Security vulnerabilities stories - Page 3
Windows Server 2025 flaw lets attackers persist in Active Directory
Thu, 17th Jul 2025
#
security vulnerabilities
A design flaw in Windows Server 2025 allows attackers to persist undetected in Active Directory by exploiting managed service account vulnerabilities.
Race condition in nopCommerce gift cards enables repeated use
Fri, 11th Jul 2025
#
security vulnerabilities
A race condition vulnerability in nopCommerce gift cards lets attackers redeem the same card repeatedly, exploiting a flaw in the checkout process.
AI cloud workloads face greater critical security risks
Tue, 1st Jul 2025
#
security vulnerabilities
A Tenable report reveals 70% of AI cloud workloads on platforms like AWS and Azure have critical vulnerabilities, posing increased security risks.
The risky race to AI: How DeepSeek is reshaping the AI landscape
Thu, 26th Jun 2025
#
security vulnerabilities
Chinese startup DeepSeek's new AI model cuts costs but sparks global security fears, prompting bans and cyberattacks amid geopolitical tensions.
Multiple brother devices: Multiple vulnerabilities (FIXED)
Thu, 26th Jun 2025
#
security vulnerabilities
Security researcher Rapid7 has uncovered 8 vulnerabilities in 742 printer models from Brother, FUJIFILM, Ricoh, and Toshiba, with fixes now available.
Growing gap revealed between AI innovation & enterprise security
Thu, 26th Jun 2025
#
security vulnerabilities
A new report reveals a widening gap between AI innovation and enterprise security, with 36% of firms struggling to keep up with generative AI risks.
Outpost24 identifies key OAuth risks & best practice solutions
Sat, 21st Jun 2025
#
security vulnerabilities
Outpost24 reveals seven common OAuth risks and offers best practices to help organisations prevent unauthorised access and data breaches through better token security.
Poor cloud security leaves secrets & data at risk, report finds
Thu, 19th Jun 2025
#
security vulnerabilities
A report finds poor cloud security and misconfigurations put sensitive data and secrets at risk across major public cloud providers worldwide.
Jamf report finds phishing & infostealers surge on Apple devices
Wed, 18th Jun 2025
#
security vulnerabilities
Jamf's Security 360 Report reveals a sharp rise in phishing and infostealers targeting Apple devices, urging organisations to strengthen cybersecurity measures.
Azul enhances Java security detection, cutting false positives by 99%
Fri, 13th Jun 2025
#
security vulnerabilities
Azul's new Java security tool cuts false positives by 99%, boosting detection accuracy and helping DevOps teams focus on real risks in production code.
Just 3% of New Zealand domains enforce top anti-phishing policy
Fri, 13th Jun 2025
#
security vulnerabilities
Just 3% of New Zealand domains enforce the strict DMARC p=reject policy, leaving most vulnerable to phishing despite upcoming government mandates.
Aiden Technologies now available in Azure Marketplace via MACC
Fri, 13th Jun 2025
#
security vulnerabilities
Aiden Technologies is now available in the Microsoft Azure Marketplace via MACC, enabling organisations to acquire its endpoint management platform using existing Azure funds.
AI use surges in UK healthcare as data security concerns mount
Thu, 12th Jun 2025
#
security vulnerabilities
AI use in UK healthcare has soared to 94% in 2025, despite rising data breaches and declining focus on data security among IT professionals.
3 key challenges in enterprise browser adoption: Lessons from Arc's pivot
Mon, 9th Jun 2025
#
security vulnerabilities
Despite Arc’s innovation, enterprises struggle with browser adoption due to muscle memory, maintenance burdens, and AI-driven fragmentation disrupting standardisation.
OWASP unveils first top 10 business logic abuse threats list
Fri, 6th Jun 2025
#
security vulnerabilities
OWASP has released its first Business Logic Abuse Top 10, spotlighting critical cross-domain threats beyond traditional technology-specific vulnerabilities.
UK businesses neglect printer security despite rising risks
Tue, 3rd Jun 2025
#
security vulnerabilities
Despite rising cyber threat awareness, only 14% of UK employees trained on security receive printer-specific training, leaving devices vulnerable.
Akamai launches DNS Posture Management for multicloud security
Tue, 3rd Jun 2025
#
security vulnerabilities
Akamai has launched DNS Posture Management, offering centralised control over DNS assets across multicloud platforms to enhance security and compliance.
Distology partners with Flare to boost threat intelligence tools
Fri, 30th May 2025
#
security vulnerabilities
Distology partners with Flare to enhance threat intelligence and dark web monitoring for UK and European security resellers and MSSPs.
Adidas data breach highlights supply chain risk for retailers
Thu, 29th May 2025
#
security vulnerabilities
Adidas has suffered a data breach via a third-party provider, exposing customer information and highlighting rising cyber risks in retail supply chains.
Picus launches tool for real-time validation of exploitable risks
Fri, 23rd May 2025
#
security vulnerabilities
Picus Security launches Exposure Validation, a tool using real-time attack simulations to identify which vulnerabilities are truly exploitable in organisations.