Cox Biz Auth-Bypass Bug Exposes Millions of Devices to Takeover The US broadband provider fixed an issue that allowed attackers to gain access to business customers’ modems, and then access info and execute commands with the same permissions of an ISP support team.
Ticketmaster Confirms Cloud Breach, Amid Murky Details Ticketmaster parent Live Nation has filed a voluntary SEC data breach notification, while one of its cloud providers, Snowflake, also confirmed targeted cyberactivity against some of its customers.
Perfecting the Proactive Security Playbook It's more important than ever for organizations to prepare themselves and their cybersecurity postures against known and unknown threats.
'Fog' Ransomware Rolls in to Target Education, Recreation Sectors A new group of hackers is encrypting data in virtual machines, leaving ransom notes, and calling it a day.
NIST Commits to Plan to Resume NVD Work The agency aims to burn down the backlog of vulnerabilities waiting to be added to the National Vulnerabilities Database via additional funding, third-party contract, and a partnership with CISA.
CISA's Secure by Design Initiative at 1: A Report Card There is more that needs to be done, but, so far, the initiative is a success.