Meet the SuperCISO. Fractional cybersecurity subject matter expert for businesses that can’t afford screwups. Protect your livelihood and your reputation now.
A widespread brand impersonation campaign targeting over a hundred popular apparel, footwear, and clothing brands, tricking people into entering their account credentials and financial information on fake websites. https://t.co/UYLLtT1Bgl @superciso#ciso#cybersecurity#security
Microsoft is adding native support for RAR, 7-Zip, and GZ archives to an upcoming version of Windows 11. Having native support for these file formats will be very useful for Windows users. https://t.co/3Hr9BoOAcG @superciso#ciso#cybersecurity#security#infosec#riskigy#vciso
Facebook's parent company Meta has been fined a record $1.3 billion by European Union data protection regulators for transferring the personal data of users in the region to the U.S. https://t.co/l1g2yV9hfi @superciso#ciso#cybersecurity#security#infosec#riskigy#vciso
Why High Tech Companies Struggle with SaaS #Security. The majority of data breaches impacting tech companies stem from stolen credentials and tokens. The threat actor enters the system through the front door, using valid credentials of the user. https://t.co/M1D4G42VKU @superciso
Several security vulnerabilities have been disclosed in cloud management platforms of three industrial cellular router vendors that could expose operational #technology (OT) networks to external attacks. https://t.co/YZUfNz4Oq7 @superciso#ciso#cybersecurity#security
One of #WordPress's most popular #Elementor plugins, "Essential Addons for Elementor," was found to be vulnerable to an unauthenticated privilege escalation that could allow remote attacks to gain administrator rights on the site. https://t.co/ieatKZRGIw @superciso#vciso
The Cybersecurity and Infrastructure Security Agency (CISA) warned today of a critical remote code execution (RCE) flaw in the #Ruckus Wireless Admin panel actively exploited by a recently discovered DDoS botnet. https://t.co/xxa2Ftx947 @superciso#ciso#cybersecurity#vciso
MageCart skimmers are now hijacking legitimate online store's payment pages. #Hackers are hijacking online stores to display modern, realistic-looking fake payment forms to steal credit cards from unsuspecting customers. https://t.co/R0Hpx64kTH @superciso#ciso#cybersecurity
#VMware released security updates to address #zeroday vulnerabilities that could be chained to gain code execution systems running unpatched versions of the company's Workstation and Fusion software hypervisors. https://t.co/NT1Vhmbw1H @superciso#ciso#cybersecurity#security
The CFPB said an employee forwarded the personal information of more than a quarter-million consumers to a personal email account, an incident that the bureau described as a “major” breach. https://t.co/zPDRPQSKMV @superciso#ciso#cybersecurity#security#infosec#riskigy#vciso
Researchers have disclosed details of a now-patched #zeroday flaw in Google Cloud Platform #GCP that could have enabled threat actors to conceal an unremovable, malicious application inside a victim's #Google account. https://t.co/0JZTFXsZ4v @superciso#vciso#cybersecurity
#Hackers are adding malicious functionality to #WinRAR and 7-Zip self-extracting archives that contain harmless decoy files, allowing them to plant backdoors without triggering the #security agent on the target system. https://t.co/WydD3G8UOm @superciso#ciso#cybersecurity