Thursday , April 3 2025

infosecbulletin

Daily Cybersecurity Roundup, June-29, 2023

01 Cyware today announced a $30 million Series C financing round led by Ten Eleven Ventures, a leading multi-stage investment firm specializing in cybersecurity. Also participating are previous investors including Advent International, Zscaler, Emerald Development Managers, Prelude (the venture practice at Mercato Partners), and Great Road Holdings. 02 Cybercrime group SiegedSec claimed to have …

Read More »

Akira ransomware targets VMware ESXi servers

The Akira ransomware operation uses a Linux encryptor to encrypt VMware ESXi virtual machines in double-extortion attacks against companies worldwide. Akira first emerged in March 2023, targeting Windows systems in various industries, including education, finance, real estate, manufacturing, and consulting. Like other enterprise-targeting ransomware gangs, the threat actors steal data from …

Read More »

MITRE releases new list of top 25 most dangerous software bugs

MITRE, a non-profit organization that provides research and development in the areas of cybersecurity and information assurance, has released its list of the top 25 most dangerous software weaknesses. The list is based on data from the Common Vulnerabilities and Exposures (CVE) database, which is a repository of known security …

Read More »

Saudi Arabia’s Cyber Capabilities Ranked Second Globally

The Kingdom of Saudi Arabia has been ranked second in the Global Cybersecurity Index in the World Competitiveness Yearbook for 2023. The index is compiled by the International Institute for Management Development (IMD) and assesses the cybersecurity capabilities of 63 economies around the world. Saudi Arabia’s strong performance in the …

Read More »

Submarine Cables at Growing Risk of Cyber-Attacks

Insikt Group research examines the complex and dynamic risk environment of submarine cables, the information superhighways that underpin the global economy and facilitate worldwide telecommunications. The rapid expansion of the submarine cable network in the 21st century, driven by data demands, cloud computing, and the needs of hyperscalers like Amazon, …

Read More »

Ireland: Draconian law to make data protection procedures confidential

Ahead of a discussion in the Oireachtas (Irish parliament) today on a proposed amendment to a bill that would allow the Irish Data Protection Commission (DPC) to label all matters before it as confidential, Rasha Abdul-Rahim, Programme Director at Amnesty Tech, said: “The government’s attempt to allow the Irish Data …

Read More »

Cisco AsyncOS Software Flaw Let Remote Hackers Launch XSS Attack

Cisco AsyncOS Software, used by Cisco Secure Email and Web Manager, Cisco Secure Email Gateway (previously Cisco Email Security Appliance; ESA), and Cisco Secure Web Appliance (WSA), has multiple flaws in its web-based management interface. The vulnerabilities could allow a remote attacker to launch cross-site scripting (XSS) attack against a …

Read More »