The Iran-linked botnet has a large presence in the U.S. and is targeting telecom and other firms with DDoS attacks.| Cybersecurity Dive
The firm is giving away services and offering deferred billing to corral new customers into its consolidated cybersecurity platforms.| Cybersecurity Dive
Available through January, the response program comes at a time of heightened demand for rapid forensic services, particularly in light of the coming SEC incident response enforcement.| Cybersecurity Dive
The agreement could completely reshape the market for identity security, according to analysts.| Cybersecurity Dive
A prominent former member of a recently shuttered cyber-incident review panel said the board should be reconstituted with independent authority.| Cybersecurity Dive
The multinational hospitality giant is building a model-agnostic chassis featuring an agentic layer.| Cybersecurity Dive - Latest News
Competition among insurers has forced them to offer concessions on premiums, limits and controls.| Cybersecurity Dive - Latest News
Mandiant said it was able to disarm a ViewState deserialization attack leveraging exposed ASP.NET keys.| Cybersecurity Dive - Latest News
Food industry executives used to shrug off ransomware and cyber-espionage risks. A threat intel group is helping to change that, but its reach remains unclear.| Cybersecurity Dive - Latest News
The medical center’s CIO and CISO teamed up to translate security decisions into dollars and cents.| Cybersecurity Dive - Latest News
The breaches are part of hundreds of potential supply chain attacks linked to Salesloft Drift.| Cybersecurity Dive - Latest News
A hacking campaign using credentials linked to Salesloft Drift has impacted a growing number of companies, including downstream customers of leading cybersecurity firms.| Cybersecurity Dive - Latest News
Internet of Things device makers are eager to participate, but the commission’s concerns about its lead administrator have halted progress of the U.S. Cyber Trust Mark program.| Cybersecurity Dive - Latest News
The Sunday attack disrupted key services across the state and led to the theft of some data.| Cybersecurity Dive - Latest News
An advisory from 13 countries says state-backed hackers continue trying to breach telecommunications systems and other vital networks.| Cybersecurity Dive
The payroll services provider reached an agreement to settle a class action lawsuit tied to a ransomware attack that targeted its Kronos Private Cloud service.| Cybersecurity Dive
The Senate Intelligence Committee chairman questioned the security of Microsoft’s “digital escort” arrangement with its Chinese employees.| Cybersecurity Dive
The requirements follow the release of the Biden administration’s national cybersecurity strategy, which includes enhanced measures for critical infrastructure.| Cybersecurity Dive
Airport staff began turning on and testing systems for international and low-volume carriers, which are the most heavily impacted by the outage.| Cybersecurity Dive
The airline seeks to recover damages of more than $500 million in the aftermath of a disruptive IT outage in July. The software provider is looking to hold its liability to the terms of its service agreement.| Cybersecurity Dive
Federal prosecutors called Rapper Bot one of the most powerful DDoS botnets in history.| Cybersecurity Dive
Cloud security and identity and access management tool purchases insulated the market from tariff-induced economic shocks, according to Forrester.| Cybersecurity Dive
The cybersecurity firm said its “platformization” strategy is beginning to pay dividends as more large customers consolidate their spending on its offerings.| Cybersecurity Dive
Business leaders want to prevent further fallout as nearly all have experienced at least one problematic incident tied to AI, according to an Infosys survey.| Cybersecurity Dive
Recent surveys found enterprises are enthusiastically adopting AI, even as they neglect basic cybersecurity measures.| Cybersecurity Dive
The federal agency plans to develop guidance to organizations about various AI use cases.| Cybersecurity Dive
Federal officials and rivals blasted the company for charging customers for additional security features.| Cybersecurity Dive
JCDC’s troubles add to the woes of the already-depleted CISA, which could lose even more personnel as additional contracts with private companies expire.| Cybersecurity Dive
Experts urged Fortinet customers to immediately apply patches or disable the affected administrative interface.| Cybersecurity Dive
Security leaders urge more forceful action after the U.S. accused China of backing a campaign of malicious cyberattacks, including the early 2021 attacks against Microsoft Exchange server.| Cybersecurity Dive
Researchers fear, more than two months after the threat was discovered, criminal hackers have had plenty of time to loot data or plant undetected seeds of compromise.| Cybersecurity Dive
The latest attacks come one year after a threat group exploited a pair of zero-days in the same Ivanti product.| Cybersecurity Dive
U.S. authorities charged the man and a co-conspirator with hacking COVID-19 researchers and kicking off a cyberattack spree targeting Microsoft Exchange servers.| Cybersecurity Dive
Even companies in more insulated fields, such as cyber vendors Sophos, Okta and Secureworks, are bound to feel the pain as enterprises cut spending.| Cybersecurity Dive
