France’s postal service, La Poste, has been largely down for over twelve hours following a widespread network failure, reports The Register. All…
News
One-time codes used to hack corporate accounts
Security firm Proofpoint has discovered that hackers have found a clever way to bypass multi-factor authentication (MFA) and thereby get their hands…
Why outsourced cyber defenses create systemic risks
Outsourcing critical IT and cybersecurity once looked like a shortcut to efficiency. Today, it is a shortcut to systemic fragility. Breaches at…
South Korean firm hit with US investor lawsuit over data breach disclosure failures
A US federal securities class action lawsuit has alleged that South Korean ecommerce giant Coupang took nearly a month to disclose a…
WhatsApp API worked exactly as promised, and stole everything
Security researchers have uncovered a malicious npm package that poses as a legitimate WhatsApp Web API library while quietly stealing messages, credentials,…
Agentic AI already hinting at cybersecurity’s pending identity crisis
Making the most of agentic AI is a top agenda item for many enterprises the coming year, as business executives are keen…
Scammers use AI to make fake art seem real
Fraudsters have started using AI to create fake documents claiming that artworks are genuine or legally owned, the Financial Times reports. According…
Pirate activists have copied Spotify’s entire music library
A collective of pirate activists say they gained access to 256 million rows of metadata and 86 million audio files, equivalent to…
Think you can beat ransomware? RansomHouse just made it a lot harder
A recent upgrade to the RansomHouse ransomware operation has added new concerns for enterprise defenders, introducing a multi-layered encryption update to the…
Hackers exploit Microsoft OAuth device codes to hijack enterprise accounts
Cybercriminals and state-sponsored hackers are increasingly exploiting Microsoft’s legitimate OAuth 2.0 device authorization process to hijack enterprise accounts, bypassing multifactor authentication protections…