A Texas judge ruled that class-actions against SolarWinds, its CISO Tim Brown and two private equity investors may proceed, while dismissing actions against former CEO Kevin Thompson for misleading investors and selling millions in company stock right before the breach was disclosed.
Threat actors only spent an average of 12 days exploiting software vulnerabilities in 2021, compared with 42 days in 2020, with the 71% decline in time to known exploitation attributed to the significant increase in zero-day attacks.
Mobile cybersecurity startup Zimperium is set to be acquired for nearly $525 million by Liberty Strategic Capital, which was founded by former US Treasury Secretary Steven Mnuchin, who will serve as the chair of the Zimperium board.
The FBI has warned that at least nine states had their elections officials targeted by an invoice-themed phishing campaign last October, CyberScoop reports.
SecurityWeek reports that more than 25% of employees have been tricked by phishing emails in 2021, more than half of whom noted that a senior executive at their organization was spoofed by the emails, which was 41% higher than in 2020.
Besides basic vulnerabilities, financial institutions face potential access from bad actors due to employees leaving ports open or making use of "risky services," according to a recent report from LookingGlass.