Category: Security | TechCrunch

Ivanti warns customers another zero-day is under active attack

U.S. software giant Ivanti has scrambled to patch another zero-day vulnerability under active attack. The vulnerability, tracked as CVE-2023-38035 with a vulnerability severity rating of 9.8 out of 10, affects the software company’s Sentry product. Ivanti Sentry (formerly MobileIron Sentry)…

SecureWorks layoffs affect 15% staff

SecureWorks said Monday it will let go of 15% of its workforce, the cybersecurity company’s second round of layoffs this year. In a regulatory filing, SecureWorks said that it would incur about $14.2 million in expenses due to the layoffs,…

Bugs in transportation app Moovit gave hackers free rides

Hackers could have hijacked the user accounts of a popular transportation app and used them to get free rides and access people’s personal information, according to a security researcher. Omer Attias, a security researcher at SafeBreach, said he found three…

How the FBI goes after DDoS cyberattackers

In 2016, hackers using a network of compromised internet-connected devices — vulnerable security cameras and routers — knocked some of the then biggest websites on the internet offline for several hours. Twitter, Reddit, GitHub and Spotify all went down intermittently…

UK cybersecurity giant NCC Group is making more layoffs

U.K. cybersecurity giant NCC Group has confirmed it’s making more layoffs, just months after it slashed its workforce by 7%. The Manchester, U.K.-based company is undergoing its second round of layoffs in just six months, a person with knowledge of…

Osano, a data privacy management platform, nabs $25M

Osano, an Austin, Texas-based startup developing a platform to help companies manage their data privacy, today announced that it raised $25 million in a Series B funding round led by Baird Capital with Jump Capital, LiveOak, NextCoast and TDF. In…

Parsing the UK voter register cyberattack

A catastrophic breach of the United Kingdom electoral register affects tens of millions of residents following a cyberattack at the U.K. Electoral Commission. With data on more than 40 million voters accessed by unnamed hackers, the cyberattack is already one…

HackerOne lays off 12% workforce as ‘one-time event’

HackerOne, a widely known bug bounty and penetration testing platform, is cutting up to 12% of its workforce as the global economic slowdown continues to impact the tech community. The San Francisco-based startup announced its layoffs on Wednesday, TechCrunch learned…

There’s no reason to panic over WormGPT

As tools for building AI systems, particularly large language models  (LLMs), get easier and cheaper, some are using them for unsavory purposes, like generating malicious code or phishing campaigns. But the threat of AI-accelerated hackers isn’t quite as dire as…

Threat intelligence startup Cyble lands $24M investment

Cyble, a cybersecurity startup that styles itself as a “threat intelligence provider,” today announced that it raised $24 million in a Series B funding round co-led by Blackbird Ventures and King River Capital with participation from Spider Capital, January Capital,…

Strengthening security in a multi-SaaS cloud environment

When security systems are sourced from different vendors, it becomes even more challenging to detect and prevent attacks in a timely manner. This article has been indexed from Security | TechCrunch Read the original article: Strengthening security in a multi-SaaS…

I tried to buy a post on TechCrunch.com

A few times per day, I get a message that asks something along the lines of: “How much do you charge for a guest article on TechCrunch?” People are trying to get inbound links from TechCrunch for SEO reasons. The…

Cybersecurity firm Netcraft lands $100M investment

After years of growth, funding for cybersecurity startups is beginning to slow down, a symptom of the broader economic malaise and — perhaps — market oversaturation. According to a recent note from Pinpoint Search Group, cybersecurity funding dipped 55% in…

Microsoft lost its keys, and the government got hacked

Microsoft still doesn’t know — or want to share — how China-backed hackers stole a key that allowed them to stealthily break into dozens of email inboxes, including those belonging to several federal government agencies. In a blog post Friday,…

JumpCloud says nation-state hackers breached its systems

Identity and access management firm JumpCloud says it reset customers’ API keys after nation-state hackers breached its systems. JumpCloud, a directory platform that allows enterprises to authenticate, authorize, and manage users and devices, last week told customers that it had…

Bangladesh government takes down exposed citizens’ data

The Bangladeshi government on Sunday took down citizens’ sensitive data that it had left exposed online. On Friday, TechCrunch reported that a website belonging to the government of Bangladesh was leaking the personal information of the country’s citizens, including full…