Customer relationship management services provider Salesforce says it has handed out more than $12.2 million in payouts to the ethical hackers who reported vulnerabilities as part of its bug bounty program.
Astrix Security Nabs $15M to Tackle Attack Surface Sprawl
Israeli startup Astrix Security has banked $15 million in early stage venture capital investment to build technology to help organizations secure third-party app integrations.
The Tel Aviv-based Astrix said the seed round was led by Bessemer Venture Partners and F2 Capital. Venrock and a list of angel investors also participated.
CISA Warns of Attacks Exploiting Recent Vulnerabilities in Zabbix Monitoring Tool
The United States Cybersecurity and Infrastructure Security Agency (CISA) this week expanded its Known Exploited Vulnerabilities Catalog with two critical flaws in the Zabbix enterprise monitoring solution.
MDR Vendor eSentire Banks $325M at ‘Unicorn’ Valuation
Canadian cybersecurity vendor eSentire has scored $325 million in new financing at a heady valuation north of a billion dollars.
Wiper Used in Attack on Iran National Media Network
An analysis of a January attack targeting Iran’s national media corporation has found the use of multiple malware families, including a data-wiper and custom backdoors.
Coinbase Pays $250K for ‘Market-Nuking’ Security Flaw
Cryptocurrency exchange Coinbase has shelled out its largest ever bug bounty payment — a quarter of a million dollars — for what was described as a “market-nuking” security flaw that could have allowed users to sell bitcoins they didn’t own.
Researchers Devise Method to Decrypt Hive Ransomware-Encrypted Data
A group of academic researchers has found a way to exploit a security flaw in the encryption algorithm used by the Hive ransomware to recover hijacked and encrypted data.
Vulnerability in UpdraftPlus Plugin Exposed Millions of WordPress Site Backups
A high-severity vulnerability in the UpdraftPlus WordPress plugin can allow an attacker to obtain website backups that could contain sensitive information.
CISA Creates List of Free Cybersecurity Tools and Services for Defenders
The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Friday announced that it has compiled a list of free cybersecurity tools and services that can help organizations reduce risk and improve resilience.
Patch for Actively Exploited Flaw in Adobe Commerce and Magento Bypassed
Adobe has announced new patches for the Commerce and Magento e-commerce platforms after researchers discovered that a fix for an actively exploited zero-day can be bypassed.












