Search

Showing 539 results for: "key+management".

Misconfiguration exposes millions of Apparel Group files
United Arab Emirates-based global fashion and retail conglomerate Apparel Group — which distributes over 80 brands, including Adidas, Asics, Calvin Klein, and Levi's — had almost 2.4 million files exposed as a result of a misconfigured AWS bucket, reports Cybernews. Most of the inadvertently lea...
Keyfactor Tech Days: Catching up to the future
The dominant topic at Keyfactor's Tech Days conference earlier this week (March 4-5) in Miami Beach was post-quantum cryptography, with nearly half the talks we attended at the two-day event touching upon the issue. We'll have a deeper dive into post-quantum cryptography in a follow-up piece. Bu...
Google Cloud KMS now supports quantum-safe digital signatures
Google’s Cloud Key Management Service (Cloud KMS) now supports quantum-safe digital signatures that align with recently published post-quantum cryptography (PQC) standards from the National Institute of Standards and Technology (NIST). The company announced Thursday that FIPS 204 and FIPS 205 co...
Multi-year global attack campaign conducted by Sandworm subgroup
Attacks leveraging several known security vulnerabilities have been deployed by a subgroup of the Russian state-backed threat operation Sandworm across more than 15 countries as part of the multi-year BadPilot campaign, according to The Hacker News. Following the initial targeting of Ukrain...
Move to a risk-based vulnerability management approach  
COMMENTARY: In 2023, the financial toll of cybercrime in the United States reached a staggering $12.5 billion, setting a new record. This alarming figure underscores the escalating threat posed by cybercriminals, who are becoming increasingly sophisticated and exploiting the growing vulnerabilities...
Misconfiguration exposes millions of Hipshipper records
International shipping solution Hipshipper — which is leveraged by Amazon, Shopify, and eBay sellers to deliver goods to more than 150 countries — had more than 14.3 million records inadvertently exposed by an unsecured Amazon AWS bucket, Cybernews reports. Most of the leaked info...
Trojanized Microsoft activators leveraged in new Sandworm attacks
BleepingComputer reports that attacks involving malicious Microsoft Key Management Service activators and bogus Windows updates have been deployed by Russian state-sponsored threat group Sandworm against Ukrainian Windows users since late 2023. Sandworm, also known as APT44, Seash...
Millions of job applicant records exposed by Foh&Boh
Leading U.S. hiring and onboarding platform Foh&Boh — which counts KFC, Nordstrom, and Omni Hotels & Resorts as its clients — had 5.4 million job applicant records, most of which are resumes and curricula vitae, exposed as a result of a misconfigured AWS bucket, which was only secured ...
Amazon Redshift enhanced with new default breach deterrents
Amazon Web Services has updated the widely used data warehousing solution Redshift with three new default security protections aimed at curbing misconfiguration-related data breaches, according to BleepingComputer. Leading the additional protections is the default deactivation of public acc...

You can skip this ad in 5 seconds