Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for Kirsten Doyle - Page 31

Kirsten Doyle

Kirsten Doyle

Information Security Buzz News Editor

Kirsten Doyle has been in the technology journalism and editing space for nearly 24 years, during which time she has developed a great love for all aspects of technology, as well as words themselves. Her experience spans B2B tech, with a lot of focus on cybersecurity, cloud, enterprise, digital transformation, and data centre. Her specialties are in news, thought leadership, features, white papers, and PR writing, and she is an experienced editor for both print and online publications.

Whole Foods Supplier Hit by Cyber Attack

Kirsten DoyleJune 11, 20254 Mins Read

United Natural Foods, Whole Foods’ primary distributor, has been hit with a cyberattack that may leave some grocery store shelves empty. In a statement, the company said: “We have identified unauthorized activity in our systems and have proactively taken some systems offline while we investigate. As soon as we discovered the activity, an investigation was initiated with the help of leading forensics experts and we have notified law enforcement.” With systems offline, and no clear timeline for them to be back up and running, stock on Whole Foods’ shelves may soon start to run out. The computer system was used…

Read More

Roundcube RCE Vulnerability Disclosed Early Amid Active Exploitation

Kirsten DoyleJune 10, 20255 Mins Read

The disclosure was not supposed to happen like this. Originally slated for release after a responsible disclosure period, the details of a critical vulnerability in Roundcube (CVE-2025-49113) are being published early. Not out of haste, but out of necessity. Within 48 hours of a patch landing quietly on GitHub, attackers had already reverse-engineered the fix, weaponized the exploit, and begun selling it on underground forums. In this case, silence would serve the wrong side. To level the field for defenders, a full technical breakdown has been made public by Fears Off researchers. It’s not ideal. But with active exploitation underway…

Read More

Trump Administration Rewrites Cybersecurity Policy in New Executive Order

Kirsten DoyleJune 10, 20255 Mins Read

Trump Signs Executive Order Overhauling Federal Cybersecurity Policy, Refocusing on Technical Defense and Threat Mitigation President Donald Trump has signed a new Executive Order aimed at reinforcing the country’s defenses against foreign cyber threats. The order strips away what the administration describes as “political distractions” from previous directives, prioritizing hands-on technical safeguards over bureaucratic mandates. The new order amends and replaces key elements of two Obama- and Biden-era Executive Orders (14144 and 13694) declaring a return to cybersecurity fundamentals: protecting digital infrastructure, defending against state-backed cyber campaigns, and preparing the U.S. for next-generation threats like quantum computing. A Return to…

Read More

Game On: Getty’s Landmark AI Copyright Lawsuit Kicks Off

Kirsten DoyleJune 10, 20254 Mins Read

Getty Images is suing Stability AI for allegedly stealing its photos to train a machine. And it’s not a small spat. This could be the case that rewrites how copyright law handles artificial intelligence. Kicking off yesterday, 9 June 2025, in London’s High Court, Getty’s lawsuit accuses Stability AI of grabbing over 12 million copyrighted images without permission. The images were allegedly used to train Stable Diffusion, the text-to-image generator that’s sparked a thousand headlines and almost as many lawsuits. It’s not Getty’s first rodeo. The company is already pursuing a similar case against Stability AI in the U.S. This…

Read More

Popular Chrome Extensions Leak Data via Insecure HTTP

Kirsten DoyleJune 9, 20257 Mins Read

A new investigation into several high-profile Chrome extensions has revealed that many transmit sensitive user data over unencrypted HTTP, leaving users wide open to profiling, interception, and even manipulation by malicious actors lurking on the same network. The names involved are familiar. SEMRush Rank. PI Rank. MSN New Tab. DualSafe Password Manager. Even Browsec VPN. Together, these extensions have tens of millions of users. They’re pitched as tools to improve your browser, protect your privacy, or simplify your workflow. But under the hood, they tell a different story. Researchers discovered that these extensions transmit data like browsing domains, machine IDs,…

Read More

AI Web Scraping: Should Your Business Block or Embrace It?

Kirsten DoyleJune 9, 20256 Mins Read

Your company’s stance on AI bots could make (or cost) you revenue, rankings, and visibility. The rise of AI web scraping has thrown businesses into uncharted waters. On one side, scraping fuels AI-powered discovery tools and generative search. On the other, it raises alarms about content ownership, intellectual property, and competitive advantage. According to a new study by Liquid Web, 43% of businesses believe AI scraping benefits their competitors more than themselves, while one in five have actually seen a revenue boost. The data paints a divided picture, one part opportunity, one part risk, and makes one thing clear: if…

Read More

Secrets Management and APIs: The Invisible Weak Spots Behind Modern Breaches

Kirsten DoyleJune 9, 20255 Mins Read

APIs are essential. They stitch together cloud services, power mobile apps, automate DevOps pipelines, and deliver personalized customer experiences at scale. However, for all their utility, APIs are also prime real estate for malicious actors. With such interconnected ecosystems today, APIs have become both the nervous system of digital infrastructure and a wide-open backdoor. As the 2025 Thales Data Threat Report highlights, the convergence of API sprawl, weak secrets hygiene, and AI-driven automation is creating the perfect storm for data breaches. The findings are sobering: 34% of enterprises now run more than 500 APIs, and secrets management tops the list…

Read More

AT&T Data Leak: 86 Million Records Exposed in Latest Alleged Breach

Kirsten DoyleJune 5, 20256 Mins Read

Another day, another leak. Bad actors have posted what they allege to be a massive trove of AT&T customer data, 86 million records in total. But questions loom: Is this connected to last year’s Snowflake breach? Or is it something even bigger?  The hackread.com research team first spotted the leak on 15 May 2025. It surfaced on a well-known Russian cybercrime forum, only to be reposted on 3 June. That’s when it began circulating widely across dark web channels. The threat actor behind the dump claims it’s the same data stolen in April 2024, when the ShinyHunters group exploited Snowflake’s…

Read More

Microsoft Launches European Security Program to Counter Rising Cyber Threats

Kirsten DoyleJune 5, 20255 Mins Read

Microsoft had debuted a major new initiative to help fortify Europe’s digital defenses against increasingly sophisticated cyberattacks from state-backed and criminal actors. The new European Security Program expands of Microsoft’s cybersecurity engagement across the continent, offering governments access to cutting-edge tools, AI-driven intelligence, and strategic partnerships at no cost. “We are making this program available to European governments, free of charge, including all 27 European Union (EU) member states, as well as EU accession countries, members of the European Free Trade Association (EFTA), the UK, Monaco, and the Vatican,” the company added. The programme builds on the company’s longstanding Government…

Read More

Meta, Yandex Secretly Tracking Android Users on Facebook, Instagram

Kirsten DoyleJune 5, 20256 Mins Read

A new investigation has uncovered a covert tracking mechanism used by Meta and Yandex that potentially affects billions of Android users. At the heart of the issue lies a silent communication channel between mobile browsers and native apps on the same device, enabled via localhost sockets. The technique effectively links anonymous web browsing to real-world user identities. This discovery was made by researchers with IMDEA Networks Institute, Radboud University, and The Computer Security and Industrial Cryptography research group (COSIC) at the Department of Electrical Engineering of KU Leuven. Tracking via Localhost: A Hidden Bridge The discovery reveals that Android apps…

Read More
Previous 1 … 29 30 31 32 33 … 60 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}