Switches used by organizations around the world are affected by critical vulnerabilities that could allow malicious actors to gain remote access to enterprise networks and steal valuable data, according to enterprise device security company Armis.
Michigan College Cancels Classes After Ransomware Attack
A Michigan community college has cancelled classes indefinitely following a ransomware attack over the weekend.
Russian Cyberspies Target Diplomats With New Malware
Russian cyberespionage group APT29 has been observed using new malware and techniques in phishing campaigns targeting diplomatic organizations in Europe, the Americas, and Asia, Mandiant reports.
Google Rolls Out Developer Preview of Android Privacy Sandbox
Google has taken another step toward enabling new privacy-focused advertising solutions on Android, with the release of Privacy Sandbox in developer preview.
GitHub Says Recent Attack Was Highly Targeted
Microsoft-owned code hosting platform GitHub says the recent cyberattack that resulted in the cloning of private repositories was highly targeted in nature.
Smallstep Raises $26 Million for Automated Certificate Management Platform
Certificate management startup Smallstep Labs announced that it has raised $26 million in funding from several venture capital firms.
New Black Basta Ransomware Possibly Linked to Conti Group

A new ransomware operation named Black Basta has targeted at least a dozen companies and some researchers believe there may be a connection to the notorious Conti group.
Google Offering Up to $1.5 Million for Android 13 Beta Exploits
In an effort to improve the security of its mobile operating system, Google has temporarily increased the bug bounty payouts for vulnerabilities identified in Android 13 beta.
Cybersecurity M&A Roundup: 37 Deals Announced in April 2022

Thirty-seven cybersecurity-related merger and acquisition (M&A) deals were announced in April 2022.
The VC View: The DevSecOps Evolution and Getting “Shift Left” Right
As the world increasingly moves to the cloud and digital-everything, organizations’ risk postures have also changed. Embedding security into the business is the new, must-have approach and product security is the most seamless path to make it happen – led by the emergence of the engineering-centric CISO












