ChannelLife UK - Industry insider news for technology resellers

Security vulnerabilities stories - Page 12

Img trxxyao72hd9uwfas9so8kmq

Retail theft at self-checkouts doubles, AI poses possible solution

Thu, 18th Jan 2024
#
physical security
#
shopping
#
security vulnerabilities
Surging retail theft via self-checkouts sees cart-based losses doubling in a year, costing the average store over $102k annually, reveals an Everseen report.
Img w98d5rrnsxzugdrc7eermsrl

Guardio Labs exposes critical vulnerability in Opera browser

Thu, 18th Jan 2024
#
browsers
#
opera
#
dark web
Guardio Labs uncovers a significant zero-day vulnerability in Opera's browser, threatening its 350 million active users; Opera's 'My-Flow' feature enables act of exploitation.
Img kqvmswxgdyvuzmhua3tfp1kr

Report highlights growing cyber vulnerabilities, CISO Darren Humphries comments

Wed, 17th Jan 2024
#
supply chain
#
security vulnerabilities
#
report
Critical cyber vulnerabilities are soaring, with 74% of firms struggling to swiftly patch holes, warns Darren Humphries, CISO at technology services provider, Acora.
Img vdftsy1yzw2upij75unifp23

Semgrep and HackerOne unite to improve code security reviews

Fri, 12th Jan 2024
#
uc
#
advanced persistent threat protection
#
software development
In response to rising cyber threats, Semgrep and HackerOne's PullRequest aim to streamline early vulnerability detection and testing in software development through a new collaborative initiative.
Img bbtjoeroeexskotw4vlzxjwv

Software security strains under supply chain complexity, Slim.AI reveals

Fri, 5th Jan 2024
#
supply chain
#
ai
#
cybersecurity
Over 40% of firms struggle to tackle vulnerabilities in the rising complexity of software supply chains, despite sizeable resource allocation, says Slim.AI's recent Container Report.
Img 3szy5bit2zds2dywsyvspv0t

Google Cloud launches tool to detect plaintext credentials for free

Fri, 5th Jan 2024
#
encryption
#
public cloud
#
risk & compliance
Google Cloud launches a secret discovery tool aimed at boosting organisation's security by detecting and monitoring plaintext credentials, part of its no-cost Sensitive Data Protection offering.
Img emvtllcs9zkvzqsbvtngh39y

iPhone hardware feature exploited in Operation Triangulation

Thu, 4th Jan 2024
#
semiconductors
#
advanced persistent threat protection
#
socs
Kaspersky reveals hackers have utilised a previously unknown iPhone hardware feature to bypass Apple's memory protections.
Lab

NEC unveils AI strategy, aims to revolutionise industries with generative AI

Thu, 28th Dec 2023
#
partner programmes
#
ai
#
healthtech
NEC launches a tailored AI solution to revolutionise operations across industries, building on its enhanced large language model.
Img obojbujfhex3u5ligtiytars

CybeReady celebrates standout year in security awareness training

Wed, 20th Dec 2023
#
security vulnerabilities
#
emea
#
analyst report
CybeReady has seen exceptional growth over the course of 2023, with significant strides in security awareness training solutions.
Img woxrtjmplqsqybrwgbq3apue

Zoom introduces VISS, an innovative approach to vulnerability assessment

Mon, 18th Dec 2023
#
open source
#
digital assessment
#
security vulnerabilities
Zoom unveils Vulnerability Impact Scoring System (VISS), an open-source method set to revolutionise online security. .
Erin stephan

Beware the lasting legacy of the Log4j vulnerability

Mon, 18th Dec 2023
#
application security
#
open source
#
software development
Efforts to mitigate the Log4j vulnerability involve updating to patched versions of Log4j, but the process continues to be complex.
Img 2q8qnbxeg3oqcqu7q13ijbch

DerScanner introduces Supply Chain Security to protect third-party code elements

Fri, 1st Dec 2023
#
supply chain
#
cybersecurity
#
hackers
DerScanner adds Supply Chain Security feature to verify third-party code, combating rising threats amid increasing open-source software cyberattacks.
Nicko van someren printbw

The pressing need for self-healing apps and network resilience

Thu, 30th Nov 2023
#
data protection
#
advanced persistent threat protection
#
risk & compliance
Alarming new data reveals significant vulnerabilities that, if ignored, could lead to catastrophic consequences for enterprises.
Img raruzwtgm2ef09qyzkjc169r

UK employees jeopardise workplace cybersecurity with unauthorised downloads

Thu, 9th Nov 2023
#
risk & compliance
#
cybersecurity
#
software
Two-thirds of UK employees are endangering business cybersecurity by unauthorised app downloads, often unbeknown to IT departments, Armis research reveals.
Cloud  3

Cloud native security threats concern 75% of IT & security leaders

Thu, 9th Nov 2023
#
virtualisation
#
devops
#
apm
New research shows that IT and security leaders believe Kubernetes will play a major role in app development, but are concerned about security.
Github

GitHub's AI revolution: Transforming code language & developer experience

Thu, 9th Nov 2023
#
uc
#
siem
#
martech
GitHub announces an AI-driven platform that integrates AI into every phase of development, introducing natural language as a universal programming language.
Johan gerber executive vice president  security   cyber innovation  mastercard

In today's data-driven world, compromising on cybersecurity is not an option

Fri, 3rd Nov 2023
#
fintech
#
martech
#
commerce systems
As the global financial ecosystem expands, it's getting harder for organisations to navigate the maze of cyber risks alone.
Predictions

BeyondTrust experts forecast key cybersecurity threats for 2024

Wed, 1st Nov 2023
#
malware
#
uc
#
supply chain
BeyondTrust's cybersecurity experts predict the main global threats for 2024, including advanced AI threats and a rise in subscription-based model risks.
Euro security

Winter Vivern exploits webmail server vulnerability targets European governments

Wed, 1st Nov 2023
#
surveillance
#
cybersecurity
#
security vulnerabilities
Winter Vivern cyber group targets European governments using XSS vulnerability of Roundcube Webmail server, as ESET researchers have discovered.
Ai room

Generative AI: A disruptive force at the hands of cyber attackers

Tue, 31st Oct 2023
#
phishing
#
email security
#
genai
Generative AI tools in the wrong hands are a serious threat, which is why their use must be regulated properly.