Aggregator
How Top CISOs Solve Burnout and Speed up MTTR without Extra Hiring
OpenAI updates Europe privacy policy, adding new data categories
OpenAI has updated its Europe-facing privacy policy following the November 2024 EU revision, clarifying scope, expanding coverage, and detailing user controls. The updated document is longer, with dedicated sections for data controls and practical resources. It explains key controls and settings within the text, making available choices easier to understand without moving between documents. “This Privacy Policy describes our practices with respect to personal data that we collect from or about you, and how we … More →
The post OpenAI updates Europe privacy policy, adding new data categories appeared first on Help Net Security.
同心拓新局!360数字安全集团2026省代业务启动会成功召开
BridgePay Confirms Ransomware Attack, No Card Data Compromised
TikTok under EU pressure to change its addictive algorithm
The European Commission has issued preliminary findings that say TikTok breaches the Digital Services Act due to its addictive design. The Commission opened a formal investigation into TikTok in February 2024. The probe examined whether the platform meets its obligations as a very large online platform under the Digital Services Act. These obligations include identifying risks linked to the service and taking steps to reduce them. According to the Commission, “TikTok did not properly assess … More →
The post TikTok under EU pressure to change its addictive algorithm appeared first on Help Net Security.
От шпионажа до диверсий, от вербовки до убийств. Спецслужбы объявили о самом высоком уровне угроз с 1945 года
ScarCruft Abuses Legitimate Cloud Services for C2 and OLE-based Chain to Drop Malware
ScarCruft, a prolific North Korean-backed advanced persistent threat (APT) group, has significantly refined its cyberespionage capabilities in a newly identified campaign distributing the ROKRAT malware. This recent activity marks a strategic deviation from their traditional reliance on LNK-based attack chains, pivoting instead to a complex infection method utilizing Object Linking and Embedding (OLE) objects embedded […]
The post ScarCruft Abuses Legitimate Cloud Services for C2 and OLE-based Chain to Drop Malware appeared first on Cyber Security News.
【安全圈】SandboxJS 四大高危漏洞(CVSS 10.0)可导致宿主系统沦陷
【安全圈】初始访问黑客借 Tsundere Bot 入侵网络,或为勒索攻击铺路
【安全圈】快手被罚 1 个亿,该来的还是来了
AI security’s ‘Great Wall’ problem
AI security requires more than cloud hardening. The real attack surface isn't your infrastructure—it's the supply chains, agents, and humans that make up the system around it.
The post AI security’s ‘Great Wall’ problem appeared first on CyberScoop.
Bloody Wolf Targets Uzbekistan, Russia Using NetSupport RAT in Spear-Phishing Campaign
How to outsmart modern phishing techniques
European Commission Contains Cyber-Attack Targeting Staff Mobile Data
The European Commission has confirmed the detection and containment of a security incident affecting the central infrastructure that manages staff mobile devices. The breach, identified on January 30 through internal telemetry, resulted in unauthorized access to a limited subset of Personally Identifiable Information (PII), specifically staff names and mobile numbers. Crucially, the attack appears to […]
The post European Commission Contains Cyber-Attack Targeting Staff Mobile Data appeared first on Cyber Security News.