Microsoft’s December 2024 Patch Tuesday Addresses 70 CVEs (CVE-2024-49138)

Microsoft’s December 2024 Patch Tuesday Addresses 70 CVEs (CVE-2024-49138)

Microsoft addresses 70 CVEs with 16 rated critical, including one zero-day that was exploited in the wild. Microsoft patched 70 CVEs in its December 2024 Patch Tuesday release, with 16 rated critical, and 54 rated as important. Remote code execution (RCE) vulnerabilities accounted for 42.9% of the vulnerabilities patched this month, followed by elevation of privilege (EoP) vulnerabilities at 38.6%. CVE-2024-49138 | Windows Common Log File System Driver Elevation of Privilege Vulnerability CVE-2024-49138 is an…

Read More

Scottish Parliament TV at Risk of Deepfake Attacks

Scottish Parliament TV at Risk of Deepfake Attacks

Deepfake technologies threaten the integrity of live video streams and recordings of Scottish Parliamentary proceedings, according to new research by the Scottish Centre for Crime and Justice Research (SCCJR) and the University of Edinburgh. The researchers analyzed potential deepfake attacks on Scottish Parliament TV, a website providing livestreaming and archived recordings from the Debating Chamber and committee rooms in Holyrood, the Scotland’s devolved legislature, to the public. The Scottish Parliament was one of the world’s…

Read More

Cato Networks brings IoT, OT support to SASE platform

Cato Networks brings IoT, OT support to SASE platform

Gartner estimates that by 2025, more than “85% of enterprises will have more smart edge devices on their network than laptops, tablets, desktops, or smartphones,” and according to IDC, “there will be more than 41 billion IoT devices in 2025.” The additional devices could introduce blind spots and put a strain on IT teams, leaving them susceptible to security threats. “Most enterprises are already burdened with too many point solutions. Adding another point solution like…

Read More

A CISO’s Guide to Managing Risk as the World Embraces AI

A CISO’s Guide to Managing Risk as the World Embraces AI

As Generative AI becomes more deeply integrated into our digital landscape, organizations face a growing need to manage application, technology, and cybersecurity risks effectively. The rapid evolution of AI technology amplifies the ease, potential, and complexity of cyberattacks. To better navigate this dynamic environment, organizations can adopt innovative approaches to prioritize risk management, optimize security and developer team collaboration, and improve performance metrics. Risk Prioritization in the Face of AI The proliferation of AI-driven applications…

Read More

Network Connections: How Cisco and the Camino de Santiago Share Common Ground

Network Connections: How Cisco and the Camino de Santiago Share Common Ground

What do a centuries-old pilgrimage path in Spain, a global leader in networking technology, and $54,986 have in common? Well, before I answer that question, let me back up a bit … The Camino de Santiago, established in the 9th century, is a network of pilgrimage routes leading to the cathedral of Santiago de Compostela in northwestern Spain. Did you catch that key word? A network of paths — a way to connect people. You…

Read More

How to Dockerize a React App: A Step-by-Step Guide for Developers | Docker

How to Dockerize a React App: A Step-by-Step Guide for Developers | Docker

If you’re anything like me, you love crafting sleek and responsive user interfaces with React. But, setting up consistent development environments and ensuring smooth deployments can also get complicated. That’s where Docker can help save the day. As a Senior DevOps Engineer and Docker Captain, I’ve navigated the seas of containerization and witnessed firsthand how Docker can revolutionize your workflow. In this guide, I’ll share how you can dockerize a React app to streamline your…

Read More

Court Ruling Provides Clarity on ICO Fines

Court Ruling Provides Clarity on ICO Fines

The UK’s data protection regulator has welcomed a court ruling dismissing an appeal against a historic GDPR fine, arguing that it will provide much-needed clarity for future cases. The Information Commissioner’s Office (ICO) issued Doorstep Dispensaree with a monetary penalty notice of £275,000 back in 2019. That followed a tip-off by the Medicines and Healthcare Products Agency, which said the online pharmacy had been storing unlocked boxes of sensitive personal information in a publicly accessible…

Read More

Get a 5-year VPN subscription for $35 with this deal

Get a 5-year VPN subscription for  with this deal

Charlie Osborne/ZDNET Here at ZDNET, we extensively cover the virtual private network (VPN) market and keep an eye out for any worthwhile deals.  Over at Stack Social, we’ve spotted an interesting promotion for anyone who wants to use VPN software to mask their online activity from prying eyes, including ISPs, marketers, and other groups that may track what websites you visit and what online services you use.  Also: The best VPN services The VPN in question…

Read More

I've been journaling on this color ePaper tablet for over a month – and it's better than Remarkable

I've been journaling on this color ePaper tablet for over a month – and it's better than Remarkable

ZDNET’s key takeaways The Boox Note Air4 C is a color ePaper tablet for notes and reading, available for $500. The tablet’s display is crisp and paper-like, and the included pen is accurate and pressure-sensitve, making it easy to create highly detailed sketches. The Note Air4 C isn’t cheap, at $500, and the included pen is much thicker than the tablet, so it falls off easily. I’ve used the Boox Note Air4 C tablet for…

Read More

Heart Device Maker Artivion Suffers Ransomware Breach

Heart Device Maker Artivion Suffers Ransomware Breach

A leading manufacturer of cardiac implants and devices has revealed that it was hit by a ransomware attack back in November. Artivion makes stent grafts, heart valves, prosthetics and other products to help cardiac and vascular surgeons perform life-saving operations. However, the firm admitted in an SEC Form 8-K filing on Monday that it suffered a serious “cybersecurity incident” on November 21. Although the company didn’t refer to ransomware specifically, the incident bears all the…

Read More
1 148 149 150 151 152 3,583