Cox Communications fixed an authorization bypass vulnerability that could have enabled threat actors to abuse backend APIs to reset millions of modems and steal customer data. Discovered by Sam Curry, the exploit gave a similar set of permissions as the ISP tech support.
According to a report released by the Cloud Security Alliance and Google Cloud, 55% of all organizations plan to use AI to boost security by 2025. The "State of AI and Security Survey Report," also found that 67% of organizations already tested and are pleased with AI-backed security capabilities.
As part of the US Biden-Harris administration's "Investing in America" agenda, the US energy sector received a $45M investment to bolster the sector's cybersecurity infrastructure. The announcement strengthens the US government's initiatives to boost cybersecurity efforts for critical infrastructure, in light of attacks on US critical infrastructure.
The Securities and Exchange Commission (SEC) confirmed through a spokesperson and social media announcements that the agency's X (formerly Twitter) account was compromised to promote Bitcoin ETFs. Bitcoin's value spiked to nearly $48k as a result of the false Tweet, despite being taken down just 30 minutes after being published.
Kyivstar, Ukraine's largest telecom provider announced it was hit by a devastating cyberattack, disrupting internet access for over 26 million users. Kyivstar's parent company, VEON Ltd confirmed the devastating cyberattack, claiming it to be “one of the largest cyberattacks in the history of the global telecom market.”
The LockBit ransomware gang has threatened to release data stolen from CDW Corp, a major IT reseller and services provider in the US, UK, and Canada after discussions over the ransom fee for the data commenced. The notorious ransomware gang demanded $80 million, with CDW offering just $1.1 million as their ransom counteroffer.
Sign in to your account