Financial services and stock trading platform CashApp on Tuesday fessed up to a data breach being blamed on a former employee who stole brokerage data, including portfolio values, from an unknown number of U.S. accounts.
API IAM Security Provider Corsha Raises $12 Million
Washington, DC-based API security firm Corsha has raised $12 million in a Series A funding round led by Ten Eleven Ventures and Razor’s Edge Ventures, with participation from 1843 Capital.
Defenders Provided Tools and Information for Dealing With Spring4Shell
US Government Agencies Instructed to Patch Spring4Shell Vulnerability
Enterprise defenders have been provided information and tools to help them deal with Spring4Shell and potential attacks exploiting the vulnerability.
Experts Warn Defenders: Don’t Relax on Log4j
It’s been four months since the Log4j issue exploded onto the internet. All the major software vendors affected by it have by now released patches – but even where companies have patched, it would be wrong to relax.
Apple Ships Emergency Patches for ‘Actively Exploited’ macOS, iOS Flaws
Apple’s security response team on Thursday released emergency patches to cover a pair of “actively exploited” vulnerabilities affecting macOS, iOS and iPadOS devices.
New Modem Wiper Malware May be Connected to Viasat Hack
A pair of security researchers at SentinelLabs have intercepted a piece of destructive wiper malware hitting routers and modems and found digital breadcrumbs suggesting a link to the devastating Viasat hack that took down wind turbines in Germany.
Skiff Banks $10.5M for E2E Encrypted Workplace Collaboration
Sequoia Capital has doubled down on its early-stage investment in Skiff, a startup building a security-themed, end-to-end encrypted workspace collaboration platform.
SaaS Security Startup Wing Emerges From Stealth With $26 Million in Funding
Wing Security, a Tel Aviv, Israel-based SaaS security startup, this week emerged from stealth mode with $26 million in seed and Series A funding.
GGV Capital, Harmony Partners, S-Capital, Silicon Valley CISO Investments Group, and various security leaders have invested in the company.
Spring4Shell: Spring Flaws Lead to Confusion, Concerns of New Log4Shell-Like Threat

The disclosure of several vulnerabilities affecting the widely used Spring Java framework has led to confusion and concerns that organizations may need to deal with a flaw similar to the notorious Log4Shell.
Investors Bet on Cyberpion in Attack Surface Management Space
Attack surface management specialists Cyberpion has secured $27 million in early-stage funding to build technology that helps organizations manage exposure to risk.












