
Resources
High-Severity UEFI Vulnerability Affects Hundreds of Intel CPUs – Secure World Magazine
June 20, 2024 | A high-severity vulnerability in Phoenix Technologies' SecureCore UEFI firmware, affecting hundreds of Intel
Phantom Secrets: The Hidden Threat in Code Repositories
July 1, 2024 | Aqua Security reveals that API tokens, credentials, and passkeys remain exposed in code repositories, even aft
Void Banshee Group Using Patched Zero-Day to Execute Infostealer
July 16, 2024 | APT group Void Banshee is exploiting a recently patched zero-day (CVE-2024-38112) to deploy the Atlantida inf
North Korean Hacker Attempts to Infiltrate KnowBe4
August 1, 2024 | KnowBe4 revealed a North Korean hacker tried to infiltrate its systems using a stolen identity and AI-enhanc
CVE and NVD – A Weak and Fractured Source of Vulnerability Truth – Security Week
April 3, 2024 | The CVE List and National Vulnerability Database (NVD) are criticized for not being comprehe
New AI Guides Outline Has Lessons for Tech and Cybersecurity Pros - DICE Insights
May 21, 2024 | New AI guidelines from NIST highlight risks and best practices for developing and deploying generative AI tech
Getting Your Cybersecurity Career Started: Advice for Recent Tech Grads – DICE Insights
June 21, 2024 | Recent tech graduates face unique challenges and opportunities as they enter the cybersecurity workforce.
14 Million OpenSSH Servers Exposed via Regression Flaw
July 1, 2024 | A critical remote code execution flaw (CVE-2024-6387) in OpenSSH on glibc-based Linux systems has been discove
As CISOs Grapple with the C-suite, Job Satisfaction Takes a Hit
July 15, 2024 | Research shows CISO job satisfaction is tied to their access to company management.
RoguePuppet software supply chain exposure: Lessons learned
July 30, 2024 | Security researcher Adnan Khan discovered a flaw in Puppet Forge, dubbed RoguePuppet, allowing anyone with a
Sophos Reveals Ransomware Attacks Are Now Targeting Backups – Hackread
April 3, 2024 | A Sophos report reveals ransomware attackers are increasingly targeting backups, making it h
EPA Issues Urgent Alert for Water Utilities to Enhance Cyber Defenses - Secure World Magazine
May 22, 2024 | The EPA has issued an urgent alert for U.S.