News

Web application security

  • January 22, 2025 22 Jan'25

    APAC businesses face surge in email attacks

    Sophisticated phishing and business email compromise campaigns are increasingly targeting organisations across the Asia-Pacific region, research reveals

  • January 17, 2025 17 Jan'25

    US Supreme Court upholds TikTok ban

    The US Supreme Court has upheld a legal ban on TikTok, meaning that the video-sharing application will be shut down from midnight on Sunday 19 January

  • January 16, 2025 16 Jan'25

    Russia’s Star Blizzard pivots to WhatsApp in spear-phishing campaign

    The Russian cyber spy operation known as Star Blizzard changed tactics after a takedown operation by Microsoft and the US authorities, turning to widely used messaging platform WhatsApp to try to ensnare its targets

  • January 15, 2025 15 Jan'25

    Users protest, flee TikTok as clock ticks on US ban

    As the US Supreme Court prepares to rule on the future of TikTok, rumours of a sale are swirling around Washington DC while panicked users make plans for an exodus

  • January 15, 2025 15 Jan'25

    Biggest Patch Tuesday in years sees Microsoft address 159 vulnerabilities

    The largest Patch Tuesday of the 2020s so far brings fixes for more than 150 CVEs ranging widely in their scope and severity – including eight zero-day flaws

  • January 03, 2025 03 Jan'25

    US Treasury incident a clear warning on supply chain security in 2025

    A cyber incident at the US Department of the Treasury – blamed on a Chinese state actor – raises fresh warnings about supply chain risk after it was found to have originated via vulnerabilities in a remote tech support product

  • December 18, 2024 18 Dec'24

    Top 10 cyber security stories of 2024

    Data breaches, data privacy and protection, and the thorny issue of open source security were all hot topics this year. Meanwhile, security companies frequently found themselves hitting the headlines, and not always for good reasons. Here are ...

  • December 13, 2024 13 Dec'24

    How AWS is protecting customers from cyber threats

    Amazon Web Services reveals how its threat intelligence capabilities work under the hood to thwart cyber attacks and keep its customers’ data safe

  • December 10, 2024 10 Dec'24

    Dangerous CLFS and LDAP flaws stand out on Patch Tuesday

    Microsoft has fixed over 70 CVEs in its final Patch Tuesday update of the year, and defenders should prioritise a zero-day in the Common Log File System Driver, and another impactful flaw in the Lightweight Directory Access Protocol

  • December 10, 2024 10 Dec'24

    iOS vuln leaves user data dangerously exposed

    Jamf threat researchers detail an exploit chain for a recently patched iOS vulnerability that enables a threat actor to steal sensitive data, warning that many organisations are still neglecting mobile updates