CSO

The day's top cybersecurity news and in-depth coverage

CSO First Look

August 27, 2022

Password manager LastPass reveals intrusion into development system

The company states that user data remains secure and it continues to investigate the incident. Read more ▶

Image: Sophisticated BEC scammers bypass Microsoft 365 multi-factor authentication

Sophisticated BEC scammers bypass Microsoft 365 multi-factor authentication

Analysis of the BEC campaign reveal weaknesses in Microsoft's authentication system.

Why SBOMs alone aren’t enough for software supply chain security

Organizations must be willing to ask software vendors hard risk-based questions and be prepared for that to lengthen the purchase process.

Researchers warn of darkverse emerging from the metaverse

Cybercriminals see the metaverse as a way to launch cyberattacks, launder money, and carry out disinformation campaigns.

Image: How 2023 cybersecurity budget allocations are shaping up

How 2023 cybersecurity budget allocations are shaping up

Security spending is not expected to slow much next year as organizations look to improve cloud defenses, rely more on MSSPs.

Up to 35% more CVEs published so far this year compared to 2021

A new report shows that significantly more CVEs will be published this year, and that some organizations are still vulnerable from older, unpatched CVEs.

DNS data indicates increased malicious domain activity, phishing toolkit reuse

Akamai research discovers phishing toolkit reuse played a key role in increased malicious domain activity in the second quarter of 2022.

CSO
Facebook Twitter LinkedIn
© 2022 CSO
140 Kendrick Street, Building B
Needham, MA 02494