Tag: pro

Your office printer could be the easiest backdoor into company networks – so update now

Departments often don’t collaborate when buying new printers, risking buying flawed equipment They also don’t patch on time or enough – leaving the doors wide open Decommissioning office hardware is also a problem Hackers could be using your business printer as an easy backdoor into your corporate network and all…

Read More

Agents are advancing, fast. Security Needs to Keep Pace

Agents – software systems capable of decision making or performing tasks autonomously – are no longer experimental. Today, these agents are operational, distributed and actively making decisions across the enterprise. From writing code to scheduling tasks, agents are starting to permeate every facet of business. The reason is clear: agents…

Read More

Compliance is evolving — Is your resilience ready?

Life is changing fast for privacy professionals. A decade ago, our focus was making sure our organizations were being transparent and thoughtful about collecting individuals’ personal data and giving them choice about the handling of their data, meticulously safeguarding it, and advising on obligations and best practices in the event…

Read More

Chinese hackers hit Taiwan semiconductor manufacturing in spear phishing campaign

Proofpoint saw UNK_FistBump, UNK_DropPitch, and UNK_SparkyCarp engaging in spear-phishing The groups were trying to deploy different backdoors and malware The campaign is part of a wider effort to “achieve semiconductor self-sufficiency” experts claim Multiple Chinese state-sponsored threat actors have been coordinating attacks on the Taiwanese semiconductor industry, hitting manufacturing, supply…

Read More

Hacker using backdoor to exploit SonicWall Secure Mobile Access to steal credentials

A threat actor has used a patched vulnerability in SonicWall software The group is tracked as UNC6148 This allowed UNC6148 to potentially steal credentials and deploy ransomware A financially motivated threat actor, tracked by Google’s Threat Intelligence Group as UNC6148, has been observed targeting patched end-of-life SonicWall Secure Mobile Access…

Read More

Cisco ISE maximum severity flaw lets hackers execute root code

Cisco patched a maximum-severity flaw impacting Identity Services Engine and ISE Passive Identity Connector The flaw allowed threat actors to run arbitrary code on the underlying OS It was patched in versions 3.3 and 3.4 A maximum-severity vulnerability was recently discovered, and patched, in Cisco Identity Services Engine (ISE) and…

Read More