These vulnerable UEFI applications, primarily older versions of the shim bootloader, can allow attackers to execute untrusted code during system startup, according to ESET researcher Martin Smolár.
Fortinet Inc. has expanded its FortiEndpoint platform with new features designed to help companies monitor employee use of artificial intelligence tools and prevent sensitive data from leaking into them.
Interview with François Proulx from Boost Security. Software Supply Chain Security: Build Pipeline (CI/CD) Exploitation. Boost Security is the creator of some very popular build pipeline security tools, like Bagel and Poutine. Today, we discuss their latest tool, Smoked Meat. They describe it as "Like Metasploit, but for CI/CD pipelines". Segment R...
The browser is now the frontline of cyberattacks. Learn how attackers hijack sessions, bypass MFA, abuse malicious extensions, and use browser-based phishing to compromise users and how security teams can stop them. Thank you to our sponsor for this webcast, Push Security! If your security stack can’t see what’s happening in the browser, attackers ...
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.