Security
Headlines
HeadlinesLatestCVEs

Source

DARKReading

Chinese Threat Actor Employs Fake Removable Devices as Lures in Cyber Espionage Campaign

"Aoqin Dragon" has been operating since at least 2013, with targets including government and telecommunications companies in multiple countries.

DARKReading
#vulnerability#mac#microsoft#intel#backdoor
How Can Security Partnerships Help to Mitigate the Increasing Cyber Threat?

Martyn Ryder from Morphean explains why forging trusted partnerships is integral to the future of physical security in a world of networks, systems, and the cloud.

Beware the 'Secret Agent' Cloud Middleware

New open source database details the software that cloud service providers typically silently install on enterprises' virtual machines — often unbeknownst to customers.

Understanding and Mitigating Single Sign-on Risk

SSO's one-to-many architecture is both a big advantage and a weakness.

Corel Acquires Awingu

The combination of Awingu and the Parallels Remote Application Server platform will enable end users to securely work from anywhere, at any time, on any device, or OS.

CISA Recommends Organizations Update to the Latest Version of Google Chrome

Google last week reported seven vulnerabilities in the browser, four of which it rated as high severity.

Kaiser Permanente Breach Exposes Data on 70K Patients

Employee email compromise potentially exposed patients' medical information, including lab test results and dates of services.

Exposed Travis CI API Leaves All Free-Tier Users Open to Attack

Public Travis CI logs loaded with GitHub, AWS, Docker Hub account tokens, and other sensitive data could be leveraged for lateral cloud attacks.

In Security, Less Is More

Cut away everything that costs more attention, storage, or time than its impact is worth.