SecurityWeek reports that Siemens and Schneider Electric have addressed a total of 59 security flaws in their respective Patch Tuesday security advisories for this month.
More than 10,000 organizations have been targeted by a massive phishing campaign with multi-factor authentication bypass that commenced last September, prompting later business email compromise attacks, according to BleepingComputer.
While 93% of respondents reported a failed IIoT/OT security project, the Barracuda study finds silver a lining: 75% of companies with successful IIoT/OT projects did not experience a cyber incident.
Vulnerable QNAP network-attached storage devices are being exploited by the Raspberry Robin Windows worm to further spread to other systems, according to SecurityWeek.
ZDNet reports that numerous organizations are being targeted with a new callback phishing campaign spoofing cybersecurity companies in an effort to gain network access.
Threatpost reports that North Korean APT hackers were able to steal $540 million from blockchain gaming platform Axie Infinity in a spear-phishing attack after gaining access to the private keys of most of the platform's nine validator nodes.
The FTC reaffirmed it will use its authority against illegal data sharing, the latest federal effort to ensure health data privacy, particularly sensitive information generated by consumer apps, after Roe vs. Wade struck down by Supreme Court.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.