Microsoft is enabling a Microsoft Defender ‘Attack Surface Reduction’ security rule by default to block hackers’ attempts to steal Windows credentials from the LSASS process. When...
Malvertising or malicious advertising is gaining rapid popularity as a threat. It involves advertising fraud schemes by tricking website visitors. As per a report, malvertising witnessed a...
Ban of Chrome extension by Brave reveals risk of potential API abuse at Meta Brave this week said it is blocking the installation of a popular...
To improve the joint strike fighters’ defenses against cyber attacks, the program office responsible for it wants an open system design solution. The Defense Department is...
The US Cybersecurity and Infrastructure Security Agency (CISA) has added a new flaw to its catalog of vulnerabilities exploited in the wild, an Apple WebKit remote...
Google’s Project Zero has published a report showing that organizations took less time to address the zero-day vulnerabilities that the team reported last year. As the...
Another month, another zero-day (CVE-2022-22620) exploited in the wild that has been fixed by Apple. About CVE-2022-22620 CVE-2022-22620 is a use after free issue in WebKit,...
When the Log4Shell vulnerability (CVE-2021-44228) was publicly revealed in December 2021, CISA Director Jen Easterly said that it is the “most serious” vulnerability she has seen in her decades-long career...
Executives are concerned about their ability to deliver value propositions that satisfy employees and a subsequent inability to retain and recruit talent, according to Gartner’s report. Talent...
NIST has just published its Software Supply Chain Security Guidelines with the hopes of improving the nation’s cybersecurity. The following four recommendations are intended to assist federal agencies...