Fifty-eight zero-day vulnerabilities were exploited in the wild last year, the highest since Google's Project Zero began tracking in 2014, reports CyberScoop.
Okta has disclosed that only two active customer tenants were compromised by the Lapsus$ hacking group during a January attack against a third-party vendor, contrary to the initial estimate of up to 366 customers that could have been impacted by the breach, VentureBeat reports.
More than 68% of government organizations around the world have reported experiencing at least one cyberattack during the past year and 54% are expecting attacks to occur within the next 12 months, reports Government Technology.
Forty-nine percent of companies across nearly a dozen countries reported experiencing data breaches during the past two years, which was 10 percentage points higher than last year, while 79% noted having endpoint-targeted ransomware attacks, 35% of which reporting denial-of-service and data loss as a result of such attacks.
This week’s healthcare data breach roundup includes updates to ongoing network downtime for two providers and multiple reports of employee email account hacks, led by Christie Clinic.
Millions of websites could be compromised as a result of a critical vulnerability in the WordPress plugin Elementor, which is leveraged for website creation, according to SiliconAngle.
BleepingComputer reports that threat actors have leveraged a Windows 11 Toolbox script released on GitHub that allowed the inclusion of the Google Play Store in the Android Subsystem to unknowingly infect Microsoft users with malware.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.