Sensitive Information stories
Elastic has achieved the Protected level IRAP certification for Elastic Cloud, ensuring compliance with Australian government security requirements.
CloudSEK's latest report reveals how cybercriminals exploit Zendesk's subdomain feature to create convincing phishing scams, risking brand trust and security.
Research from Infoblox reveals ongoing exploitation of spoofed domains in malicious spam campaigns, highlighting the persistent threat posed by cybercriminals.
CloudSEK has uncovered over 30,000 exposed Postman workspaces leaking sensitive API keys, affecting major firms across healthcare, finance, and sports sectors.
A new report by DeepL reveals that 87% of legal professionals find AI tools enhance their work, marking a significant shift in the legal sector.
Upwind has launched its Shift Left capability, enhancing CI/CD pipelines by integrating runtime context to help developers prioritise vulnerabilities.
Vectra AI reveals a critical Transitive Access Abuse vulnerability in Google Cloud's Document AI, raising data exfiltration risk for users.
Cybercriminals exploit popular content platforms to launch sophisticated phishing attacks, targeting users in Singapore and the Asia-Pacific region.
Report reveals grave cybersecurity flaws, with 97% of Non-Human Identities having excessive privileges and 44% of tokens exposed.
Barracuda reveals cybercriminals exploiting content platforms for phishing, targeting educational institutions and businesses worldwide with deceitful emails.
Tenable uncovers a critical SSRF vulnerability in Microsoft's Copilot Studio that could expose sensitive information across multiple tenants. Microsoft has since issued a fix.
Businesses adopting generative AI tools must implement Confidential AI solutions to protect proprietary data and maintain robust Zero Trust policies.
Kaspersky has uncovered a sophisticated cyber fraud scheme, 'Tusk,' exploiting popular trends like web3 and AI to steal cryptocurrency and sensitive data.
Thousands of websites using Oracle NetSuite's SuiteCommerce may be leaking private customer information due to misconfigured access controls.
Barracuda Networks reports a new wave of phishing attacks using advanced “infostealer” malware that exfiltrates extensive sensitive data, urging enhanced cybersecurity measures.
Australia's new Scam Prevention Framework compels banks and telecoms to tackle rising scams, with fines of up to AUD $50 million for non-compliance.
Research by Apricorn reveals that the adoption of encryption policies among UK organisations has doubled in 2024, with 46% now mandating encryption for all data.
Genesis Energy partners with Informatica to implement AI-powered data governance, aiming to enhance data quality, streamline operations, and support advanced AI solutions.
A cyberattack disrupted services at 20 UK railway stations, exposing security flaws in public transport infrastructure and raising public anxiety over data breaches.
Nuix has launched Cognitive AI to boost its Discover platform's efficiency in document review, promising enhanced speed, accuracy, and cost savings.