South American startup Strike Security has secured $5.4 million to fund an ambitious plan to disrupt the penetration testing and attack surface management business.
Okta Closes Lapsus$ Breach Probe, Adds New Security Controls
Identity and access management tech firm Okta says it has concluded an investigation into the embarrassing Lapsus$ hacking incident and has severed ties with a third-party company at the center of the breach.
SeeMetrics Raises $6M for Portfolio Management Platform
An Israeli startup has raised early-stage funding to build technology to help cybersecurity teams measure, track and simplify security program operations.
Webex Monitors Microphone Even When Muted, Researchers Say
Cisco’s enterprise-facing Webex video conferencing and messaging utility monitors the microphone at all times, even when the user’s microphone is muted in the software, according to warning from a group of academic researchers.
FBI Warns of ‘Reverse’ Instant Payments Phishing Schemes
The Federal Bureau of Investigation (FBI) has issued an alert on a new phishing scheme aimed at tricking victims into making money transfers to accounts controlled by cybercriminals.
GitHub Warns of Private Repositories Downloaded Using Stolen OAuth Tokens
GitHub has sounded the alarm on a cyberattack that resulted in the private repositories of dozens of organizations being downloaded by an unauthorized party abusing stolen OAuth user tokens.
The incident was identified on April 12, when the code hosting platform observed suspicious activity on its npm production infrastructure.
Cloud Security Startup DoControl Raises $30 Million
Cloud data security startup DoControl has closed a $30 million Series B funding round that brings the total raised by the company to $43 million.
The financing round was led by Insight Partners, with additional investments from Cardumen Capital, CrowdStrike Falcon Fund, RTP Global, and StageOne Ventures.
Adobe Patches Gaping Security Holes in Acrobat, Reader, Photoshop
Adobe’s security update engine revved into overdrive this month with the release of patches for at least 78 documented software vulnerabilities, some serious enough to expose corporate customers to remote code execution attacks.
OpenSSH Moves to Prevent ‘Capture Now, Decrypt Later’ Attacks
OpenSSH has joined the high-stakes fight to protect data from quantum computers.
The latest version of the widely used encryption and connectivity tool has been fitted with new features to prevent “capture now, decrypt later” attacks linked to advancements in quantum computing.
Thoma Bravo to Take SailPoint Private in $6.9B All-Cash Deal
Private equity firm Thoma Bravo’s deep push into the cybersecurity market continued Monday with the announcement of plans to spend $6.9 billion to acquire identity and access management powerhouse SailPoint.












