Backstage, an open platform for building developer portals, is affected by a critical vulnerability whose exploitation could have a serious impact on a targeted enterprise, according to cloud-native application security firm Oxeye.
Swimlane Launches Security Automation Ecosystem for OT
Security orchestration, automation and response (SOAR) provider Swimlane on Monday announced the launch of a security automation solution ecosystem for operational technology (OT) environments.
40 States Settle Google Location-Tracking Charges for $392M
Search giant Google has agreed to a $391.5 million settlement with 40 states to resolve an investigation into how the company tracked users’ locations, state attorneys general announced Monday.
Canadian Supermarket Chain Sobeys Hit by Ransomware Attack
Canadian supermarket and pharmacy chain Sobeys is recovering from a cyberattack that might have involved the Black Basta ransomware.
Aiphone Intercom System Vulnerability Allows Hackers to Open Doors
A vulnerability in Aiphone intercom products allows attackers to breach the entry system and gain access to the building that uses it.
Aiphone is one of the largest global manufacturers of intercom systems, including audio and video entry systems for residential and corporate buildings.
NSA Publishes Guidance on Mitigating Software Memory Safety Issues
The National Security Agency (NSA) has published guidance on how organizations can implement protections against common software memory safety issues.
War ‘Wake-up Call’ Spurs EU to Boost Cyber, Army Mobility
The European Union on Thursday unveiled new proposals to help its armies move faster in times of conflict and to boost cyber security, saying that Russia’s war on Ukraine is a wake-up call to bolster Europe’s defenses.
Thales Denies Getting Hacked as Ransomware Gang Releases Gigabytes of Data
French aerospace, defense, and security giant Thales claims to have found no evidence of its IT systems getting breached after a well-known ransomware group published gigabytes of data allegedly stolen from the company.
GitHub Introduces Private Vulnerability Reporting for Public Repositories
Microsoft-owned code hosting platform GitHub has announced the introduction of a direct channel for security researchers to report vulnerabilities in public repositories that allow it.
Chinese Spyware Targets Uyghurs Through Apps: Report
Cybersecurity researchers said they have found evidence of Chinese spyware in Uyghur-language apps that can track the location and harvest the data of Uyghurs living in China and abroad.












