About the security content of macOS Sequoia 15 – Apple Support

October 13, 2024 at 02:30PM Apple’s macOS Sequoia 15, releasing on September 16, 2024, addresses multiple vulnerabilities through improved permissions, memory handling, and data redaction. Updates are available for various Mac models, enhancing user data security by minimizing unauthorized access and modifications, thereby reducing potential privacy risks for sensitive information. ### Meeting Takeaways **Release Overview:** … Read more

About the security content of watchOS 11 – Apple Support

October 13, 2024 at 02:30PM Apple has released updates for watchOS 11 addressing various security vulnerabilities, including issues related to state management, out-of-bounds access, and cross-origin problems. These vulnerabilities may allow unauthorized access, app termination, and denial-of-service. Updates are available for Apple Watch Series 6 and later devices. **Meeting Takeaways: Security Updates for watchOS 11** … Read more

About the security content of Safari 18 – Apple Support

October 13, 2024 at 02:30PM Apple released updates for Safari 18 on September 16, 2024, addressing three cross-origin vulnerabilities (CVE-2024-40866, CVE-2024-44187, CVE-2024-40857) that could lead to data exfiltration and universal cross-site scripting. Updates are available for macOS Ventura and macOS Sonoma. ### Meeting Takeaways: **Apple ID:** 121241 **Release Date:** September 16, 2024 **Security Vulnerabilities Identified:** … Read more

About the security content of macOS Sonoma 14.7 – Apple Support

October 13, 2024 at 02:30PM The security update for macOS Sonoma 14.7 addresses several vulnerabilities, including improved permissions and memory handling, reducing risks of unauthorized data access and unexpected app terminations. Key issues include library injection, privacy breaches, and path handling weaknesses. Updates are available to mitigate these risks effectively. ### Meeting Takeaways **Release Information:** … Read more

Schools bombarded by nation-state attacks, ransomware gangs, and everyone in between

October 13, 2024 at 09:09AM The education sector is increasingly targeted by cyber attackers due to its sensitive data and vulnerable IT environments. Schools face average weekly attacks and require robust security measures, including user education on best practices like multifactor authentication, to mitigate risks from hacking, phishing, and other threats from groups like Iran … Read more

US lawmakers seek answers on alleged Salt Typhoon breach of telecom giants

October 11, 2024 at 05:36PM Lawmakers are pressing for accountability from Verizon, AT&T, and Lumen Technologies after reports of Chinese hackers breaching their systems and wiretapping capabilities. Senator Ron Wyden urges action to enhance cybersecurity regulations, citing the risks posed by mandated backdoors, and calls for investigations into potential federal law violations by these companies. … Read more

Certificate Authority Market Size to Surpass $485M by 2033

October 11, 2024 at 05:15PM The Certificate Authority (CA) market is essential for issuing and managing digital certificates that authenticate identities and secure communications. Driven by cybersecurity integration and blockchain technology, North America leads the market, while the Asia-Pacific region experiences rapid growth. Notable recent developments include partnerships and innovations among major CA providers. ### … Read more

Relyance AI Raises $32M Series B Funding to Safeguard AI Innovation in the Enterprise

October 11, 2024 at 05:01PM Relyance AI announced a $32.1 million Series B funding round, led by Thomvest Ventures, to enhance its AI-powered data governance platform. This funding aims to address rising regulatory demands and data privacy concerns as AI use surges, enabling businesses to innovate while ensuring compliance and customer trust. ### Meeting Takeaways … Read more

American Water Reconnects Its Network Taps After Cyber Incident

October 11, 2024 at 04:53PM American Water, the largest US water utility, is reactivating its systems after a cyber incident reported on October 7. The company confirmed no impact on its services and resumed standard billing. This incident underscores vulnerabilities in critical infrastructure, emphasizing the need for improved cybersecurity measures across the industry. ### Meeting … Read more

CISA: Hackers abuse F5 BIG-IP cookies to map internal servers

October 11, 2024 at 12:38PM CISA warns that threat actors are exploiting unencrypted persistent F5 BIG-IP cookies to identify and target additional internal devices within compromised networks. This highlights the importance of securing sensitive cookies to prevent unauthorized access and potential breaches. **Meeting Takeaways:** 1. **Threat Actor Activity:** CISA has issued a warning regarding the … Read more