Software maker Adobe on Tuesday released security patches for 29 documented vulnerabilities across multiple enterprise-facing products and warned that hackers could exploit these bugs to take complete control of vulnerable machines.
LofyGang Cybercrime Group Used 200 Malicious NPM Packages for Supply Chain Attacks
A cybercrime group named LofyGang has distributed roughly 200 malicious NPM packages that have been downloaded thousands of times over the past year, according to Checkmarx.
Endor Labs Joins Race to Secure Software Supply Chain
It’s officially a venture capital funding frenzy in the software supply chain security space.
State Bar of Georgia Confirms Data Breach Following Ransomware Attack
The State Bar of Georgia was hit by a ransomware attack earlier this year and the organization has now confirmed that member and employee information was compromised.
Former Uber CISO Joe Sullivan Found Guilty Over Breach Cover-Up

A San Francisco jury on Wednesday found former Uber security chief Joe Sullivan guilty of covering up a 2016 data breach and concealing information on a felony from law enforcement.
BlackByte Ransomware Abuses Legitimate Driver to Disable Security Protections
The BlackByte ransomware has been observed targeting a vulnerability in a legitimate driver to disable endpoint detection and response (EDR) solutions running on the victim machine.
KKR Boosts NetSPI Stake with $410 Million Investment
Private equity giant KKR is expanding its big bet on penetration testing and attack surface management firm NetSPI with a new $410 million investment round.
Iranian Hackers Target Enterprise Android Users With New RatMilad Spyware
Zimperium is warning of an Iranian hacking group using a new piece of Android spyware in a broad campaign that has also targeted enterprise users.
US Government Details Tools Used by APTs in Defense Organization Attack
The NSA, FBI and CISA have issued an alert describing the tools and techniques used by advanced persistent threat (APT) actors in an attack aimed at an unnamed defense industrial base organization in the United States.
Report: Mexico Continued to Use Spyware Against Activists
The Mexican government or army has allegedly continued to use spyware designed to hack into the cellphones of activists, despite a pledge by President Andrés Manuel López Obrador to end such practices.












