CFOtech India - Technology news for CFOs & financial decision-makers

Penetration testing stories - Page 5

Detailed illustration computer server room digital warning alerts cybersecurity risks

SharePoint zero-day flaw exploited as over 9,000 servers at risk

Wed, 23rd Jul 2025
#
devops
#
encryption
#
apm
A zero-day flaw in Microsoft SharePoint servers puts over 9,000 systems at risk, with active exploits threatening critical data security globally.
Realistic illustration cybersecurity professional analyzing network digital shields cables penetration testing assurance

Check Point earns CREST accreditation for penetration testing

Mon, 21st Jul 2025
#
firewalls
#
devops
#
network security
Check Point Software Technologies has earned CREST accreditation for its penetration testing services, affirming its high standards in cybersecurity assurance.
Multiple hands grabbing gift cards digital shopping cart simultaneous redemption online checkout

Race condition in nopCommerce gift cards enables repeated use

Fri, 11th Jul 2025
#
devops
#
apm
#
e-commerce
A race condition vulnerability in nopCommerce gift cards lets attackers redeem the same card repeatedly, exploiting a flaw in the checkout process.
Secure server room firewall network cables multifactor auth taiwan architecture

Zyxel advances Secure by Design for global SMB networking security

Thu, 10th Jul 2025
#
firewalls
#
devops
#
network security
Zyxel Networks adopts CISA's Secure by Design Pledge, enhancing SMB networking security with MFA, unique passwords, and transparent vulnerability reporting worldwide.
Global cyber defense digital shields security padlocks network connections

LevelBlue acquires Trustwave to form largest global MSSP

Fri, 4th Jul 2025
#
devops
#
cloud security
#
advanced persistent threat protection
LevelBlue's acquisition of Trustwave creates the world's largest pure-play managed security services provider, enhancing global cyber defence capabilities.
Broken digital padlock with credit card numbers and payment icons flowing out symbolizing fintech data breach

Most fintechs fail API security, risking sensitive payment data

Thu, 3rd Jul 2025
#
data protection
#
devops
#
fintech
New research reveals 84% of fintechs lack robust API security, exposing sensitive payment data to significant cyber risks beyond regulated sectors.
Digital circuitry two shields merging cybersecurity companies union

LevelBlue to acquire Trustwave, creating top global cyber giant

Wed, 2nd Jul 2025
#
devops
#
cloud security
#
advanced persistent threat protection
LevelBlue will acquire Trustwave, creating the world's largest pure-play managed security services provider with enhanced global cybersecurity capabilities.
Image001  3

AI drives 80 percent of phishing with USD $112 million lost in India

Tue, 1st Jul 2025
#
malware
#
data protection
#
semiconductors
AI powers 80% of phishing attacks, causing USD $112 million in losses in India by May 2025, as cybercrime evolves with machine-generated deception.
Masked figure at computer digital locks warning icons binary code cyber attack threat

Tech sector faces sharp rise in AI & ransomware threats

Fri, 27th Jun 2025
#
firewalls
#
ransomware
#
devops
Trustwave reveals a surge in AI-driven and ransomware attacks, with tech firms facing 85% of global ransomware incidents amid rising cyber threats.
Modern office building split ai digital patterns and cracked security shields

Growing gap revealed between AI innovation & enterprise security

Thu, 26th Jun 2025
#
devops
#
supply chain
#
apm
A new report reveals a widening gap between AI innovation and enterprise security, with 36% of firms struggling to keep up with generative AI risks.
Vector illustration cloud symbol with locked unlocked padlocks compromised accounts

Over 80,000 Microsoft Entra ID accounts hit by major takeover campaign

Thu, 12th Jun 2025
#
malware
#
uc
#
devops
Over 80,000 Microsoft Entra ID accounts have been targeted in the UNK_SneakyStrike takeover campaign exploiting the TeamFiltration penetration testing tool.
Two handshake silhouettes with digital shield symbolizing cybersecurity partnership

LevelBlue to acquire Aon's cyber consulting teams in global deal

Thu, 12th Jun 2025
#
devops
#
physical security
#
apm
LevelBlue will acquire Aon's Cybersecurity and IP consulting teams, including Stroz Friedberg, adding 300 experts and boosting global cyber defence services.
Squarex

Exclusive: SquareX's Audrey Adeline on why the browser is 'the new endpoint'

Tue, 10th Jun 2025
#
devops
#
apm
#
edr
Audrey Adeline of SquareX warns the browser, where 80% of device time is spent, is the new cybersecurity battleground in an evolving threat landscape.
Abstract digital illustration interconnected nodes flowcharts cybersecurity workflows speed efficiency

Cobalt unveils platform updates to streamline pentesting workflows

Fri, 6th Jun 2025
#
uc
#
devops
#
rpa
Cobalt updates its Offensive Security Platform to streamline pentesting with faster launches, real-time collaboration, clearer risk prioritisation, and workflow automation.
Abstract retail store digital cyber attack security threat network lines vivid

Retail cyber-attacks surge as weak defences lure criminals

Fri, 6th Jun 2025
#
devops
#
mfa
#
phishing
Retailers face a surge in cyber-attacks as weak defences and lapses in multi-factor authentication make them prime targets for criminals seeking valuable data.
Techday f 6ff748a261669589bbaa

Picus launches tool for real-time validation of exploitable risks

Fri, 23rd May 2025
#
semiconductors
#
devops
#
advanced persistent threat protection
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.
Techday f 8572fd82a4f292ade1d4

Kaspersky Endpoint Security achieves full marks in tampering test

Mon, 19th May 2025
#
endpoint protection
#
devops
#
apm
Kaspersky Endpoint Security has achieved 100% tamper protection in AV-Comparatives' April 2025 test, proving its unrivalled resilience on Windows 11 systems.
Techday f 91052960dafe642cea07

Emerging AI security risks exposed in Pangea's global study

Fri, 16th May 2025
#
firewalls
#
devops
#
network security
Pangea's study reveals significant security risks in AI deployment, with one in ten prompt injection attacks bypassing basic defences in corporate systems.
Techday f 617132e59d95b2fe7177

Survey shows enterprises shift towards software-driven pentesting

Thu, 8th May 2025
#
devops
#
advanced persistent threat protection
#
apm
Over 50% of enterprises now use software-driven penetration testing as their primary method to identify IT vulnerabilities, reveals Pentera survey.
Techday f 6cfebf2fa580853f9209

Bugcrowd Grows Global Reach via AWS ISV Accelerate

Thu, 8th May 2025
#
devops
#
hyperscale
#
cloud security
Bugcrowd joins AWS ISV Accelerate Program, enhancing global reach and co-selling to offer crowdsourced security services via AWS sales teams worldwide.