Penetration testing stories - Page 5
SharePoint zero-day flaw exploited as over 9,000 servers at risk
Wed, 23rd Jul 2025
#
devops
#
encryption
#
apm
A zero-day flaw in Microsoft SharePoint servers puts over 9,000 systems at risk, with active exploits threatening critical data security globally.
Check Point earns CREST accreditation for penetration testing
Mon, 21st Jul 2025
#
firewalls
#
devops
#
network security
Check Point Software Technologies has earned CREST accreditation for its penetration testing services, affirming its high standards in cybersecurity assurance.
Race condition in nopCommerce gift cards enables repeated use
Fri, 11th Jul 2025
#
devops
#
apm
#
e-commerce
A race condition vulnerability in nopCommerce gift cards lets attackers redeem the same card repeatedly, exploiting a flaw in the checkout process.
Zyxel advances Secure by Design for global SMB networking security
Thu, 10th Jul 2025
#
firewalls
#
devops
#
network security
Zyxel Networks adopts CISA's Secure by Design Pledge, enhancing SMB networking security with MFA, unique passwords, and transparent vulnerability reporting worldwide.
LevelBlue acquires Trustwave to form largest global MSSP
Fri, 4th Jul 2025
#
devops
#
cloud security
#
advanced persistent threat protection
LevelBlue's acquisition of Trustwave creates the world's largest pure-play managed security services provider, enhancing global cyber defence capabilities.
Most fintechs fail API security, risking sensitive payment data
Thu, 3rd Jul 2025
#
data protection
#
devops
#
fintech
New research reveals 84% of fintechs lack robust API security, exposing sensitive payment data to significant cyber risks beyond regulated sectors.
LevelBlue to acquire Trustwave, creating top global cyber giant
Wed, 2nd Jul 2025
#
devops
#
cloud security
#
advanced persistent threat protection
LevelBlue will acquire Trustwave, creating the world's largest pure-play managed security services provider with enhanced global cybersecurity capabilities.
AI drives 80 percent of phishing with USD $112 million lost in India
Tue, 1st Jul 2025
#
malware
#
data protection
#
semiconductors
AI powers 80% of phishing attacks, causing USD $112 million in losses in India by May 2025, as cybercrime evolves with machine-generated deception.
Tech sector faces sharp rise in AI & ransomware threats
Fri, 27th Jun 2025
#
firewalls
#
ransomware
#
devops
Trustwave reveals a surge in AI-driven and ransomware attacks, with tech firms facing 85% of global ransomware incidents amid rising cyber threats.
Growing gap revealed between AI innovation & enterprise security
Thu, 26th Jun 2025
#
devops
#
supply chain
#
apm
A new report reveals a widening gap between AI innovation and enterprise security, with 36% of firms struggling to keep up with generative AI risks.
Over 80,000 Microsoft Entra ID accounts hit by major takeover campaign
Thu, 12th Jun 2025
#
malware
#
uc
#
devops
Over 80,000 Microsoft Entra ID accounts have been targeted in the UNK_SneakyStrike takeover campaign exploiting the TeamFiltration penetration testing tool.
LevelBlue to acquire Aon's cyber consulting teams in global deal
Thu, 12th Jun 2025
#
devops
#
physical security
#
apm
LevelBlue will acquire Aon's Cybersecurity and IP consulting teams, including Stroz Friedberg, adding 300 experts and boosting global cyber defence services.
Exclusive: SquareX's Audrey Adeline on why the browser is 'the new endpoint'
Tue, 10th Jun 2025
#
devops
#
apm
#
edr
Audrey Adeline of SquareX warns the browser, where 80% of device time is spent, is the new cybersecurity battleground in an evolving threat landscape.
Cobalt unveils platform updates to streamline pentesting workflows
Fri, 6th Jun 2025
#
uc
#
devops
#
rpa
Cobalt updates its Offensive Security Platform to streamline pentesting with faster launches, real-time collaboration, clearer risk prioritisation, and workflow automation.
Retail cyber-attacks surge as weak defences lure criminals
Fri, 6th Jun 2025
#
devops
#
mfa
#
phishing
Retailers face a surge in cyber-attacks as weak defences and lapses in multi-factor authentication make them prime targets for criminals seeking valuable data.
Picus launches tool for real-time validation of exploitable risks
Fri, 23rd May 2025
#
semiconductors
#
devops
#
advanced persistent threat protection
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.
Kaspersky Endpoint Security achieves full marks in tampering test
Mon, 19th May 2025
#
endpoint protection
#
devops
#
apm
Kaspersky Endpoint Security has achieved 100% tamper protection in AV-Comparatives' April 2025 test, proving its unrivalled resilience on Windows 11 systems.
Emerging AI security risks exposed in Pangea's global study
Fri, 16th May 2025
#
firewalls
#
devops
#
network security
Pangea's study reveals significant security risks in AI deployment, with one in ten prompt injection attacks bypassing basic defences in corporate systems.
Survey shows enterprises shift towards software-driven pentesting
Thu, 8th May 2025
#
devops
#
advanced persistent threat protection
#
apm
Over 50% of enterprises now use software-driven penetration testing as their primary method to identify IT vulnerabilities, reveals Pentera survey.
Bugcrowd Grows Global Reach via AWS ISV Accelerate
Thu, 8th May 2025
#
devops
#
hyperscale
#
cloud security
Bugcrowd joins AWS ISV Accelerate Program, enhancing global reach and co-selling to offer crowdsourced security services via AWS sales teams worldwide.