report exposes how cyberespionage groups, including the Chinese APT group ChamelGang, are strategically using ransomware for disruption and misattribution.
Story image
Adlumin enhances ransomware prevention with new exfiltration tool
Wed, 26th Jun 2024
#
ransomware
#
encryption
#
advanced persistent threat protection
Adlumin unveils an enhanced Ransomware Prevention feature to detect and halt both encryption and data exfiltration tactics, combating double-extortion threats.
Story image
WatchGuard launches AI-driven ThreatSync+ NDR & compliance tools
Wed, 26th Jun 2024
#
firewalls
#
ransomware
#
breach prevention
WatchGuard Technologies unveils ThreatSync+ NDR and WatchGuard Compliance Reporting, leveraging AI to simplify cybersecurity for smaller IT teams and enhance compliance.
Story image
Traceable AI uncovers growing API security issues in finance
Thu, 13th Jun 2024
#
risk & compliance
#
cybersecurity
#
fraud
A report from reveals critical API security flaws plaguing the US financial sector, with 82% of institutions concerned about regulatory compliance.
Story image
Chinese espionage campaign targeting Southeast Asia revealed
Fri, 7th Jun 2024
#
malware
#
firewalls
#
network security
Sophos has uncovered a two-year Chinese espionage campaign, 'Crimson Palace', targeting a high-level Southeast Asian government, deploying novel malware like PocoProxy.
Story image
Millions of customers urged to take action after Ticketmaster data breach
Thu, 30th May 2024
#
data protection
#
ransomware
#
encryption
Ticketmaster has suffered a major data breach compromising the personal information of more than 500 million users.