Senate Select Committee on Intelligence Chair Mark Warner said the US is even less prepared for this year's presidential election due to increasingly advanced threats such as artificial intelligence-powered misinformation.
Almost 71 million credentials from Facebook, Yahoo, Coinbase, and other sites have been exposed by the Naz.API dataset in the last four months, nearly 25 million of which were not observed in previous leaks, Ars Technica reports.
U.S. web tracking and analytics firm New Relic had its internal environment for hosting customer usage data and other logs impacted in a recent cyberattack, SecurityWeek reports.
More than 40,000 of over 1.8 million administrator credentials compromised by information-stealing malware that have been recovered from January to September were "admin," indicating the prevalence of weak passwords used in administrator portals and the elevated vulnerability of enterprise networks to cyberattacks, reports BleepingComputer.
Numerous threat actors were reported by PRODAFT and GreyNoise to be targeting vulnerable JetBrains TeamCity continuous integration and deployment servers impacted by a critical authentication bypass flaw days after the bug was initially disclosed by Sonar security researchers, according to BleepingComputer.
GitHub has introduced passkeys for general availability two months after the feature was released in beta as part of its efforts to bolster phishing protections with wider passwordless security adoption, according to BleepingComputer.