Sensitive Information stories - Page 2
Elastic completes IRAP certification for Elastic Cloud
Thu, 23rd Jan 2025
#
data protection
#
cybersecurity
#
cloud services
Elastic has achieved the Protected level IRAP certification for Elastic Cloud, ensuring compliance with Australian government security requirements.
Zendesk exploit allows phishing scams, CloudSEK reports
Wed, 22nd Jan 2025
#
endpoint protection
#
phishing
#
email security
CloudSEK's latest report reveals how cybercriminals exploit Zendesk's subdomain feature to create convincing phishing scams, risking brand trust and security.
Infoblox uncovers cyber threats exploiting domain spoofing
Wed, 15th Jan 2025
#
malware
#
phishing
#
advanced persistent threat protection
Research from Infoblox reveals ongoing exploitation of spoofed domains in malicious spam campaigns, highlighting the persistent threat posed by cybercriminals.
30,000 Postman workspaces leak API keys & credentials
Fri, 27th Dec 2024
#
phishing
#
martech
#
email security
CloudSEK has uncovered over 30,000 exposed Postman workspaces leaking sensitive API keys, affecting major firms across healthcare, finance, and sports sectors.
DeepL report reveals AI's transformative role in law
Tue, 17th Dec 2024
#
legaltech
#
communication
#
data security
A new report by DeepL reveals that 87% of legal professionals find AI tools enhance their work, marking a significant shift in the legal sector.
Upwind launches Shift Left to enhance build-time security
Thu, 12th Dec 2024
#
cx
#
martech
#
application security
Upwind has launched its Shift Left capability, enhancing CI/CD pipelines by integrating runtime context to help developers prioritise vulnerabilities.
Australia's scam prevention law aims for AUD $50m fines
Fri, 8th Nov 2024
#
uc
#
collaboration
#
data sharing
Australia's new Scam Prevention Framework compels banks and telecoms to tackle rising scams, with fines of up to AUD $50 million for non-compliance.
Vectra AI reveals critical flaw in Google Cloud Document AI
Fri, 20th Sep 2024
#
storage
#
semiconductors
#
socs
Vectra AI reveals a critical Transitive Access Abuse vulnerability in Google Cloud's Document AI, raising data exfiltration risk for users.
Cybercriminals exploit content platforms for phishing attacks
Wed, 18th Sep 2024
#
edutech
#
firewalls
#
breach prevention
Cybercriminals exploit popular content platforms to launch sophisticated phishing attacks, targeting users in Singapore and the Asia-Pacific region.
Entro Security report reveals critical risks in managing NHIs
Tue, 17th Sep 2024
#
cybersecurity
#
security vulnerabilities
#
secrets management
Report reveals grave cybersecurity flaws, with 97% of Non-Human Identities having excessive privileges and 44% of tokens exposed.
Content platforms exploited for phishing attacks, warns Barracuda
Tue, 17th Sep 2024
#
edutech
#
firewalls
#
phishing
Barracuda reveals cybercriminals exploiting content platforms for phishing, targeting educational institutions and businesses worldwide with deceitful emails.
Nuix unveils Cognitive AI for Discover platform enhancements
Fri, 6th Sep 2024
#
cx
#
martech
#
ai
Nuix has launched Cognitive AI to boost its Discover platform's efficiency in document review, promising enhanced speed, accuracy, and cost savings.
Tenable finds critical flaw in Microsoft's Copilot Studio
Wed, 28th Aug 2024
#
agentic ai
#
copilots
#
microsoft
Tenable uncovers a critical SSRF vulnerability in Microsoft's Copilot Studio that could expose sensitive information across multiple tenants. Microsoft has since issued a fix.
Confidential AI gains traction as businesses adopt generative AI
Mon, 26th Aug 2024
#
encryption
#
physical security
#
genai
Businesses adopting generative AI tools must implement Confidential AI solutions to protect proprietary data and maintain robust Zero Trust policies.
Kaspersky uncovers Russian-led crypto & web3 fraud campaign
Thu, 22nd Aug 2024
#
malware
#
gaming
#
crypto
Kaspersky has uncovered a sophisticated cyber fraud scheme, 'Tusk,' exploiting popular trends like web3 and AI to steal cryptocurrency and sensitive data.
Oracle NetSuite glitch leaks data from thousands of websites
Tue, 20th Aug 2024
#
martech
#
cdp
#
api
Thousands of websites using Oracle NetSuite's SuiteCommerce may be leaking private customer information due to misconfigured access controls.
Barracuda exposes advanced phishing attacks with new malware
Thu, 15th Aug 2024
#
malware
#
edutech
#
firewalls
Barracuda Networks reports a new wave of phishing attacks using advanced “infostealer” malware that exfiltrates extensive sensitive data, urging enhanced cybersecurity measures.
Kaspersky warns of AI's growing use in sophisticated attacks
Wed, 14th Aug 2024
#
llms
#
ai
#
cybersecurity
Kaspersky warns that AI's growing accessibility is enabling cybercriminals to launch sophisticated attacks, making robust AI defences crucial.
Cybersecurity experts praise new Australian Government mandate
Thu, 8th Aug 2024
#
firewalls
#
encryption
#
mfa
Cybersecurity experts have commended the Australian Government's PSPF Direction 002-2024 mandate, aimed at enhancing risk management in vulnerable technologies.
Study finds employee use of GenAI apps poses privacy risks
Tue, 6th Aug 2024
#
agentic ai
#
copilots
#
software engineering
Employees' widespread use of GenAI apps poses privacy risks as 30.8% of these tools train on customer data, a new study by Harmonic Security reveals.