Two House committees have launched an investigation into the government’s use of facial recognition software that was most recently used by the Internal Revenue Service, but stopped after complaints from lawmakers and privacy advocates.
Conti Ransomware Gang Claims Cyberattack on Wind Turbine Giant Nordex
The Conti ransomware gang has claimed responsibility for a cyberattack that forced wind turbine giant Nordex to shut down internal systems on March 31.
The incident, the company revealed in early April, was identified at an early stage, but resulted in multiple systems across Nordex’s branches being taken offline.
New ‘Enemybot’ DDoS Botnet Targets Routers, Web Servers
A recently identified DDoS botnet has targeted several router models and various types of web servers by exploiting known vulnerabilities, Fortinet warns.
Google Patches Third Actively Exploited Chrome Zero-Day of 2022
A Chrome 100 update that Google announced on Thursday resolves two vulnerabilities in the popular browser, including one already exploited in the wild.
U.S. Gov Blames North Korea Hackers for $600M Cryptocurrency Heist
The U.S. government says the recent $600 million Ronin Validator cryptocurrency heist was conducted by Lazarus Group, the notorious hacking outfit linked to the North Korean government.
Critical Code Execution Flaw Haunts VMware Cloud Director
Cloud computing and virtualization technology firm VMWare on Thursday rolled out patches for an extremely critical security flaw in the VMWare Cloud Director product, warning that unpatched systems are at risk of remote code execution attacks.
Cloud Security Startup DoControl Raises $30 Million
Cloud data security startup DoControl has closed a $30 million Series B funding round that brings the total raised by the company to $43 million.
The financing round was led by Insight Partners, with additional investments from Cardumen Capital, CrowdStrike Falcon Fund, RTP Global, and StageOne Ventures.
Obsidian Raises $90 Million for SaaS Security Platform
Obsidian Security on Thursday announced raising $90 million in a Series C funding round, which brings the total raised by the company to $119.5 million.
The investment was led by Menlo Ventures, Norwest Venture Partners and IVP, with participation from Greylock, Wing and GV. Obsidian.
Critical Vulnerability in Elementor Plugin Impacts Millions of WordPress Sites
A critical vulnerability addressed in the Elementor WordPress plugin could allow authenticated users to upload arbitrary files to affected websites, potentially leading to code execution.
Elementor is a drag-and-drop website builder for WordPress that has more than 5 million installations.
Several Vulnerabilities Allow Disabling of Palo Alto Networks Products
Cybersecurity firm Palo Alto Networks has informed customers about several vulnerabilities that could allow a malicious actor to disable its products.












