Talk With an Expert

NewsBites Cyber Security News

SANS NewsBites is a semiweekly executive summary of the most important cyber security news articles published recently. Each news item is annotated with important context provided by respected subject matter experts within the SANS community.

Filter by:

Change Healthcare Says February Breach Affects 100 Million People; Hospitals are Using AI Transcription Tools that Hallucinate; Older Adults Struggle with Technology in Healthcare

NewsletterNewsbites
  • 29 Oct 2024
  • Volume #XXVI
  • Issue #83

CISA Adds Multiple Flaws to Their Known Exploited Vulnerabilities Database: Three-Month-Old SharePoint Vulnerability, RCE Flaw in FortiManager, and DoS Vulnerability in Cisco ASA and FTD Software

NewsletterNewsbites
  • 25 Oct 2024
  • Volume #XXVI
  • Issue #82

Secure Your Business Partners and Employees: Globe Life Subsidiary Ransomware Attack Likely Cause of Data Leak; Fraudulently Hired IT Workers Demand Ransom for Stolen Data; ESET Partner's Domain Spoofed to Deliver Wiper

NewsletterNewsbites
  • 22 Oct 2024
  • Volume #XXVI
  • Issue #81

Shortening Certificate Lifecycles; SolarWinds Hardcoded Credential Vulnerability; State-Sponsored Hackers are Targeting Critical Infrastructure

NewsletterNewsbites
  • 18 Oct 2024
  • Volume #XXVI
  • Issue #80

FIDO Alliance Announced New Passkey Initiatives; Old Fortinet and Log4J Vulnerabilities are Still Lurking

NewsletterNewsbites
  • 15 Oct 2024
  • Volume #XXVI
  • Issue #79

Microsoft Patch Tuesday Fixes Nearly 120 Vulnerabilities; Mozilla Fixes Critical Flaw in Firefox; Microsoft: Cyberthreats are Compounded at Educational Institutions

NewsletterNewsbites
  • 11 Oct 2024
  • Volume #XXVI
  • Issue #78

Infrastructure Breaches: State-Sponsored Threat Actors Target US Broadband Providers' Court-Authorized Wiretap Interfaces; Wayne County, Michigan Government Websites Down; American Water Works SEC Filing Indicates Unauthorized Network Activity

NewsletterNewsbites
  • 08 Oct 2024
  • Volume #XXVI
  • Issue #77

Critical Flaws in Ivanti Endpoint Manager and Zimbra postjournal Added to CISA;Õs Known Exploited Vulnerabilities Catalog; Akamai: CUPS Vulnerabilities Can be Chained for DDoS Attacks

NewsletterNewsbites
  • 04 Oct 2024
  • Volume #XXVI
  • Issue #76

Cyberattacks Disrupt Hospital Services; US Legislators Propose Healthcare Cybersecurity Bill

NewsletterNewsbites
  • 01 Oct 2024
  • Volume #XXVI
  • Issue #75

NIST Revised Identity Guidelines Address Human Element in Authentication; Linux CUPS Vulnerability; Attackers are Targeting Critical Infrastructure Systems

NewsletterNewsbites
  • 27 Sep 2024
  • Volume #XXVI
  • Issue #74

Approaches to Changing Cybersecurity Culture: Microsoft's Secure Future Initiative Progress Report and Jen Easterly on Responsibility for Quality and Clarity in Cybersecurity

NewsletterNewsbites
  • 24 Sep 2024
  • Volume #XXVI
  • Issue #73

Supply Chain Attack Theorized in Hezbollah Device Explosions; Human Rights Complaint Over Pegasus; Podcast: Pen Test Arrests, Five Years Later

NewsletterNewsbites
  • 20 Sep 2024
  • Volume #XXVI
  • Issue #72