IdentityMicrosoft dials up Uncle Sam to take down LummaC2 malware backboneShaun NicholsMay 22, 2025The U.S. Department of Justice teamed up with Microsoft to take down the backbone of a prolific malware operator.
Critical Infrastructure SecurityTrimble Cityworks zero-day attacks on US local governments detailedLaura FrenchMay 22, 2025Analysis revealed the deployment of various backdoors by suspected Chinese-speaking threat actors.
Data SecurityFTC orders GoDaddy to establish a comprehensive security programSteve ZurierMay 22, 2025FTC said GoDaddy failed to prove it offered its 21 million customers adequate security.
Critical Infrastructure SecurityRussian hackers targeting Western logistics, tech support of UkraineShaun NicholsMay 21, 2025APT28 aims to infiltrate the networks of military groups and private contractors.
AI/MLNIST releases new AI attack taxonomy with expanded GenAI sectionLaura FrenchMay 21, 2025The latest version puts more emphasis on supply chain and AI agent security.
RansomwareApparent ransomware attack leads to systemwide outage for Kettering HealthSteve ZurierMay 21, 2025Kettering operates 14 medical centers and more than 120 outpatient locations in western Ohio.
IdentityOracle Database TNS vulnerability could leak data to further attacksShaun NicholsMay 20, 2025A vulnerability in Oracle database communications could allow an unauthenticated user to access system memory contents.
IdentitySEO poisoning campaign swipes direct deposits from employeesLaura FrenchMay 20, 2025Phishing pages targeting mobile devices showed up at the top of Google search results.
Identity‘Textbook identity attack’ dropped ransomware via fake KeePass siteSteve ZurierMay 20, 2025Malware exported the victims' KeePass password databases to drop ransomware on VMWare ESXi datastores.
Career ManagementCybersecurity salaries in 2025: Shifting priorities, rising demand for specialized rolesBill BrennerMay 20, 2025CyberSN’s 2025 Salary Data Report reveals rising pay for specialized technical and leadership roles, while generalist and support positions face stagnation amid outsourcing, automation, and tighter budgets.
A handy list of risk questions every healthcare CISO should ask potential suppliersRobert A. Eikel May 22, 2025