Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

AI Agents in Browsers Light on Cybersecurity, Bypass Controls

Companies looking to benefit from agentic browsers pause: The services can tap into a user's online accounts and automate tasks but can expose organizational data and systems to myriad threats.

DARKReading
1M Farmers Insurance Customers' Data Compromised

Though the company is informing its customers of the breach, Farmers isn't publicly divulging what kinds of personal data were affected.

Philippines Power Election Security With Zero-Knowledge Proofs

While 34 countries worldwide already use some form of e-voting, the Philippines can serve as a model for what a secure online voting operation looks like.

Citrix Gear Under Active Attack Again With Another Zero-Day

The flaw is one of three that the company disclosed affecting its NetScaler ADC and NetScaler Gateway technologies.

#zero_day
Malicious Scanning Waves Slam Remote Desktop Services

Researchers say the huge spike of coordinated scanning for Microsoft RDP services could indicate the existence of a new, as-yet-undisclosed vulnerability.

Data I/O Becomes Latest Ransomware Attack Victim

The "incident" led to outages affecting a variety of the tech company's operations, though the full scope of the breach is unknown.

Hook Android Trojan Now Delivers Ransomware-Style Attacks

New features to take over smartphones and monitor user activity demonstrate the continued evolution of the malware, which is now being spread on GitHub.

The Hidden Risk of Consumer Devices in the Hybrid Workforce

Until businesses begin to account for uncontrolled variables in their threat models, attackers will continue to exploit the weakest link in the chain.

Hackers Lay in Wait, Then Knocked Out Iran Ship Comms

Lab-Dookhtegen claims major attack on more than 60 cargo ships and oil tankers belonging to two Iranian companies on US sanctions list.

FTC Chair Tells Tech Giants to Hold the Line on Encryption

The chairman sent letters out to companies like Apple, Meta, and Microsoft, advising them not to adhere to the demands of foreign governments to weaken their encryption.