Cybersecurity breaches surge due to skills shortage in India – ET CISO https://etimg.etb2bimg.com/thumb/msid-112484415,imgsize-12428,width-1200,height=765,overlay-etciso/corporate/cybersecurity-breaches-surge-due-to-skills-shortage-in-india.jpg Fortinet’s 2024 Global Cybersecurity Skills Gap Report reveals a startling link between cybersecurity breaches and skills shortages in India. A whopping 92% of Indian organizations reported breaches last year, largely blaming the cybersecurity skills gap. Additionally, 80% acknowledge that this gap escalates their cyber risks. John Maddison, ...
Read More »Blog
Australia’s Evolution Mining targeted in latest cyber attack, IT Security News, ET CISO
Australia’s Evolution Mining targeted in latest cyber attack, IT Security News, ET CISO Australian’s Evolution Mining said on Monday that it became aware of a cyber attack last week, amid a spate of similar incidents that have plagued domestic firms. Australian firms have continued to suffer from cyber attacks since 2022, putting the spotlight on the country’s understaffed cyber security ...
Read More »Risk of data breaches, cyber frauds up due to digitization: RBI report – ET CISO
Risk of data breaches, cyber frauds up due to digitization: RBI report – ET CISO https://etimg.etb2bimg.com/thumb/msid-112124677,imgsize-59604,width-1200,height=765,overlay-etciso/data-breaches/risk-of-data-breaches-cyber-frauds-up-due-to-digitization-rbi-report.jpg The average cost of data breaches in India stand at $2.18 million in 2023, up 28% since 2020 though less than the global average cost of $4.5 million, RBI’s annual report on currency and finance which was themed around digitalisation said. The report citing ...
Read More »GhostWrite: New T-Head CPU Bugs Expose Devices to Unrestricted Attacks
GhostWrite: New T-Head CPU Bugs Expose Devices to Unrestricted Attacks https://firewall.firm.in/wp-content/uploads/2024/08/chip.jpg Aug 13, 2024Ravie LakshmananVulnerability / Hardware Security A team of researchers from the CISPA Helmholtz Center for Information Security in Germany has disclosed an architectural bug impacting Chinese chip company T-Head’s XuanTie C910 and C920 RISC-V CPUs that could allow attackers to gain unrestricted access to susceptible devices. The ...
Read More »Microsoft warns Office and Microsoft 365 users of unpatched ‘security flaw’ – ET CISO
Microsoft warns Office and Microsoft 365 users of unpatched ‘security flaw’ – ET CISO https://etimg.etb2bimg.com/thumb/msid-112484796,imgsize-121374,width-1200,height=765,overlay-etciso/ot-security/microsoft-warns-office-and-microsoft-365-users-of-unpatched-security-flaw.jpg Microsoft has revealed a serious security flaw in its Office software that could expose sensitive information to hackers. The unpatched vulnerability, labeled CVE-2024-38200 and rated 7.5 on the CVSS scale, allows attackers to impersonate users and potentially access confidential data. Researchers Jim Rush and Metin ...
Read More »Researchers Uncover Vulnerabilities in Solarman and Deye Solar Systems
Researchers Uncover Vulnerabilities in Solarman and Deye Solar Systems https://firewall.firm.in/wp-content/uploads/2024/08/solar.png Aug 12, 2024Ravie LakshmananCritical Infrastructure / Vulnerability Cybersecurity researchers have identified a number of security shortcomings in photovoltaic system management platforms operated by Chinese companies Solarman and Deye that could enable malicious actors to cause disruption and power blackouts. “If exploited, these vulnerabilities could allow an attacker to control inverter ...
Read More »How Phishing Attacks Adapt Quickly to Capitalize on Current Events
How Phishing Attacks Adapt Quickly to Capitalize on Current Events https://firewall.firm.in/wp-content/uploads/2024/08/cyber-main.png In 2023, no fewer than 94 percent of businesses were impacted by phishing attacks, a 40 percent increase compared to the previous year, according to research from Egress. What’s behind the surge in phishing? One popular answer is AI – particularly generative AI, which has made it trivially easier ...
Read More »Adoption of AI spotlights businesses to invest in proactive cybersecurity defences, ET CISO
Adoption of AI spotlights businesses to invest in proactive cybersecurity defences, ET CISO Rapid adoption of Artificial Intelligence has powered growth but opened avenues for cybercriminals to misuse AI for sophisticated attacks, Kaspersky has said spotlighting the need for businesses to invest in proactive cybersecurity defences to meet new-age challenges. Kaspersky, a global cybersecurity and digital privacy company, said it ...
Read More »Experts Uncover Severe AWS Flaws Leading to RCE, Data Theft, and Full-Service Takeovers
Experts Uncover Severe AWS Flaws Leading to RCE, Data Theft, and Full-Service Takeovers https://firewall.firm.in/wp-content/uploads/2024/08/cloud.png Aug 09, 2024Ravie LakshmananCloud Security / Data Protection Cybersecurity researchers have discovered multiple critical flaws in Amazon Web Services (AWS) offerings that, if successfully exploited, could result in serious consequences. “The impact of these vulnerabilities range between remote code execution (RCE), full-service user takeover (which might ...
Read More »Microsoft Warns of Unpatched Office Vulnerability Leading to Data Exposure
Microsoft Warns of Unpatched Office Vulnerability Leading to Data Exposure https://firewall.firm.in/wp-content/uploads/2024/08/ms.png Aug 10, 2024Ravie LakshmananVulnerability / Enterprise Security Microsoft has disclosed an unpatched zero-day in Office that, if successfully exploited, could result in unauthorized disclosure of sensitive information to malicious actors. The vulnerability, tracked as CVE-2024-38200 (CVSS score: 7.5), has been described as a spoofing flaw that affects the following ...
Read More »