Sensitive Information stories
Vectra AI reveals a critical Transitive Access Abuse vulnerability in Google Cloud's Document AI, raising data exfiltration risk for users.
Cybercriminals exploit popular content platforms to launch sophisticated phishing attacks, targeting users in Singapore and the Asia-Pacific region.
Report reveals grave cybersecurity flaws, with 97% of Non-Human Identities having excessive privileges and 44% of tokens exposed.
Barracuda reveals cybercriminals exploiting content platforms for phishing, targeting educational institutions and businesses worldwide with deceitful emails.
Tenable uncovers a critical SSRF vulnerability in Microsoft's Copilot Studio that could expose sensitive information across multiple tenants. Microsoft has since issued a fix.
Businesses adopting generative AI tools must implement Confidential AI solutions to protect proprietary data and maintain robust Zero Trust policies.
Kaspersky has uncovered a sophisticated cyber fraud scheme, 'Tusk,' exploiting popular trends like web3 and AI to steal cryptocurrency and sensitive data.
Thousands of websites using Oracle NetSuite's SuiteCommerce may be leaking private customer information due to misconfigured access controls.
Barracuda Networks reports a new wave of phishing attacks using advanced “infostealer” malware that exfiltrates extensive sensitive data, urging enhanced cybersecurity measures.
Kaspersky warns that AI's growing accessibility is enabling cybercriminals to launch sophisticated attacks, making robust AI defences crucial.
Employees' widespread use of GenAI apps poses privacy risks as 30.8% of these tools train on customer data, a new study by Harmonic Security reveals.
Cybercriminals capitalised on a CrowdStrike Falcon outage by creating over 180 fake support websites, targeting 8.5 million affected devices worldwide.
Cybercriminals are leveraging legitimate URL protection services to disguise phishing attacks, targeting hundreds of companies, reports Barracuda Networks.
Harmonic Security launches Harmonic Protect, a zero-touch data protection tool for the generative AI era, eliminating manual data labelling and complex rules.
Barracuda Networks reveals cybercriminals are exploiting URL protection services to embed malicious code in phishing emails, deceiving recipients into clicking harmful links.
A cyberattack disrupted services at 20 UK railway stations, exposing security flaws in public transport infrastructure and raising public anxiety over data breaches.
Nuix has launched Cognitive AI to boost its Discover platform's efficiency in document review, promising enhanced speed, accuracy, and cost savings.
Cybersecurity experts have commended the Australian Government's PSPF Direction 002-2024 mandate, aimed at enhancing risk management in vulnerable technologies.
Immutability is vital for Australian enterprises, ensuring data integrity, compliance, and trust amidst rising cyber threats and stringent regulations.
Spark and Netskope have expanded their partnership to offer managed Security Service Edge services in New Zealand, bolstering cybersecurity for remote workers and cloud services.