CFOtech India - Technology news for CFOs & financial decision-makers

Security vulnerabilities stories - Page 6

Techday c875827c28c97e73fd28

Upwind launches Shift Left to enhance build-time security

Thu, 12th Dec 2024
#
cx
#
martech
#
application security
Upwind has launched its Shift Left capability, enhancing CI/CD pipelines by integrating runtime context to help developers prioritise vulnerabilities.
Techday d1935e86bfc527e2a477

Tenable unveils autonomous solution for patch management

Wed, 11th Dec 2024
#
cloud security
#
it automation
#
risk & compliance
Tenable has launched Tenable Patch Management, an autonomous solution designed to streamline vulnerability remediation amid increasing cyber threats.
Techday 566c94f90b77cf96fcbc

December Patch Tuesday reveals 70 vulnerabilities

Wed, 11th Dec 2024
#
ransomware
#
iam
#
cybersecurity
This December, Microsoft addresses 70 vulnerabilities, including 16 critical remote code execution flaws, in its latest Patch Tuesday update.
Techday dc612e843c2322bb268b

Lineaje report reveals open source vulnerabilities rise

Thu, 5th Dec 2024
#
malware
#
supply chain
#
cybersecurity
A new report by Lineaje reveals that over 95% of security vulnerabilities stem from open-source dependencies, highlighting critical risks for organisations.
Techday f7ceb5d54411104b4a15

Semperis unveils Lightning Intelligence for identity security

Thu, 5th Dec 2024
#
saas
#
cloud security
#
cybersecurity
Semperis has unveiled Lightning Intelligence, a new SaaS solution to enhance identity security for hybrid Active Directory and Entra ID systems.
Techday 1727797ec6ff3a62b336

Tamnoon partners with Wiz to boost cloud threat detection

Tue, 3rd Dec 2024
#
uc
#
cloud security
#
advanced persistent threat protection
Tamnoon has partnered with Wiz to launch the Wiz Defend solution, enhancing cloud threat detection and empowering security teams with advanced insights.
Techday a6b142551937f892071a

Veracode unveils new AI-driven features for Veracode Fix

Tue, 3rd Dec 2024
#
hyperscale
#
application security
#
risk & compliance
Veracode has unveiled enhancements to its AI-powered coding solution, Veracode Fix, aiming to cut vulnerability remediation time drastically.
Techday 810776a3e6fc11479b81

Experts warn of cyber risks as Black Friday approaches

Thu, 28th Nov 2024
#
endpoint protection
#
edr
#
data privacy
As Black Friday and Cyber Monday approach, experts warn shoppers to be vigilant against rising cyber threats like malvertising and online fraud.
Techday 6ce524218f482bbd7b59

Study finds 53% of paid Android VPNs leak user data

Fri, 22nd Nov 2024
#
data protection
#
google
#
data sharing
A study by Top10VPN.com reveals over 50% of paid Android VPN apps leak user data, highlighting significant security flaws in popular services.
Techday 18507b94f961824108c5

Tenable discovers vulnerabilities in IaC & PaC platforms

Thu, 21st Nov 2024
#
malware
#
endpoint protection
#
cloud security
Tenable's Cloud Security Research team has uncovered critical vulnerabilities in policy-as-code frameworks, escalating risks of data breaches and leaks.
Techday 20481d4893a8669acb2f

Critical needrestart vulnerabilities found in Ubuntu Servers

Wed, 20th Nov 2024
#
malware
#
cybersecurity
#
ubuntu
The Qualys Threat Research Unit has identified five critical vulnerabilities in needrestart used by Ubuntu Servers, risking unauthorized root access for users.
Techday 10e77432de571700c63b

eBPF Foundation unveils security threat model & audit

Mon, 18th Nov 2024
#
supply chain
#
open source
#
cybersecurity
The eBPF Foundation has unveiled two reports on eBPF security, including a threat model and a verifier code audit, aiming to enhance safe deployment.
Techday 0735ae790593e0778f6c

November Patch Tuesday reveals 90 vulnerabilities

Wed, 13th Nov 2024
#
cybersecurity
#
microsoft
#
internet explorer
Microsoft is rolling out patches for 90 vulnerabilities this November, including critical remote code execution flaws and several in-the-wild exploits.
Techday fa96ea2af3a004655341

Androxgh0st botnet expands with Mozi IoT capabilities

Wed, 13th Nov 2024
#
datacentre infrastructure
#
iot
#
advanced persistent threat protection
CloudSEK warns that the Androxgh0st botnet has significantly expanded its reach, now targeting critical vulnerabilities in various systems and IoT devices.
Techday bbbe34e6c9f336d18b68

HackerOne report reveals AI risks dominate security concerns

Mon, 11th Nov 2024
#
blockchain
#
online services
#
security vulnerabilities
The latest Hacker-Powered Security Report reveals 48% of security professionals cite AI as their top threat, amid a surge in AI-related vulnerabilities.
Techday 779e47c1ef911e50b8e1

Symbiotic Security secures $3m to boost shift-left strategy

Thu, 7th Nov 2024
#
cybersecurity
#
software development
#
cloud services
Symbiotic Security has secured USD $3 million in pre-seed funding to launch a software that enhances security during the software development process.
Techday 05ac61d6554d12a760dc

Major retailer's IT flaw exposes sensitive data, now fixed

Tue, 5th Nov 2024
#
apm
#
data privacy
#
cybersecurity
Cequence Security has uncovered a major vulnerability in a leading food and drug retailer's IT systems, exposing sensitive data across four subdomains.
Techday ec373f81c636f826fb91

Mindgard reveals vulnerabilities in Azure AI content safety

Thu, 31st Oct 2024
#
ai security
#
llms
#
ai
Mindgard has uncovered serious security flaws in Microsoft's Azure AI Content Safety Service, enabling potential attacks to undermine its security measures.
Techday 4d442c10cfb1c5c4eedd

Satellite IoT revenue to reach USD $5.8 billion by 2027

Wed, 30th Oct 2024
#
firewalls
#
network security
#
iot
A Juniper Research study predicts satellite IoT revenue will surge from USD $2.9 billion in 2024 to USD $5.8 billion by 2027, driven by demand for remote connectivity.
Techday f94c3271918355d60dc1

Tenable reveals vulnerability in Open Policy Agent for Windows

Tue, 29th Oct 2024
#
risk & compliance
#
cybersecurity
#
software development
Tenable has revealed a medium-severity vulnerability in Open Policy Agent for Windows that exposes user credentials, urging updates to version 0.68.0.