article thumbnail

CVE-2024-4701 (CVSS 9.9): Major RCE Risk in Netflix’s Genie Platform

Penetration Testing

A severe remote code execution (RCE) vulnerability has been discovered in Genie, Netflix’s popular open-source job orchestration engine for big data processing. The flaw, tracked as CVE-2024-4701, carries a critical CVSS score of 9.9....

article thumbnail

News alert: Harter Secrest & Emery announces designation as NetDiligence-authorized Breach Coac

The Last Watchdog

15, 2024 – Harter Secrest & Emery LLP , a full-service business law firm with offices throughout New York, is pleased to announce that it has been selected as a NetDiligence-authorized Breach Coach ® , a designation only extended to law firms that demonstrate competency and sophistication in data breach response. Rochester, N.Y.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Dell notifies customers about data breach

Malwarebytes

A cybercriminal called Menelik posted the following message on the “Breach Forums” site: “The data includes 49 million customer and other information of systems purchased from Dell between 2017-2024. I am the only person who has the data.” So, this is another big data breach that leaves us with more questions than answers.

article thumbnail

5 Major Cybersecurity Trends to Know for 2024

eSecurity Planet

Bottom line: Prepare now based on risk. Various forms of AI, such as machine learning (ML) and large language models (LLM), already dominated headlines throughout 2023 and will continue to present both overhyped possibilities and realized potential in 2024.

article thumbnail

Striking a Balance: Senator Wyden's Act and AI in Healthcare

SecureWorld News

Senator Ron Wyden, D-Ore, recently proposed the Algorithmic Accountability Act, legislation that would require companies to assess their automated systems for accuracy, bias, and privacy risks. However, there are also risks. Algorithms trained on limited or skewed data may discriminate against minorities and other groups.

article thumbnail

90 Days of Learning, Good Surprises and Extreme Optimism

Security Boulevard

As APIs are still a relatively new attack vector, many organizations do not have an accurate understanding of what risk their APIs represent from a business standpoint, where these risks persist, and how these issues can be overcome. This new capability helps organizations minimize risk on their API-first journey.

article thumbnail

Financial Services Organizations Need to Adapt their Security Practices to the Shifting Environment

Thales Cloud Protection & Licensing

Increased contactless and mobile payments introduce bigger risks. According to the 2020 Thales Data Threat Report-Global Edition , 30% of the respondents in the financial services sector are either aggressively disrupting their market or are embedding digital capabilities that enable greater enterprise agility.