SANS Warns of AI Governance Gap as Use by Security Teams Surges
SANS Institute says governance programs are still nascent even as AI failures and threats grow
20 articles
SANS Institute says governance programs are still nascent even as AI failures and threats grow
The White House announced Gold Eagle to help accelerate the discovery, prioritization and patching of flaws found by AI
Six-month phishing campaign used seasonal eCard lures to plant legitimate RMM tools on victims
Eleven forgotten Microsoft-signed UEFI shims can bypass Secure Boot on almost any machine
Research of incidents by Sophos finds that phishing, brute force attacks and other identity-based threats have surpassed software vulnerabilities as means of...
Progress has restored access to its ShareFile Storage Zones Controller after a four-day suspension triggered by a credible external security threat
Microsoft released fixes for a record 570 CVEs in its July Patch Tuesday update, as experts warn AI is dramatically accelerating vulnerability discovery and ...
The UK government is warning of the potential impact of catastrophic cyber-attacks
The US Department of Defense announced the immediate suspension of the CMMC Phase II requirements until further review
Researchers at Jamf Threat Labs detail CrashStealer, which steals passwords, cryptocurrency wallets and more
Supermarket giant Lidl has revealed details of a supplier breach impacting customer data
Five UK residents have been charged in relation to supplying Russian Coms fraud devices and apps
Misconfigured server exposed three phishing operators running Evilginx forks to bypass MFA
Chinese and Indian spies converged on the same Balochistan police force, SentinelLabs found
New research reveals cyber-attackers can spoof OAuth Client IDs in Microsoft Entra ID, creating a stealthy path into cloud environments
Progress Software, the provider of the popular file-sharing and data storage solutions, has urged customers to shut down the server hosting their Storage Zon...
Cybersecurity agencies from 12 countries have warned that Russian state-backed hackers are actively targeting vulnerable routers using weak SNMP credentials
An Armenian man has pleaded guilty to his role in the infamous Ryuk ransomware operation
Australian Cyber Security Centre warns CMS users of mass scanning and exploitation campaign
CISA reveals how it responded after sensitive AWS GovCloud credentials and internal data were exposed in a public GitHub repository