News

Latitude Financial Services Data Breach Impacts 300,000 Customers

Australian financial services company Latitude Financial Services is notifying roughly 300,000 customers that their personal information might have been compromised in a data breach. A subsidiary of Deutsche Bank and KKE operating since 2015 and headquartered in Melbourne, Latitude is the largest non-bank lender of consumer credit in Australia, also offering services in New Zealand, under the brand Gem Finance. On Thursday, the company disclosed falling victim to a cyberattack that forced it to suspend…

Read More

US Government Warns Organizations of LockBit 3.0 Ransomware Attacks

The Federal Bureau of Investigation (FBI), the Cybersecurity and Information Security Agency (CISA), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) this week issued an alert on the LockBit 3.0 ransomware operation. Since January 2020, LockBit has functioned based on the ransomware-as-a-service (RaaS) model, targeting a broad range of businesses and critical infrastructure entities and using a variety of tactics, techniques, and procedures (TTPs). Also referred to as LockBit Black, LockBit 3.0 has a…

Read More

Meta Develops New Kill Chain Thesis

Facebook parent Meta has officially unveiled a ten-phase kill chain model that it believes will be more inclusive and more effective than the existing range of kill chain models. Cybersecurity theorists have long sought to understand the stages of an attack. The idea is simple: if you can recognize a stage in the attack process, you will be more able to disrupt the attack and protect your assets. This has led to the development of…

Read More

US Charges Two Men Over Use of Hacked Law Enforcement Database for Doxing

The US Justice Department on Tuesday announced charges against two men from New York and Rhode Island over their alleged roles in a doxing operation that involved hacking into a law enforcement portal and a police official’s email account. The suspects, 19-year-old Sagar Steven Singh (aka Weep) and 25-year-old Nicholas Ceraolo (aka Convict and Ominous), have been charged with conspiracy to commit computer intrusions, for which they face up to five years in prison. Ceraolo…

Read More

How the Best CISOs Drive Operational Resilience

The last three years have been fueled by turbulent change — especially when it comes to an organization’s tech structure. The unanticipated global pandemic drastically accelerated digital transformation (DX) and a borderless workforce, forcing businesses to fast-track projects they had previously scheduled to take years. These years-long projects began to be completed in the matter of months, or even weeks, and propelled the industry forward momentously, but also highlighted that cybersecurity must be interwoven in…

Read More

NMFTA Appoints Cybersecurity Director to Help Protect Trucking Industry 

The National Motor Freight Traffic Association (NMFTA) has appointed Antwan Banks as its director of enterprise security as the organization shifts focus to end-to-end security for the trucking industry. The NMFTA told SecurityWeek that this is a newly created position. Banks will lead the organization’s cybersecurity practice, and work with its partners and members to ensure the safety and security of the supply chain in the United States.  “As you can imagine, this is increasingly…

Read More

Cyber Madness Bracket Challenge – Register to Play

As bracket-mania sweeps across the country for the 2023 NCAA Men’s Basketball Tournament, commonly referred to as “March Madness,” SecurityWeek will host its own “Cyber Madness” bracket challenge for those in the cybersecurity community to compete for a chance to win great prizes, earn bragging rights, and have some fun!  SecurityWeek’s Cyber Madness Bracket Challenge is a contest designed to bring the community together in a fun, competitive way through one of America’s top sporting…

Read More

Silicon Valley Bank Seized by FDIC as Depositors Pull Cash

The Federal Deposit Insurance Corporation seized the assets of Silicon Valley Bank on Friday, marking the largest bank failure since Washington Mutual during the height of the 2008 financial crisis. The bank failed after depositors — mostly technology workers and venture capital-backed companies — began withdrawing their money creating a run on the bank. Silicon Valley was heavily exposed to tech industry and there is little chance of contagion in the banking sector as there…

Read More

White House Budget Plan Seeks to Boost Cybersecurity Spending

The White House on Thursday published its $6.9 trillion budget proposal for fiscal year 2024 and the administration wants to increase cybersecurity spending. Several sections of President Biden’s budget plan mention cybersecurity-related spending.  The administration has proposed an additional $145 million for the Cybersecurity and Infrastructure Security Agency (CISA), which will receive a total of $3.1 billion. This amount includes $425 million to improve the agency’s internal cybersecurity and analytical capabilities, and $98 million for…

Read More

Revelstoke Security Raises $20 Million for SOAR Platform

Revelstoke Security on Wednesday announced that it has raised $20 million in a Series B funding round that brings the total investment in the company to $38 million. The new funding round was co-led by ClearSky Security and SYN Ventures, with additional investment from Crosslink Capital and Rally Ventures. Founded in 2020, the San Jose, California-based company provides a security orchestration, automation, and response (SOAR) platform built using a common data language that integrates disparate…

Read More