Emergency Cisco Critical 0Day Update—Attackers Downgrade Security

CISA warns of significant cyberattack threat targeting networks, Cisco confirms 10/10 zero-day authentication bypass vulnerability already being exploited.

US cybersecurity agency CISA reportedly in dire shape amid Trump cuts and layoffs

Under the first year of the Trump administration, the U.S. cyber agency CISA has faced cuts, layoffs, and furloughs, as bipartisan lawmakers and cybersecurity industry sources say the agency is unprepared to handle a crisis.

Inside the story of the US defense contractor who leaked hacking tools to Russia

The former boss of a U.S. hacking tools maker was jailed for selling highly sensitive software exploits to a Russian broker. This is how we first learned of his arrest, reported the story, and some of the unanswered questions we still have.

Chrome 145 Security Update Decision—Google Confirms Browser Danger

Google has released Chrome 145.0.7632.116/117 addressing security flaws that pose a threat of system takeover. Now, all users must make an important update decision.

Secfix raises $12M Series A to build end-to-end security compliance platform

Munich-basedSecfix, an end-to-end security compliance platform, has closed anoversubscribed $12 million Series A round led by Alstin Capital, withparticipation from Bayern Kapital and existing investo…

Former L3Harris Trenchant boss jailed for selling hacking tools to Russian broker

Peter Williams, the former head of U.S. hacking tools maker L3Harris Trenchant, was sentenced to seven years in prison for stealing and selling his former company’s hacking and surveillance tools to a Russian firm.

CarGurus data breach affects 12.5 million accounts

Automotive marketplace CarGurus was the target of a data breach in which the names, email addresses, phone numbers, and physical addresses of millions of customers were stolen.

Treasury sanctions Russian zero-day broker accused of buying exploits stolen from U.S. defense contractor

The U.S. Treasury announced it was imposing sanctions against a Russian broker of zero-day exploits, its founder and two affiliates, citing a threat to U.S. national security. Another affiliated zero-day broker in the United Arab Emirates was also sanc…

Marquis sues firewall provider SonicWall, alleges security failings with its firewall backup led to ransomware attack

Fintech giant Marquis is suing its firewall provider SonicWall, claiming that an earlier breach with SonicWall allowed hackers to deploy ransomware on Marquis’ network.

Conduent data breach grows, affecting at least 25M people

The number of people affected by a data breach at government contractor giant Conduent is growing, as millions of people continue to receive notices warning them that hackers stole their personal data.