Skip to main content

Microsoft Confirms Exploitation of 'Follina' Zero-Day Vulnerability

Surefire Cyber Tackles Incident Response With $10M Series A Funding
  Your SecurityWeek Briefing Webcasts
RSS Feed
05.31.22


Tuesday, May 31, 2022


Skillsoft Security Breach Tips

94% of Orgs Had an Insider Security Breach

See 5 tips on reducing internal security risks.

See How



Learn to Use This First: Four Fundamental Tactics to Protect Email Ecosystems
As email security is an ever-changing landscape, focusing on the most relevant issues in the threat landscape is where organizations need to start.
Read the Full Column
by Keith Ibarguen




Defending the Healthcare Security Landscape in the Age of Connected Devices
As IoT adoption increases within the healthcare industry, healthcare organizations and device manufacturers will need to prioritize the security of connected medical devices to keep their patient's data private and ensure the safety of the patient.
Read the Full Column
by Marie Hattar


Prepare for What You Wish For: More CISOs on Boards
Here are three challenges CISOs should prepare for as the ripple effects of the SEC amendments make their way through to board recruitment processes.
Read the Full Column
by Marc Solomon




The Importance of Wellness for Security Teams"
In addition to helping security teams recruit and retain the talent they need, employee wellness brings other benefits. Here are five ways in which wellness is good for security:
Read the Full Column
by Joshua Goldfarb





Skillsoft GDPR Blog

Data Privacy Best Practices

Help your employees understand their responsibility in mitigating the risks surrounding GDPR.

Read the Blog




See All Recent Articles at SecurityWeek.Com

Skillsoft security breach tips

Microsoft Confirms Exploitation of 'Follina' Zero-Day Vulnerability: Microsoft has confirmed that Windows is affected by the Follina zero-day vulnerability (CVE-2022-30190), and the company has released workarounds and mitigations. Read More

Surefire Cyber Tackles Incident Response With $10M Series A Funding: Forgepoint Capital is pumping $10 million into a startup incubated to provide incident response services to the cyber-insurance ecosystem. Read More

Cybersecurity Training Firm Hoxhunt Raises $40 Million: Hoxhunt raises $40 million in Series B funding round led by Level Equity Management, to accelerate growth in new markets. Read More

Seemplicity Launches With Cybersecurity Productivity Platform, $32 Million in Funding: Seemplicity raised $6 million in a seed funding round led by S Capital and $26 million in a Series A funding round led by Glilot Capital Partners. Read More

Three Nigerian Users of Agent Tesla RAT Arrested: Interpol has announced the arrest of three Nigerians accused of using the Agent Tesla malware to redirect financial transactions and steal data. Read More

Seventh Member of International Cyber Fraud Ring Sentenced to Prison: John Telusma, of New York, was sentenced for his role in the transnational cybercrime enterprise Infraud Organization. Read More

Document Exploiting New Microsoft Office Zero-Day Seen in the Wild: Researchers have issued a warning after spotting what appears to be a new Microsoft Office zero-day vulnerability exploited in the wild (dubbed Follina). Read More

Exploitation of VMware Vulnerability Imminent Following Release of PoC: A PoC exploit has been made public for a VMware Workspace ONE Access vulnerability that experts believe will be exploited at any moment. Read More

Microsoft Finds Major Security Flaws in Pre-Installed Android Apps: Bug hunters at Microsoft are calling attention to several high-severity vulnerabilities in a mobile framework used by carriers in pre-installed Android System apps. Read More

FBI: Higher Education Credentials Sold on Cybercrime Forums: The FBI has issued an alert to inform US colleges and universities that their credentials are being sold on cybercrime forums. Read More





To help make sure the SecurityWeek Briefing reaches you, please add news@securityweek.com to your address book.

© 2022 Wired Business Media



Comments

Popular posts from this blog

{White Paper} Legacy Codebase Risk - Addressing Open Source Tech Debt In Your Software Supply Chain

Tech Debt Best Practices: Minimizing opportunity cost & security risk - Get the White Paper You received this resource as part of your SecurityWeek subscription or because you have attended a Webcast or downloaded a White paper from SecurityWeek in the past. This email is strictly controlled and distributed by SecurityWeek and your email address has not been shared with any third party. Tech Debt Best Practices: Minimizing Opportunity Cost & Security Risk - Get the White Paper SecurityWeek Subscriber, Legacy codebases are one of today's biggest software supply chain risks. Nearly 80% of codebases are never updated, and 91% of organizations have faced supply chain attacks exploiting open source vulnerabilities. We're hoping you weren't one of them! The flexibility of developing with open source provides unmatched innovation, but with that has come the implicit cost of accumulating tech...

Chinese Hackers Have Been Probing DNS Networks Globally for Years: Report

Island Raises $175M as Enterprise Browser Startups Defy Tech Giants Tuesday, April 30 , 2024 LATEST CYBERSECURITY HEADLINES Island Secures $175M Investment as Enterprise Browser Startups Defy Tech Giants Why Using Microsoft Copilot Could Amplify Existing Data Quality and Privacy Issues Chinese Hackers Have Been Probing DNS Networks Globally for Years: Report Finnish Hacker Gets Prison for Accessing Thousands of Psychotherapy Records and Demanding Ransoms FCC Fines Wireless Carriers for Sharing User Locations Without Consent SafeBase Scores $33M Series B Investment Vulnerability in R Programming Language Could Fuel Supply Chain Attacks Docker Hub Users Targeted With Imageless, Malicious Repositories Critical Vulnerabilities in Judge0 Lead to Sandbox Escape, Host Takeover CISA Rolls Out New Guidelines to Mitigate AI Risks to US Critical Infrastructure Apptega Raises $15 Million for Cybersecurity ...

US National Cyber Strategy Pushes Aggressive Hack-Back Operations

Wiz Raises $300 Million at $10B Valuation| News Corp Discloses New Details of Data Breach SecurityWeek News Briefing | Monday, February 27, 2023 US National Cyber Strategy Pushes Aggressive Hack-Back Operations Cloud Security Firm Wiz Raises $300 Million at $10 Billion Valuation Cyberattack on Boston Union Results in $6.4M Loss US Sanctions Several Entities Aiding Russia’s Cyber Operations ‘PureCrypter’ Downloader Used to Deliver Malware to Governments QNAP Offering $20,000 Rewards via New Bug Bounty Program News Corp Discloses New Details of Data Breach Palo Alto Networks Unveils Zero Trust OT Security Solution A Year of Conflict: Cybersecurity Industry Assesses Impact of Russia-Ukraine War - On the first anniversary of Russia’s invasion of Ukraine, cybersecurity companies summarize the cyber operations they have seen and their. (...