In Other News: Gen Digital Makes $1B Buy, Recall Captures Sensitive Data, MITRE ATT&CK Evaluations

December 13, 2024 at 08:36AM SecurityWeek’s roundup highlights key cybersecurity stories, including China’s Salt Typhoon espionage revealing phone call recordings, WhatsApp’s fixed View Once feature, and Russia’s Secret Blizzard attacks in Ukraine. Notable developments include MITRE’s evaluations, Gen Digital’s $1 billion acquisition of MoneyLion, and Yahoo’s layoffs in its cybersecurity team. ### Key Takeaways from … Read more

QR codes bypass browser isolation for malicious C2 communication

December 9, 2024 at 02:59AM Mandiant has discovered a method to bypass browser isolation using QR codes for command-and-control operations. This technique encodes commands in QR codes displayed on webpages, allowing compromised local browsers to capture and decode them. Despite limitations like data size and latency, it highlights vulnerabilities in current security measures, necessitating enhanced … Read more

System Two Security Emerges From Stealth With Detection Engineering Solution

December 5, 2024 at 06:32AM System Two Security launched a threat detection solution utilizing generative AI and secured $7 million in seed funding. Founded by Robert Fly and Prasanth Ganesan, the company aims to streamline security rule creation without needing access to existing tools. Early access for testing is available for interested organizations. ### Meeting … Read more

BigID Releases Data Activity Monitoring to Extend DDR, Detect Malicious Actors, and Strengthen Data Security Posture

December 3, 2024 at 05:39PM BigID has launched Data Activity Monitoring, enhancing data security by proactively managing risks, identifying insider threats, and ensuring compliance. Unlike traditional tools, it tracks data access activity for improved decision-making and faster investigations. BigID continues to receive accolades for its innovative approaches in data security and compliance management. **Meeting Takeaways … Read more

AWS unveils cloud security IR service for a mere $7K a month

December 2, 2024 at 08:36PM Amazon Web Services (AWS) has launched a new incident response service, combining automation and human intervention, with a starting price of $7,000 per month. The service offers 24/7 support, threat analysis, and centralized tools for managing security incidents, available in 12 global regions. Pricing increases with AWS spending tiers. ### … Read more

Bolster resilience against 2025 cyber threats

November 27, 2024 at 01:44PM The MITRE Engenuity ATT&CK Evaluations provide essential insights for cybersecurity leaders by simulating real-world threats to assess vendor performance. The upcoming 2024 results will highlight advancements in detection and response. This webinar by Cynet will elaborate on unique features of the evaluations to help organizations enhance their security strategies. ### … Read more

News Desk 2024: The Rise of Cybersecurity Platforms

November 27, 2024 at 08:45AM Omdia’s survey reveals cybersecurity leaders are overwhelmed by 21-50 security tools and face pressure to simplify while adding more due to rising threats. Over the next three to five years, organizations may transition to cybersecurity platforms as contracts expire, presenting opportunities for major vendors while emphasizing a supportive vendor ecosystem. … Read more

Why Cybersecurity Leaders Trust the MITRE ATT&CK Evaluations

November 26, 2024 at 10:24AM The 2024 MITRE ATT&CK Evaluation results will provide cybersecurity leaders with critical insights into vendor performance against simulated real-world threats. A Cynet-hosted webinar will summarize key findings and offer practical guidance on leveraging the evaluations. The upcoming assessments will feature nuanced scenarios, including ransomware and North Korean tactics. ### Meeting … Read more

RSA Conference 2025 Innovation Sandbox Contest Celebrates 20th Anniversary

November 21, 2024 at 05:22PM Starting in April 2025, RSA Conference will provide $5 million in funding to the Top 10 Finalists of the Innovation Sandbox contest, enhancing innovation against cybersecurity threats. The contest, celebrating its 20th anniversary, showcases startups and has significantly influenced the cybersecurity landscape, helping participants secure substantial investments. ### Meeting Takeaways … Read more

Kyndryl & Microsoft Unveil New Services to Advance Cyber Resilience for Customers

November 18, 2024 at 05:10PM Kyndryl, the largest IT infrastructure services provider, launched new cyber resilience services developed with Microsoft. Integrated into Kyndryl Bridge, these offerings enhance security, compliance, and operational efficiency for businesses confronting complex cyber threats. This partnership aims to empower organizations amid growing regulatory pressures and digital transformation challenges. **Meeting Takeaways:** 1. … Read more