Data Security Firm Cyera Raises $300 Million at $1.4 Billion Valuation

April 9, 2024 at 11:54AM Cyera, a data security company, raised $300 million in a Series C funding round, bringing its valuation to $1.4 billion. It previously raised $160 million and emerged from stealth mode in 2022 with $60 million in funding. The round was led by Coatue, with participation from several venture capital firms. … Read more

Wyden Releases Draft Legislation to End Federal Dependence on Insecure, Proprietary Software

April 8, 2024 at 04:47PM Senator Ron Wyden introduced draft legislation to set mandatory cybersecurity standards, improve government collaboration technology, and break the monopolizing effect of proprietary software. The bill aims to enhance government communications security, promote interoperability, and prevent vendor lock-in. It requires the use of end-to-end encryption and outlines various cybersecurity and procurement … Read more

Key Lawmakers Float New Rules for Personal Data Protection; Bill Would Make Privacy a Consumer Right

April 8, 2024 at 09:54AM Two influential lawmakers, Sen. Maria Cantwell and Rep. Cathy McMorris Rodgers from Washington state, have outlined a bipartisan deal to enhance privacy protections for Americans’ personal data. The proposal includes defining privacy as a consumer right, imposing new rules on data collection, and creating a new bureau within the FTC … Read more

Browsing in Incognito Mode Doesn’t Protect You as Much as You Might Think

April 6, 2024 at 08:36AM A recent legal settlement highlighted concerns over Google Chrome’s Incognito mode, aiming to improve user privacy. Using private browsing mode gives a fresh start, erasing browsing history and cookies. However, it doesn’t hide IP address, prevent ISP logging, or fully protect against tracking. VPNs and privacy-focused search engines offer additional … Read more

In Other News: 100,000 Affected by CISA Breach, Microsoft AI Copilot Ban, Nuclear Site Prosecution

April 5, 2024 at 09:06AM SecurityWeek’s cybersecurity news roundup offers a weekly compilation of noteworthy stories in the cybersecurity landscape, including the CISA breach affecting 100,000 people, the US House banning Microsoft AI Copilot, and the prosecution of a UK nuclear waste site for cybersecurity failures. Other stories include a report on the LockBit ransomware … Read more

Feds probe massive alleged classified US govt data theft and leak

April 4, 2024 at 02:29PM The US Department of State is investigating a cyber incident in which a criminal known as IntelBroker claimed to have stolen and leaked classified information from national security agencies. The leaked data includes confidential communications, contact info for government and military officials, and personal details of around 100,000 victims. The … Read more

OWASP Data Breach Caused by Server Misconfiguration

April 2, 2024 at 07:09AM The OWASP Foundation announced a data breach revealing personal information of aspiring members from over a decade ago. The breach exposed names, addresses, phone numbers, and emails of members, prompting the organization to take security measures, notify impacted individuals, and caution the public. While the exposed data is old, caution … Read more

Google to Purge Billions of Files Containing Personal Data in Settlement of Chrome Privacy Case

April 1, 2024 at 09:48PM Google has agreed to wipe out billions of personal records from its Chrome web browser, settling a lawsuit alleging illegal surveillance. The deal, subject to court approval, requires Google to make privacy disclosures, limit data collection, and expunge stored personal records. The settlement does not include payments to affected consumers. … Read more

US House of Reps tells staff: No Microsoft Copilot for you!

April 1, 2024 at 06:39PM US House of Representatives staff are temporarily barred from using Microsoft’s Copilot chatbot and AI tools due to data security concerns. The decision aligns with previous restrictions on similar AI tools. The House is awaiting a government-specific version of Copilot with enhanced security features, addressing fears of data leaks to … Read more

OWASP discloses data breach caused by wiki misconfiguration

April 1, 2024 at 03:29PM The OWASP Foundation has reported a data breach involving the exposure of some members’ resumes due to misconfiguration of its old Wiki web server. Tens of thousands of members were affected, with personal information like names, emails, and addresses exposed. OWASP took steps to address the breach and will notify … Read more