CSO

The day's top cybersecurity news and in-depth coverage

CSO First Look

January 04, 2023

Why it might be time to consider using FIDO-based authentication devices

Access codes sent by SMS or authenticator apps can be bypassed by clever phishing. Hardware-based tokens make that harder to do. Read more ▶

Image: Sponsored by Broadcom Software: Broadcom Raises the Bar on Identity Security

Sponsored by Broadcom Software: Broadcom Raises the Bar on Identity Security

In the era of digital transformation, Broadcom’s Identity innovations are protecting customers.

LockBit apologizes for ransomware attack on hospital, offers decryptor

The LockBit ransomware-as-a-service operation said it is against its rules to attack medical institutions, but the ransomware gang's affiliates do not always adhere to this policy.

Log4Shell remains a big threat and a common cause for security breaches

Log4Shell is likely to remain a favored vulnerability to exploit as organizations lack visibility into their software supply chains.

Image: CPRA explained: New California privacy law ramps up restrictions on data use

CPRA explained: New California privacy law ramps up restrictions on data use

The California Privacy Rights Act (CPRA) is a new law that toughens some data security requirements, brings California more in line with Europe's General Data Protection Regulation, and creates a new state agency—the California Privacy Protection Agency.

PyTorch suffers supply chain attack via dependency confusion

A rogue packet on the machine learning framework allowed the attacker to exfiltrate data, including SSH keys.

CSO
Facebook Twitter LinkedIn
© 2023 CSO
140 Kendrick Street, Building B
Needham, MA 02494