-
News Article May 14, 2024
With the rise of powerful chatbots and deceptive deepfake content, experts believe AI could be used to influence elections and it is unclear if governments or tech giants can deal with the threat.
-
News Article May 14, 2024
The Investigatory Powers Act (IPA) of 2016 was tasked with combining various existing powers used by law enforcement and security agencies for communication data collection and interception.
-
News Article May 13, 2024
Kaspersky researchers have identified multiple security vulnerabilities in Cinterion cellular modems, which could potentially be exploited by threat actors to access sensitive information and execute arbitrary code.
-
News Article May 13, 2024
Serious security flaws were discovered in Cinterion cellular modems, including critical flaws that permit remote code execution and unauthorized privilege escalation, posing great risks to Internet of Things (IoT) devices widely found in the industrial, healthcare, automotive, financial and telecom sectors.
-
News Article May 13, 2024
Failure to properly configure authentication led to malicious actors exploiting the database backups of Airsoftc3.com, a popular Airsoft enthusiast community site, according to Cybernews researchers, who discovered the breach in December.
-
Podcast May 13, 2024
Root Causes 386: Meta Commits MITM Attack On Its Users
In 2016 Meta (then Facebook) set up a system to get around encryption and spy on traffic between its users and competing social media platforms.
-
News Article May 10, 2024
Thanks to several recent high-profile incidents and reported vulnerabilities, application security remains a major concern for businesses and government agencies alike. A report released by Gartner in October found that software development lifecycle attacks (SDLC) affected about 61 percent of U.S. businesses between April 2022 and 2023.
-
Podcast May 10, 2024
Root Causes 385: Failed Revocation and Wildcard Certificates
We discuss misuse of wildcard certificates, failure to revoke on time, and how these two failures magnify each other.
-
News Article May 09, 2024
Certificate lifecycle management (CLM) specialist Sectigo has announced the appointment of Dena Bauckman as its new senior vice president of product. A seasoned technology product leader, Bauckman brings more than 20 years’ experience in the product management and marketing of security, cloud, and networking technology.
-
News Article May 09, 2024
Popular cloud storage provider Dropbox has suffered a significant security breach impacting all users of its eSignature platform Dropbox Sign (formerly HelloSign).
-
Blog Post May 08, 2024
Certificate Lifecycle Management (CLM) is a comprehensive strategy for handling digital certificates throughout their entire lifespan.
-
Podcast May 07, 2024
Root Causes 384: So What Is a Senior Fellow Anyway?
Jason has a new title, Senior Fellow. In this episode Jason explains what his new focus will be and how this will be good for Root Causes.