The CIA has a secret, undisclosed data repository that includes information collected about Americans, two Democrats on the Senate Intelligence Committee said. While neither the agency nor lawmakers would disclose specifics about the data, the senators alleged the CIA had long hidden details about the program from the public and Congress.
Vulnerabilities Found by Google Researchers in 2021 Got Patched on Average in 52 Days
Google’s Project Zero has observed a decrease in the overall time vendors need to address vulnerabilities reported by the bug hunting team.
Between 2019 and 2021, the team reported a total of 376 vulnerabilities and saw most of them (351) get patched. Of the remaining flaws, 14 are marked “WontFix” by the vendor and 11 remain unfixed.
Alphabet’s CapitalG Makes Big Bet on Salt Security
Salt Security is the latest addition to a growing list of cybersecurity startups boasting billion-dollar valuations.
The Palo Alto, Calif.-based Salt Security on Thursday announced a new $140 million funding round that brings its valuation to $1.4 billion and signals heightened investor interest in the API security space.
Apple Says WebKit Zero-Day Hitting iOS, macOS Devices
Apple’s struggles with zero-day attacks on its iOS and macOS platforms are showing no signs of slowing down.
For the second time in as many months, Cupertino released iOS, iPadOS and macOS updates to address a critical WebKit security defect (CVE-2022-22620) that exposes Apple devices to remote code execution attacks.
Ransomware Recovery Startup Calamu Banks $16.5M Investment
Calamu, an early-stage cybersecurity startup building technology to help businesses recover from ransomware infections, has raised $16.5 million in venture capital funding.
Data Protection and Privacy Firm Titaniam Raises $6 Million in Seed Funding
Los Gatos, Calif-based data protection and privacy firm Titaniam has raised $6 million seed funding from Refinery Ventures, with participation from Fusion Fund, Shasta Ventures and individual investors. Titaniam seeks to square the circle between data protection and data usability.
2021 Record Year for Cybersecurity M&A, Financing: Report
2021 was a record year for the cybersecurity industry in terms of mergers and acquisitions, as well as funding activity, according to financial advisory firm Momentum Cyber.
Meta Sues Two Nigerians Who Lured Facebook Users to Phishing Sites
Facebook parent company Meta this week announced it has taken legal action against two Nigerians for their alleged roles in financial scams targeting Facebook and Instagram users.
New Vulnerabilities Can Allow Hackers to Remotely Crash Siemens PLCs
Siemens this week announced the availability of patches and mitigations for a series of severe vulnerabilities that can be exploited to remotely crash some of the company’s SIMATIC products.
Critical Code Execution Flaws Patched in ‘PHP Everywhere’ WordPress Plugin
Thousands of WordPress websites were impacted by three remote code execution vulnerabilities that were identified in the PHP Everywhere plugin, the Wordfence team at WordPress security company Defiant warns.












