gram news
Information Security channel avatar

Information Security

@information_security_channel

ProjectsPTTech

11,500subscribers

Open the Channel

Latest posts

  • Information Security

    22 Sept, 15:27

    Cyera Raises $400 Million at $12+ Billion Valuation https://www.securityweek.com/cyera-raises-400-million-at-12-billion-valuation/The data security company received the new investment from Goldman Sachs Alternatives, extending its Series G funding round. The post Cyera Raises $400 Million at $12+ Billion Valuation (https://www.securityweek.com/cyera-raises-400-million-at-12-billion-valuation/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 15:26

    Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity https://www.securityweek.com/nightmare-eclipse-drops-new-microsoft-defender-exploit-after-revealing-identity/Abdelhamid Naceri, a former Microsoft Germany employee, is the exploit leaker Nightmare Eclipse, aka Chaotic Eclipse. The post Nightmare Eclipse Drops New Microsoft Defender Exploit After Revealing Identity (https://www.securityweek.com/nightmare-eclipse-drops-new-microsoft-defender-exploit-after-revealing-identity/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 15:25

    Only 13% of OT Network Segments Are Fully Isolated: Analysis https://www.securityweek.com/only-13-of-ot-network-segments-are-fully-isolated-analysis/Forescout’s new network segmentation research shows that OT and medical devices often share network segments with other enterprise assets. The post Only 13% of OT Network Segments Are Fully Isolated: Analysis (https://www.securityweek.com/only-13-of-ot-network-segments-are-fully-isolated-analysis/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 12:13

    Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers https://www.securityweek.com/recent-zyxel-switch-vulnerability-exploited-by-chinese-hackers/A Chinese threat actor has exploited the bug to exfiltrate sensitive information from nearly 1,000 ZyXEL switches. The post Recent ZyXEL Switch Vulnerability Exploited by Chinese Hackers (https://www.securityweek.com/recent-zyxel-switch-vulnerability-exploited-by-chinese-hackers/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 12:12

    Malicious B-tree NPM Package Accumulates Millions of Downloads https://www.securityweek.com/malicious-b-tree-npm-package-accumulates-millions-of-downloads/Posing as the legitimate sorted-btree package, indexed-btree hides a malware trigger in its prototype method. The post Malicious B-tree NPM Package Accumulates Millions of Downloads (https://www.securityweek.com/malicious-b-tree-npm-package-accumulates-millions-of-downloads/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 12:11

    WordPress Patches ‘Click2Shell’ Vulnerability https://www.securityweek.com/wordpress-patches-click2shell-vulnerability/The bug lets attackers automatically install and preview themes and could lead to remote code execution. The post WordPress Patches ‘Click2Shell’ Vulnerability (https://www.securityweek.com/wordpress-patches-click2shell-vulnerability/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 12:10

    Japan Dismantles First North Korean Laptop Farm as US and Allies Detail Wider Scheme https://www.securityweek.com/japan-dismantles-first-north-korean-laptop-farm-as-us-and-allies-detail-wider-scheme/The US, Japan, Germany and Australia have published a joint report detailing the scope of North Korea’s WaterPlum campaign. The post Japan Dismantles First North Korean Laptop Farm as US and Allies Detail Wider Scheme (https://www.securityweek.com/japan-dismantles-first-north-korean-laptop-farm-as-us-and-allies-detail-wider-scheme/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    22 Sept, 04:27

    10 Lessons Reshaping Security After Black Hat and DEF CON 2026 https://www.offsec.com/blog/10-lessons-from-black-hat-and-def-con-2026/Ten lessons from Black Hat and DEF CON on AI agents, cheaper attacks, supply chain risk, security fundamentals and cyber skills. The post 10 Lessons Reshaping Security After Black Hat and DEF CON 2026 (https://www.offsec.com/blog/10-lessons-from-black-hat-and-def-con-2026/) appeared first on OffSec (https://www.offsec.com/).
  • Information Security

    22 Sept, 03:32

    US Proposes AI Incident Alert System in Talks With China, Bessent Says https://www.securityweek.com/us-proposes-ai-incident-alert-system-in-talks-with-china-bessent-says/Trump has resisted calls to slow down AI development, saying that would help China catch up to U.S. companies. The post US Proposes AI Incident Alert System in Talks With China, Bessent Says (https://www.securityweek.com/us-proposes-ai-incident-alert-system-in-talks-with-china-bessent-says/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    21 Sept, 18:52

    Google Hit With $463 Million Fine for EU Location Data Rule Breach https://www.securityweek.com/google-hit-with-463-million-fine-for-eu-location-data-rule-breach/Google has been fined 403 million euros ($463 million) for breaching the European Union’s strict privacy rules because it mishandled users’ location data. The post Google Hit With $463 Million Fine for EU Location Data Rule Breach (https://www.securityweek.com/google-hit-with-463-million-fine-for-eu-location-data-rule-breach/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    21 Sept, 18:51