The decision by the commission, now under Republican control, could reshape the landscape of corporate accountability for cyber incidents.| Cybersecurity Dive
A threat group is using voice phishing to trick targeted organizations into sharing sensitive credentials.| Cybersecurity Dive
The attack follows a recent increase in cyberattacks and disruptions at major airlines.| Cybersecurity Dive
Dozens of Fortune 100 organizations have inadvertently hired workers from North Korea applying for remote jobs, Mandiant said.| Cybersecurity Dive
Federal officials said businesses should carefully verify the identities of remote employees to avoid falling prey to similar scams.| Cybersecurity Dive
The distributor said it is still relying on manual processes to fulfill orders as it works to bring its systems back online after an intrusion earlier this month.| Cybersecurity Dive
The grocery company had to entirely shut down its network following the intrusion and is serving customers on only a “limited basis” as it works to recover, CEO Sandy Douglas said.| Cybersecurity Dive
A cyberattack on Hawaiian Airlines carries some hallmarks of the notorious cybercrime group.| Cybersecurity Dive
The company, which supplies Whole Foods and other grocery stores nationwide, had to disable electronic ordering systems while responding to the attack earlier this month.| Cybersecurity Dive
Basic vulnerabilities account for most cyberattacks, but security leaders say they’re more concerned about the risks of AI, new research shows.| Cybersecurity Dive
Two reports illustrate how business leaders are thinking about and budgeting for generative AI.| Cybersecurity Dive
NHS Digital warned unknown threat actors are targeting the servers in order to create web shells and enable future data theft, ransomware or other attacks.| Cybersecurity Dive
AI agents aren’t foolproof, but they could soon replace some of the most common tasks for cyber defenders.| Cybersecurity Dive
The virtualization giant advised customers to immediately deploy patches and said it’s not aware of any exploitation in the wild.| Cybersecurity Dive
Ransomware groups continue to target VMware because they know the virtualization infrastructure is vulnerable and lacks security tools, threat researchers said.| Cybersecurity Dive
The threat actor primarily installed cryptomining software onto affected systems. In some cases, however, it deployed Cobalt Strike beacons, Blackberry found.| Cybersecurity Dive
Recent flaws earned the company CISA's 10th emergency directive, the latest in a series of potential high-impact flaws for enterprise users.| Cybersecurity Dive
AI’s rapid development underscores the need for secure foundations, Amy Herzog said Tuesday during the company’s annual cybersecurity conference.| Cybersecurity Dive
In testimony before a Senate committee, Joseph Blount took ownership for the ransom payment but said the private sector needs help to fight adversaries.| Cybersecurity Dive
The company, a major U.S. newspaper chain, has been working with forensic specialists to fully restore services and determine the cause.| Cybersecurity Dive
A report calls on federal authorities to conduct comprehensive risk assessments and take steps to modernize the air traffic control system.| Cybersecurity Dive
Researchers say the threat emulation tool may endanger thousands of vulnerable servers.| Cybersecurity Dive
Cyberattackers with administrative access are actively exploiting vulnerabilities in ESXi, Workstation and Fusion products.| Cybersecurity Dive
Weeks after the company released a patch, researchers warn the CVE is being targeted by threat actors.| Cybersecurity Dive
The newspaper chain said attackers encrypted critical applications and impacted billing, payments and print distribution.| Cybersecurity Dive
Salt Typhoon gained access to many telecom networks and stole large amounts of data, including audio and text of targeted people involved in government or politics.| Cybersecurity Dive
The plaintiffs claim the company was negligent for failing to protect customer data despite prior warnings about previous attacks.| Cybersecurity Dive
AlphV may have used tactics similar to social engineering attacks disclosed by Okta in regulatory filing.| Cybersecurity Dive
Security researchers link the threat group Scattered Spider to a wave of malicious activity as Caesars Entertainment confirms social engineering attack in regulatory filing.| Cybersecurity Dive
The Bellagio and Mandalay Bay casino operator said hotel occupancies are down and certain customer data up to March 2019 was stolen.| Cybersecurity Dive
The company expects a significant financial impact stemming from the recent cyberattack, which is reportedly linked to the Scattered Spider threat group.| Cybersecurity Dive
At least four separate plaintiffs allege the company was negligent for allowing their sensitive personal data to be stolen in a social engineering attack by criminal threat groups.| Cybersecurity Dive
The alleged incident is raising questions as to whether there’s been a more recent data breach in the district since September 2022.| Cybersecurity Dive
The slow-moving disaster has ensnared some of the world's largest enterprises. Cybersecurity experts expect further damage to come.| Cybersecurity Dive