US Defense Contractors Admit Their Rising CMMC Scores May Not Be Accurate
Defense contractors in the US are doubting their own self-assessment scores under CMMC Phase I, even as those scores hit an all-time high
20 articles
Defense contractors in the US are doubting their own self-assessment scores under CMMC Phase I, even as those scores hit an all-time high
A US government advisory warned that attackers are deploying AI-generated exploitation scripts against exposed Siemens S7 Series PLCs
Zimperium lifts the lid on the ToxicPanda 2.
Huntress researcher explains how they were targeted by an elaborate and persistent phishing scam following Def Con
The Linux Foundation's Akrites initiative will become operational in September, when it will begin accepting AI-powered vulnerability reports for open-source...
eSentire uncovered a malware campaign combining ClickFix lures with ErrTraffic and Cruciferra
Grandoreiro is active after its 2024 disruption, with Mexico now accounting for 40% of detections
OpenAI is strengthening safeguards for its most advanced AI models, citing growing risks as frontier systems gain more powerful cyber capabilities
The FBI warned that the RaaS operation has significantly enhanced its tactics, techniques and procedures, making it harder for defenders to counter
The UK’s privacy watchdog has called on police using facial recognition to follow its recommendations
Cifas data finds account takeover and identity fraud are driving a surge in fraud cases
The security flaw in Snowflake’s GitHub Actions workflow had been missed by a GitHub Advanced Security scan, said a Wiz researcher
Enterprise software creation has accelerated as vulnerability levels rise, Sonatype finds
Critical AIT-GUI flaws expose spacecraft commands and scripts to unauthenticated attackers
UT San Antonio has taken IT systems offline following a cyber incident, disrupting student registration and tuition payments days before term is due to resume
Black Kite finds mid-market is the sweet spot for ransomware as manufacturers are most likely to be hit
Solicitors Regulation Authority sounds the alarm over AI hallucinations and data leaks
UNISOC modem flaw enabled kernel-level code execution through video calls
Critical User Profile Builder flaw let unauthenticated attackers access administrator accounts
The European Telecommunications Standards Institute has launched an approval process for standards vendors will have to meet under the Cyber Resilience Act