    Fake LastPass Installers Push Kernel-Level EDR Killer, ‘Rapuncel’ Stealer https://www.securityweek.com/fake-lastpass-installers-push-kernel-level-edr-killer-rapuncel-stealer/The attackers impersonate at least 40 companies and disable 145 security products to deploy infostealer malware. The post Fake LastPass Installers Push Kernel-Level EDR Killer, ‘Rapuncel’ Stealer (https://www.securityweek.com/fake-lastpass-installers-push-kernel-level-edr-killer-rapuncel-stealer/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    21 Sept, 18:50

    CISO Conversations: Noopur Davis – The Accidental Global CISO at Comcast https://www.securityweek.com/ciso-conversations-noopur-davis-the-accidental-global-ciso-at-comcast/Noopur Davis never planned a career in cybersecurity. She was a developer at Intergraph, and for many years that was all she wanted to be. The post CISO Conversations: Noopur Davis – The Accidental Global CISO at Comcast (https://www.securityweek.com/ciso-conversations-noopur-davis-the-accidental-global-ciso-at-comcast/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    21 Sept, 18:49

    Dragos Completes NetRise and runZero Acquisitions Following Accenture Deal https://www.securityweek.com/dragos-completes-netrise-and-runzero-acquisitions-following-accenture-deal/The transaction is part of the $4.1 billion deal in which Accenture acquired a majority stake in Dragos in an OT cybersecurity push. The post Dragos Completes NetRise and runZero Acquisitions Following Accenture Deal (https://www.securityweek.com/dragos-completes-netrise-and-runzero-acquisitions-following-accenture-deal/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    21 Sept, 15:21

    Hash Identifier Tools – Command-Line Password Hash Identification https://www.darknet.org.uk/2026/09/hash-identifier-tools-command-line-password-hash-identification/hashID and Name-That-Hash tested against current password formats. Both miss bcrypt's $2b$ prefix; only Name-That-Hash recognises Argon2id.
  • Information Security

    21 Sept, 13:28

    Google Confirms Gemini AI Breached Three Firms https://www.securityweek.com/google-confirms-gemini-ai-breached-three-firms/Google is the latest AI giant to confirm that its models escaped a testing environment and hacked real companies. The post Google Confirms Gemini AI Breached Three Firms (https://www.securityweek.com/google-confirms-gemini-ai-breached-three-firms/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    19 Sept, 18:01

    TigerByte Cyber Emerges From Stealth With $3 Million in Funding https://www.securityweek.com/tigerbyte-cyber-emerges-from-stealth-with-3-million-in-funding/The company has secured over $7 million in contracts with US government agencies, including the US Space Force, the US Navy, and DARPA. The post TigerByte Cyber Emerges From Stealth With $3 Million in Funding (https://www.securityweek.com/tigerbyte-cyber-emerges-from-stealth-with-3-million-in-funding/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    18 Sept, 21:47

    In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw https://www.securityweek.com/in-other-news-ransomware-developer-sentenced-plugin4shell-ai-attack-critical-sap-flaw/Noteworthy stories that might have slipped under the radar: Mandiant's 2026 AI risk report, PhantomRaven malware used by bug bounty hunter, WordPress plugin bug exploited. The post In Other News: Ransomware Developer Sentenced, Plugin4Shell AI Attack, Critical SAP Flaw (https://www.securityweek.com/in-other-news-ransomware-developer-sentenced-plugin4shell-ai-attack-critical-sap-flaw/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    18 Sept, 13:10

    AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code https://www.securityweek.com/ai-built-exploit-and-sign-in-flaw-opened-path-to-internal-openai-code/Hacktron researchers earned a bug bounty after demonstrating access to OpenAI employee accounts. The post AI-Built Exploit and Sign-In Flaw Opened Path to Internal OpenAI Code (https://www.securityweek.com/ai-built-exploit-and-sign-in-flaw-opened-path-to-internal-openai-code/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    18 Sept, 13:09

    23 Million User Records Compromised in Gyazo Data Breach https://www.securityweek.com/23-million-user-records-compromised-in-gyazo-data-breach/Gyazo maker Helpfeel said the attacker exploited a vulnerability in its image upload server to gain unauthorized access. The post 23 Million User Records Compromised in Gyazo Data Breach (https://www.securityweek.com/23-million-user-records-compromised-in-gyazo-data-breach/) appeared first on SecurityWeek (https://www.securityweek.com/).
  • Information Security

    18 Sept, 11:36

    Check Point, Kaspersky, Tanium Patch Product Vulnerabilities https://www.securityweek.com/check-point-kaspersky-tanium-patch-product-vulnerabilities/Check Point Security Management and Log Servers are affected by a critical vulnerability that can allow remote code execution with root privileges. The post Check Point, Kaspersky, Tanium Patch Product Vulnerabilities (https://www.securityweek.com/check-point-kaspersky-tanium-patch-product-vulnerabilities/) appeared first on SecurityWeek (https://www.securityweek.com/).