The Cybersecurity and Infrastructure Security Agency has added the Spring4Shell remote code execution vulnerability impacting the Spring Framework to its Known Exploited Vulnerabilities Catalog.
More than 100 high-value Mailchimp customers in the cryptocurrency and finance industries had their data exfiltrated as a result of a breach on one of the email marketing firm's internal tools.
A recently proposed bill partnering HHS with CISA has received strong support from healthcare stakeholder groups, but leaders stress under-resourced and smaller providers need more immediate support.
Antimatter announced its exit from stealth mode with $12 million raised in a Series A funding round, allowing the company to begin private beta for its service, which allows software-as-a-service firms to guarantee their customers' data security.
Containerization firm Docker announced that a Series C funding round has raised $105 million for the company, lifting its valuation to $2.1 billion and bringing its total funding to $163 million.
While patches have been released in the four months since the emergence of the widespread Log4j vulnerability, many companies have been exposed and could have been compromised, SecurityWeek reports.
Threat actors have recently launched a phishing campaign exploiting the calendar app Calendly in an effort to exfiltrate sensitive account credentials, according to TechRepublic.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.