security

Broadcom urges VMware customers to patch ‘emergency’ zero-day bugs under active exploitation

U.S. technology giant Broadcom is warning that a trio of VMware vulnerabilities are being actively exploited by malicious hackers to compromise the networks of its corporate customers.  The three vulnerabilities — collectively dubbed “ESXicape” by one security researcher — affect VMware ESXi, Workstation, and Fusion, which are widely-used software hypervisor products that allow multiple virtual […]

Broadcom urges VMware customers to patch ‘emergency’ zero-day bugs under active exploitation Read More »

Polish space agency says it’s investigating a cyberattack

Poland’s space agency (POLSA) says it is working to restore services following a cybersecurity incident. POLSA, the Polish government agency responsible for the country’s space activities, said in a post on X that it had “immediately disconnected” its network from the internet after detecting the cyberattack on Sunday. POLSA’s website remains offline at the time

Polish space agency says it’s investigating a cyberattack Read More »

US said to halt offensive cyber operations against Russia 

The United States has suspended its offensive cyber operations against Russia, according to reports, amid efforts by the Trump administration to grant Moscow concessions to end the war in Ukraine. The reported order to halt U.S.-launched hacking operations against Russia was authorized by U.S. Defense Secretary Pete Hegseth, according to The Record. The new guidance

US said to halt offensive cyber operations against Russia  Read More »

Belgium investigating alleged cyberattack on intelligence agency by China-linked hackers

Belgium is investigating an alleged data breach of its state security service (VSSE) by Chinese government hackers.  In a statement sent to TechCrunch on Friday, the Belgian federal prosecutor’s office said an investigation into a cyberattack was opened in November 2023 after it learned about the alleged breach.  This confirms an earlier report by the

Belgium investigating alleged cyberattack on intelligence agency by China-linked hackers Read More »

Archipelo comes out of stealth with $12M funding to secure human and AI-driven code

When it comes to AI software, you can build something clever, but that’s not always the same as building something that is secure. With so much software now getting written by AI, having a window into its security can be a challenge. That’s the premise of Archipelo, a San Francisco-based cybersecurity startup that is today

Archipelo comes out of stealth with $12M funding to secure human and AI-driven code Read More »

Hackers publish sensitive patient data allegedly stolen from Australian IVF provider Genea

Hackers claim to have published a trove of sensitive data belonging to IVF patients after a cyberattack on Genea, one of Australia’s largest fertility providers.  Genea said last week that it had experienced a cybersecurity incident that led to sensitive patient information potentially being compromised. In a statement given to TechCrunch on Wednesday, Genea CEO

Hackers publish sensitive patient data allegedly stolen from Australian IVF provider Genea Read More »

Thousands of exposed GitHub repos, now private, can still be accessed through Copilot

Security researchers are warning that data exposed to the internet, even for a moment, can linger in online generative AI chatbots like Microsoft Copilot long after the data is made private. Thousands of once-public GitHub repositories from some of the world’s biggest companies are affected, including Microsoft’s, according to new findings from Lasso, an Israeli cybersecurity

Thousands of exposed GitHub repos, now private, can still be accessed through Copilot Read More »

Thousands of exposed GitHub repositories, now private, can still be accessed through Copilot

Security researchers are warning that data exposed to the internet, even for a moment, can linger in online generative AI chatbots like Microsoft Copilot long after the data is made private. Thousands of once-public GitHub repositories from some of the world’s biggest companies are affected, including Microsoft’s, according to new findings from Lasso, an Israeli cybersecurity

Thousands of exposed GitHub repositories, now private, can still be accessed through Copilot Read More »

US employee screening giant DISA says hackers accessed data of more than 3M people

DISA Global Solutions, a U.S.-based provider of employee screening services, has said it suffered a data breach that affects more than 3.3 million people. DISA, which provides services like drug and alcohol testing and background checks to more than 55,000 enterprises and a third of Fortune 500 companies, confirmed the data breach in a filing

US employee screening giant DISA says hackers accessed data of more than 3M people Read More »