Recent Security News

  • CISOs’ salary growth slows – with pay gap widening

    October 11, 2023 at 10:43AM According to a survey of 600 US-based CISOs, the pay gap between top-earning and bottom-earning CISOs is widening, with the highest-paid executives seeing their salaries increase at three times the rate of those in lower positions. The majority of CISOs earn either below $400,000 or above $700,000 annually. Overall, CISO…

    Read More

  • Microsoft: State hackers exploiting Confluence zero-day since September

    October 11, 2023 at 10:35AM A Chinese-backed threat group, known as Storm-0062 or DarkShadow, has been exploiting a zero-day vulnerability in Atlassian Confluence Data Center and Server since September 2023. Microsoft has shared more information about the group’s involvement and identified four offending IP addresses. The vulnerability allows the group to create arbitrary administrator accounts.…

    Read More

  • Generative AI Security: Preventing Microsoft Copilot Data Exposure

    October 11, 2023 at 10:35AM Microsoft Copilot is an AI assistant integrated into Microsoft 365 apps that aims to improve productivity by searching and compiling data across documents, presentations, emails, and more. However, this access to sensitive data raises security concerns for information security teams. Varonis offers a Data Security Platform that can help address…

    Read More

  • Reassessing the Impacts of Risk Management With NIST Framework 2.0

    October 11, 2023 at 10:08AM Global cyberattacks have risen by 38% in 2022, as reported by Check Point. The cost of a data breach is also increasing, averaging $9.44 million in the US and $4.25 million globally in 2022. To combat this, the National Institute of Standards and Technology (NIST) has updated its Cybersecurity Framework…

    Read More

  • Payment Card Data Stolen in Air Europa Hack

    October 11, 2023 at 10:07AM Spanish airline Air Europa is urging customers to cancel their payment cards due to a recent hack. The company detected unauthorized access to a system storing payment card data, potentially compromising partial card numbers, expiration dates, and CVV codes. Impacted customers are advised to contact their bank and watch out…

    Read More