Latest stories — Page 50

What separates a good security engineer from a great one in 2025
New research and industry voices spell out exactly what companies should demand when hiring the people who keep their systems safe, and why the old checklist of certifications no longer cuts it.

SonicWall Rushes to Patch Two Live Attacks on Remote Access Boxes
One of the flaws scores a perfect 10 out of 10 for severity, and attackers are already using both in real intrusions.

Microsoft Is Killing SMS Login for Millions of Business Accounts. Here Is What Replaces It.
Starting September 2026, Microsoft will push passkeys as the default way to prove your identity in its business login system. By February 2027, the old text-message codes go dark entirely.

569 Patches in One Month: Microsoft Just Broke Every Record on the Books
AI tools are finding software flaws faster than any human team ever could. The result is a single monthly update that dwarfs every full year of fixes from the past two decades.

EU, UK and France Sanction Russia Over Coordinated Hacking and Sabotage Campaign Across Europe
France summoned Russia's ambassador on Monday after European governments accused the FSB, Russia's main intelligence service, of running a campaign to spy on and disrupt critical infrastructure across more than a dozen countries.

Tech Giants Failing to Stop Online Sexual Extortion of Young Men, Australian Regulator Warns
Australia's online safety watchdog reviewed Apple, Meta, Google and others and found serious gaps in how they handle child exploitation and 'sextortion' complaints, even as reports keep climbing.

Microsoft's July 2026 Patch Tuesday Is the Biggest Ever, 622 Fixes at Once
AI tools are finding software flaws faster than companies can fix them. This month's update from Microsoft shows exactly what that looks like in practice.

SonicWall says two SMA1000 flaws are being used in live attacks
One bug scores a perfect 10 on the severity scale. Federal agencies have until July 17, 2026 to patch or pull the plug.

Spanish police dismantle €140 million fraud ring that drained company bank accounts
Four arrests across Spain, Portugal and Panama close down a laundering network that pushed nearly €100 million through 800 bank accounts, much of it stolen through fake CEO emails.

The Safety System Keeping 6 GHz Wi-Fi Away From Critical Infrastructure Has Serious Holes
Researchers say the automated gatekeeper that stops modern Wi-Fi from crashing radio towers and public safety networks can be tricked, and some equipment makers are slow to take it seriously.

SAP Fixes Critical NetWeaver Bug That Lets Logged-In Users Corrupt Memory
The July 2026 patch batch closes CVE-2026-44747, a 9.9-rated flaw in the ABAP application server that could expose or alter company data.

Fake GitHub Pages Impersonate 292 Real Brands to Push Password-Stealing Malware
A Russian-speaking crew built hundreds of lookalike project pages for security tools, wallets and dev software. One click on 'Download Secure Content' handed over browser passwords, crypto wallets and chat sessions.

Microsoft Fixes Record 622 Security Flaws, Two Already Used in Live Attacks
This month's update from Microsoft is the largest on record. Two vulnerabilities in widely used business software were already being exploited by criminals before a fix existed.

Microsoft ships Windows 10 KB5099539 as record 570-flaw Patch Tuesday lands
The July 2026 update patches two actively exploited zero-days and quietly extends free security fixes for home users into 2027.

CISA Warns of Active Attacks on SharePoint Servers, Urges Immediate Patching
Three flaws are being exploited to break into on-premises SharePoint, steal cryptographic keys, and plant malware. Two more just disclosed could be next.

Ransomware Gang Claims Bosch and Synopsys Hacks. Synopsys Says It Sees Nothing.
A criminal group called D1R says it stole sensitive data from two major companies and will publish it unless it gets paid. One of those companies is pushing back.

Microsoft ships fixes for 570 flaws in July, including two bugs already used in attacks
The July 2026 Patch Tuesday is the largest on record, driven partly by an AI system Microsoft is using to hunt bugs in Windows.

Your Vendors Are a Risk You Cannot Ignore. Here Is How Boards Should Own It.
Most companies review their suppliers and tick the boxes. Far fewer can actually say how much financial damage a vendor failure would cause them. That gap is the problem.

Microsoft Ships July 2026 Patch Tuesday: 571 Fixes, Better AirPods Pairing, and a Quieter Widgets Panel
The mandatory Windows 11 update rolls up months of security holes and finally tames Bluetooth pairing gremlins. Here is what it actually changes on your PC.

Adobe Rushes Out Fixes for 88 Security Flaws, Eight of Them Critical in ColdFusion
Two weeks after hackers exploited a separate ColdFusion flaw within hours of its disclosure, Adobe is back with another urgent patch batch covering a dozen products.

LabubaRAT: New Rust Malware Poses as NVIDIA Software to Sneak Onto Windows PCs
Researchers at Blackpoint Cyber say the newly named tool gives attackers a quiet, reusable way back into infected machines.