cybersecurity

Apple will pay security researchers up to $1 million to hack its private AI cloud

Ahead of the debut of Apple’s private AI cloud next week, dubbed Private Cloud Compute, the technology giant says it will pay security researchers up to $1 million to find vulnerabilities that can compromise the security of its private AI cloud. In a post on Apple’s security blog, the company said it would pay up […]

Apple will pay security researchers up to $1 million to hack its private AI cloud Read More »

SEC fines four companies $7 million for ‘misleading cyber disclosures’ regarding SolarWinds hack

The Securities and Exchange Commission (SEC) announced on Tuesday that it charged and imposed penalties on four companies for making misleading disclosures linked to the 2019 SolarWinds data breach.  The four companies charged are cybersecurity firms Check Point, which will pay a civil penalty of $995,000; Mimecast, which will pay $990,000; and the tech companies

SEC fines four companies $7 million for ‘misleading cyber disclosures’ regarding SolarWinds hack Read More »

Researchers link Polyfill supply chain attack to huge network of copycat gambling sites

One of the biggest digital supply chain attacks of the year was launched by a little-known company that redirected large numbers of internet users to a network of copycat gambling sites, according to security researchers.  Earlier this year, a company called FUNNULL purchased Polyfill.io, a domain hosting an open source JavaScript library that — if

Researchers link Polyfill supply chain attack to huge network of copycat gambling sites Read More »

Socket lands a fresh $40M to scan software for security flaws

The software supply chain, which comprises the components and processes used to develop software, has become precarious. According to one recent survey, 88% of companies believe poor software supply chain security presents an “enterprise-wide risk” to their organizations. Open source supply chain components are especially fraught, thanks to the logistical hurdles in keeping each component well-maintained.

Socket lands a fresh $40M to scan software for security flaws Read More »

23andMe faces an uncertain future — so does your genetic data 

DNA and genetic testing firm 23andMe is in turmoil following a data breach last year and its ongoing financial decline. The once-pioneering giant now faces an uncertain future amid efforts to take the company private, intensifying concerns about what might happen to the genetic data of 23andMe’s some 15 million customers. Best known for its

23andMe faces an uncertain future — so does your genetic data  Read More »

Microsoft said it lost weeks of security logs for its customers’ cloud products

Microsoft has notified customers that it’s missing more than two weeks of security logs for some of its cloud products, leaving network defenders without critical data for detecting possible intrusions. According to a notification sent to affected customers, Microsoft said that “a bug in one of Microsoft’s internal monitoring agents resulted in a malfunction in

Microsoft said it lost weeks of security logs for its customers’ cloud products Read More »

Feds arrest man who allegedly participated in hack of the SEC’s X account, boosting Bitcoin’s price

Federal authorities announced Thursday the arrest of a man in Alabama, accusing him of participating in the hack of the U.S. Securities and Exchange Commission X account earlier this year. Eric Council Jr. was indicted in connection with the SEC X account hack, which happened on January 9, when the account published a post falsely

Feds arrest man who allegedly participated in hack of the SEC’s X account, boosting Bitcoin’s price Read More »

Hackers are extorting Globe Life with stolen customer data

Insurance giant Globe Life,  which provides life and health insurance policies to millions of Americans, says it is being extorted by a hacker that has stolen customers’ sensitive data. In a regulatory filing with the U.S. Securities and Exchange Commission on Thursday, the Texas-based conglomerate said it has “recently received communications” from an unknown threat

Hackers are extorting Globe Life with stolen customer data Read More »

Casio says ‘no prospect of recovery yet’ after ransomware attack 

Japanese electronics giant Casio has confirmed that many of its systems remain unusable almost two weeks after it was hit by a ransomware attack.  Casio spokesperson Ayuko Hara told TechCrunch on Thursday that the company sees “no prospect of recovery yet” as it struggles to bounce back from the cyberattack.  “Since October 5, our servers

Casio says ‘no prospect of recovery yet’ after ransomware attack  Read More »

Some Americans are still using Kaspersky’s antivirus despite U.S. government ban

At the end of September, Kaspersky forcibly uninstalled and replaced itself with a new antivirus called UltraAV on the computers of around a million Americans, many of whom were surprised and aghast that they were not asked to give their consent for the change. The move was the end result of the U.S. government ban

Some Americans are still using Kaspersky’s antivirus despite U.S. government ban Read More »