Security vulnerabilities stories

Microsoft April Patch Tuesday highlights zero-day risks
Last week
#
ransomware
#
cybersecurity
#
microsoft
Microsoft's recent Patch Tuesday sparked scrutiny with a 40-minute delay in updates and notable vulnerabilities, including a critical zero-day in the CLFS Driver.

Black Talon Security promotes Paul Murphy to growth role
Last week
#
data protection
#
cybersecurity
#
security vulnerabilities
Black Talon Security has elevated Paul Murphy to Chief Growth Officer, aiming to boost strategies and partnerships in the dental and healthcare sectors.

Delving into windows CE, part 3: Introducing Team82’s open-source debugger
Last week
#
devops
#
apm
#
software development
Team82 has unveiled an open-source debugger aimed at simplifying the analysis of Windows CE applications, crucial for security researchers in legacy environments.

UK unveils Cyber Security & Resilience Bill advancements
Last week
#
advanced persistent threat protection
#
supply chain & logistics
#
risk & compliance
The UK government has unveiled the Cyber Security and Resilience Bill, aiming to bolster protections for critical infrastructure against rising cyber threats.

Research reveals smart TV vulnerabilities threaten networks
Last month
#
iot
#
displays & projectors
#
genai
Research by CYFOX has uncovered critical vulnerabilities in smart TVs that threaten corporate networks, highlighting a broader industry security concern.

Massive attack on GitHub affects over 23,000 repositories
Last month
#
cybersecurity
#
software development
#
security vulnerabilities
A recent cyber attack has compromised over 23,000 GitHub repositories, raising alarms over software supply chain security and the exploitation of trusted components.

GitHub Action compromise affects over 23,000 repositories
Last month
#
open source
#
software development
#
security vulnerabilities
A malicious commit in the tj-actions/changed-files GitHub Action, used in over 23,000 repositories, threatens software security across numerous CI pipelines.

Tenable warns DeepSeek AI model can be breached for malware
Last month
#
malware
#
ransomware
#
genai
Tenable Research has raised alarms over security vulnerabilities in the generative AI model DeepSeek R1, warning it could simplify malware creation.

Nozomi Networks honoured on Fast Company's 2025 list
Last month
#
iot security
#
advanced persistent threat protection
#
physical security
Nozomi Networks has been ranked third in Fast Company's World’s Most Innovative Companies 2025 for its pivotal work in securing critical infrastructure from cyber threats.

JFrog & NVIDIA team up to enhance secure AI deployments
Last month
#
application security
#
advanced persistent threat protection
#
devsecops
JFrog has incorporated NVIDIA NIM microservices into its Software Supply Chain Platform, enhancing secure AI model deployment and streamlining enterprise solutions.

Rising ICS/OT cyber threats due to budgetary imbalances
Last month
#
it training
#
cybersecurity
#
security vulnerabilities
A recent SANS Institute and OPSWAT report reveals serious shortcomings in ICS/OT cybersecurity budgets, with over half of organisations experiencing security incidents last year.

Opus Security unveils new AI-powered vulnerability platform
Last month
#
cybersecurity
#
ai agents
#
opus
Opus Security has unveiled its Autonomous Vulnerability Management Platform, harnessing AI to streamline cybersecurity processes and reduce remediation delays by up to 90%.

Verizon & Accenture partner to boost cybersecurity services
Last month
#
digital transformation
#
advanced persistent threat protection
#
iam
Verizon Business has teamed up with Accenture to enhance cybersecurity solutions for mid and large enterprises, tackling the rising threats in the digital landscape.

UpGuard launches AI tools for quick cyber risk assessment
Fri, 28th Feb 2025
#
supply chain & logistics
#
risk & compliance
#
ai
Cybersecurity firm UpGuard has unveiled AI-powered tools that enable users to conduct vendor risk assessments in under 60 seconds, enhancing efficiency in risk management.

UK SMEs to boost reliance on managed security services
Fri, 28th Feb 2025
#
partner programmes
#
risk & compliance
#
cybersecurity
UK SMEs are expected to boost their dependence on managed security services in 2025, with 80% viewing this as a valuable move, reveals Six Degrees research.

MSys Technologies acquires Gophers Lab to boost FinTech
Fri, 28th Feb 2025
#
devops
#
digital transformation
#
fintech
MSys Technologies has announced its acquisition of Gophers Lab, aiming to tackle challenges in the FinTech sector and drive digital transformation.

Australia ranks fourth in global cybersecurity attack list
Thu, 27th Feb 2025
#
iot security
#
wireless networks
#
cybersecurity
Australia has climbed to fourth place globally for cyberattacks on critical infrastructure, as a report reveals a surge in diverse threats targeting various sectors.

New report reveals cybersecurity risks in manufacturing
Wed, 26th Feb 2025
#
malware
#
ddos
#
digital transformation
A new whitepaper from Telstra International reveals that 80% of manufacturing firms faced security incidents last year, yet only 45% felt prepared to tackle the threats.

Open-source AI Foundation launched to boost transparency
Tue, 25th Feb 2025
#
ai
#
ai ethics & governance
#
ml
The Open-Source AI Foundation has launched to promote transparency in AI systems for government agencies, coinciding with DeepSeek's commitment to open source its AI models.

GitHub partners with Endor Labs to boost security features
Fri, 14th Feb 2025
#
cloud security
#
application security
#
devsecops
GitHub has partnered with Endor Labs, integrating advanced security software to help developers swiftly identify and manage critical vulnerabilities within the platform.