Security vulnerabilities stories

Azul enhances Java security detection, cutting false positives by 99%
2 days ago
#
saas
#
devops
#
application security
Azul's new Java security tool cuts false positives by 99%, boosting detection accuracy and helping DevOps teams focus on real risks in production code.

Just 3% of New Zealand domains enforce top anti-phishing policy
2 days ago
#
edutech
#
data protection
#
phishing
Just 3% of New Zealand domains enforce the strict DMARC p=reject policy, leaving most vulnerable to phishing despite upcoming government mandates.

Aiden Technologies now available in Azure Marketplace via MACC
2 days ago
#
paas
#
iaas
#
it automation
Aiden Technologies is now available in the Microsoft Azure Marketplace via MACC, enabling organisations to acquire its endpoint management platform using existing Azure funds.

AI use surges in UK healthcare as data security concerns mount
4 days ago
#
data protection
#
iot
#
ai
AI use in UK healthcare has soared to 94% in 2025, despite rising data breaches and declining focus on data security among IT professionals.

3 key challenges in enterprise browser adoption: Lessons from Arc's pivot
Last week
#
crm
#
digital transformation
#
ai
Despite Arc’s innovation, enterprises struggle with browser adoption due to muscle memory, maintenance burdens, and AI-driven fragmentation disrupting standardisation.

OWASP unveils first top 10 business logic abuse threats list
Last week
#
application security
#
cybersecurity
#
software development
OWASP has released its first Business Logic Abuse Top 10, spotlighting critical cross-domain threats beyond traditional technology-specific vulnerabilities.

UK businesses neglect printer security despite rising risks
Last week
#
it training
#
data privacy
#
sharp
Despite rising cyber threat awareness, only 14% of UK employees trained on security receive printer-specific training, leaving devices vulnerable.

Akamai launches DNS Posture Management for multicloud security
Last week
#
firewalls
#
ddos
#
hyperscale
Akamai has launched DNS Posture Management, offering centralised control over DNS assets across multicloud platforms to enhance security and compliance.

Distology partners with Flare to boost threat intelligence tools
Last month
#
ransomware
#
partner programmes
#
apm
Distology partners with Flare to enhance threat intelligence and dark web monitoring for UK and European security resellers and MSSPs.

Adidas data breach highlights supply chain risk for retailers
Last month
#
data protection
#
phishing
#
martech
Adidas has suffered a data breach via a third-party provider, exposing customer information and highlighting rising cyber risks in retail supply chains.

Picus launches tool for real-time validation of exploitable risks
Last month
#
devops
#
advanced persistent threat protection
#
soc
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.

Google DeepMind reveals new strategy to defend Gemini 2.5 AI
Last month
#
ai security
#
llms
#
cybersecurity
Google DeepMind has unveiled a new strategy to bolster Gemini 2.5 AI against indirect prompt injection attacks, enhancing its security and resilience.

Fintech sector faces mounting third-party security breach risks
Last month
#
mfa
#
fintech
#
application security
Nearly 42% of data breaches in top fintech firms stem from third-party vendors, highlighting critical supply chain vulnerabilities despite strong internal security.

Cybercriminals industrialise attacks on hospitality sector, report finds
Last month
#
ransomware
#
digital transformation
#
cybersecurity
Cybercriminals increasingly target Australia's hospitality sector, exploiting digital gaps with sophisticated attacks and dark web services, Trustwave warns.

Organisations prioritise AI security as GenAI adoption accelerates
Last month
#
malware
#
ransomware
#
encryption
Nearly 70% of organisations see AI, especially generative AI, as their top security risk, says Thales' 2025 Data Threat Report based on over 3,100 experts.

Tenable One unifies risk data with new connectors & dashboards
Last month
#
cloud security
#
ai security
#
risk & compliance
Tenable launches connectors and customisable dashboards in Tenable One, unifying security data from multiple tools to enhance risk visibility and management.

Dior & Nucor cyberattacks highlight risks for global firms
Last month
#
ransomware
#
martech
#
supply chain
Luxury brand Dior and US steel producer Nucor both face major cyberattacks, exposing vulnerabilities in fashion and industrial sectors globally.

e2e-assure & Validato partner to enhance cyber resilience
Last month
#
devops
#
advanced persistent threat protection
#
apm
e2e-assure partners with Validato to offer businesses continuous cyber security validation, enhancing defence against evolving threats using MITRE ATT&CK framework.

Lastwall IdP earns FedRAMP nod for quantum-ready Zero Trust
Last month
#
hybrid cloud
#
cloud security
#
advanced persistent threat protection
Lastwall's Identity Platform has earned FedRAMP Moderate Authorisation, enabling US federal agencies to deploy quantum-resistant Zero Trust cybersecurity solutions.

Lazarus Group targets South Korean supply chains via software flaws
Last month
#
firewalls
#
network security
#
financial systems
Kaspersky reveals Lazarus Group's 'Operation SyncHole,' targeting South Korean supply chains via software vulnerabilities and watering hole attacks.