Aggregator
CVE-2024-20433 | Cisco IOS/IOS XE up to 12.2(15)BC2h Resource Reservation Protocol stack-based overflow (cisco-sa-rsvp-dos-OypvgVZf)
CVE-2024-20467 | Cisco IOS XE 17.11.99SW/17.12.1/17.12.1a IPv4 Fragmentation resource management (cisco-sa-cpp-vfr-dos-nhHKGgO)
Hunters
California’s Deepfake Regulation: Navigating the Minefield of AI, Free Speech, and Election Integrity
California's attempt to regulate deepfakes in political advertising through AB 2839 has sparked debate on free speech and election integrity. The legislation faces challenges in implementation, technological limitations, and platform responsibilities, highlighting complexities of governing AI.
The post California’s Deepfake Regulation: Navigating the Minefield of AI, Free Speech, and Election Integrity appeared first on Security Boulevard.
Doppler Launches ‘Change Requests’ to Strengthen Secrets Management Security with Audited Approvals
The AI Revolution in Search: Navigating the New Frontier of Information Retrieval
Pubblicato il D. Lgs. 138 del 2024 di recepimento della NIS 2
E-Commerce Protection Lags Behind: Insights from the 2024 Global Bot Security Report
The Global Bot Security Report is out and the results are in: Health, Luxury, and E-Commerce are the least protected industries against simple bot attacks. Learn how your industry measures up.
The post E-Commerce Protection Lags Behind: Insights from the 2024 Global Bot Security Report appeared first on Security Boulevard.
Thousands of Adobe Commerce e-stores hacked by exploiting the CosmicSting bug
Recently patched CUPS flaw can be used to amplify DDoS attacks
Millions of Enterprises at Risk: SquareX Shows How Malicious Extensions Bypass Google’s MV3 Restrictions
New Perfctl Malware Targets Linux Servers for Cryptocurrency Mining and Proxyjacking
Neural data privacy an emerging issue as California signs protections into law
Webinar Announcement: Attack Surface Management to the Rescue – Find, Fix, Fortify Your ASM with Criminal IP
US, Microsoft Seize Domains Used in Russian Spear-Phishing
The U.S. Department of Justice and Microsoft seized more than 100 websites allegedly used by a Russian intelligence cyberespionage operation with a fondness for spear phishing. Targets include the national security apparatus and journalists, think tanks, and non-governmental organizations.
600,000 Prison Inmates to Share in $6.49M Breach Settlement
A misconfigured web server and the exposure of sensitive information for nearly 600,000 prison inmates in 2022 will cost medical claims processing company CorrectCare $6.49 million to settle a consolidated proposed class action lawsuit, according to court records.
Breach Roundup: AI 'Nudify' Sites Serve Malware
This week, AI nudify sites spread malware, BEC scammers head to prison, London man charged with hacking, and a Spanish insurance company with a breach. Also, a North Korean hacking group and a West African crackdown on online scammers. And, a Schrödinger Windows vulnerability: Is it real?
CISA Preparing to Assess Federal Zero Trust Progress
A top official from the U.S. Cybersecurity and Infrastructure Security Agency said Thursday the agency is planning to review updated federal implementation plans and ensure agencies are aligning with zero trust security objectives and addressing any funding gaps or technical challenges.