#supply-chain-risk

[ follow ]
fromTheregister
2 days ago

AI-powered penetration tool downloaded 10K times

Villager, a new penetration-testing tool linked to a suspicious China-based company and described by researchers as "Cobalt Strike's AI successor," has been downloaded about 10,000 times since its release in July. The package, published on Python Package Index, operates as a Model Context Protocol (MCP) client and integrates multiple security tools. It includes Kali Linux, which legitimate defenders use to automate penetration testing, and it contains hundreds of tools that can also be used to launch cyber attacks at scale.
Python
fromSecuritymagazine
2 days ago

Critical Steps to Strengthening Satellite Network Security

Satellite networks are integral to myriad aspects of modern society, providing essential services that support both civilian and military operations. As our dependency on satellite networks has increased, so has the risk of cyber threats targeting these critical infrastructures. Any disruption of satellite services can negatively impact everything from emergency response systems to financial transactions to navigation. That makes ensuring the cybersecurity of satellite networks essential to maintaining global stability and security.
Information security
fromBusiness Matters
5 days ago

Clear Insurance Management Advises Retailers to Boost Security Measures Post M&S Cyber Scare

In the recent M&S breach, only £100 million of cyber insurance was in place, far short of the £300 million in damages incurred, leaving the retail giant significantly underinsured. With more retailers relying heavily on online operations and third-party platforms, the financial impact of operational downtime from data breaches can be severe and widespread. Yet many businesses still lack adequate-or any-cyber insurance.
Information security
#cybersecurity
Information security
fromSecuritymagazine
1 week ago

378 GB of Data From Navy Federal Credit Union Exposed

A publicly exposed 378.7 GB database linked to Navy Federal Credit Union contained sensitive backups, logs, and business logic, enabling credential-stuffing, phishing, and supply-chain risks.
US politics
fromFortune
1 week ago

Federal appeals court tariff ruling signals CFOs to 'plan for turbulence'

Most Trump-era tariffs were ruled illegal by a federal appeals court, creating near-term uncertainty while tariffs may remain pending appeals and possible reimposition.
fromTheregister
1 week ago

Frostbyte10 bugs put grocery refrigeration devices at risk

Ten vulnerabilities in Copeland controllers, which are found in thousands of devices used by the world's largest supermarket chains and cold storage companies, could have allowed miscreants to manipulate temperatures and spoil food and medicine, leading to massive supply-chain disruptions. The flaws, collectively called Frostbyte10, affect Copeland E2 and E3 controllers, used to manage critical building and refrigeration systems, such as compressor groups, condensers, walk-in units, HVAC, and lighting systems. Three received critical-severity ratings.
Information security
[ Load more ]