Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for Kirsten Doyle - Page 41

Kirsten Doyle

Kirsten Doyle

Information Security Buzz News Editor

Kirsten Doyle has been in the technology journalism and editing space for nearly 24 years, during which time she has developed a great love for all aspects of technology, as well as words themselves. Her experience spans B2B tech, with a lot of focus on cybersecurity, cloud, enterprise, digital transformation, and data centre. Her specialties are in news, thought leadership, features, white papers, and PR writing, and she is an experienced editor for both print and online publications.

WhatsApp Flaw Exposes Users to Malicious Attacks

Kirsten DoyleApril 9, 20254 Mins Read

A critical vulnerability in WhatsApp for Windows, tracked as CVE-2025-30401, allowed malicious actors to execute malicious code via seemingly harmless file attachments. This flaw affected all versions of WhatsApp Desktop prior to 2.2450.6. WhatsApp said the vulnerability stemmed from a mismatch in how WhatsApp handled file attachments: it displayed files based on their MIME type (such as an image) but opened them based on their filename extension (for instance, .exe). This discrepancy allowed attackers to craft files that appeared safe but executed malicious code when opened within WhatsApp.  Meta explained in its official advisory, “A maliciously crafted mismatch could have…

Read More

NIST Declares CVE Cutoff: Pre-2018 Vulnerabilities Now ‘Deferred’

Kirsten DoyleApril 8, 20254 Mins Read

The National Institute of Standards and Technology (NIST) has announced that all CVEs published before 1 January 2018, will be marked as ‘Deferred’ in the National Vulnerability Database (NVD).    “All CVEs with a published date prior to 01/01/2018 will be marked as Deferred within the NVD dataset. We are assigning this status to older CVEs to indicate that we do not plan to prioritize updating NVD enrichment or initial NVD enrichment data due to the CVE’s age,” NIST explained It added that: “CVEs marked as Deferred will display a banner on their CVE Detail Pages indicating this status.” This change…

Read More

Europol Warns: AI Is Turbocharging Organized Crime

Josh Breaker Rolfe and Kirsten DoyleApril 8, 20255 Mins Read

Organized crime networks are using artificial intelligence (AI) to enhance their operations, creating unprecedented challenges for law enforcement, warned Europol in its European Serious Organised Crime Threat Assessment (EU-SOCTA) report.  “Criminal networks have demonstrated the ability to rapidly adapt to new technological solutions,” the report said. “This includes AI, a solution that has transformed the modern world with unprecedented speed and impact. Indeed, the very qualities that make AI revolutionary – accessibility, versatility, and sophistication – have made it an attractive tool for criminals.” AI’s Role in Cyber Fraud With expanding complexity and availability, AI and other cutting-edge technologies are…

Read More

Beware of YouTube Links: Neptune RAT’s Advanced Capabilities Exposed

Kirsten DoyleApril 8, 20254 Mins Read

Researchers at CYFIRMA have discovered a new version of Neptune RAT, a highly advanced Remote Access Trojan (RAT) that targets Windows systems. Written in Visual Basic .NET, this scourge has been spreading rapidly across platforms such as GitHub, Telegram, and YouTube, where it is being marketed with phrases like “Most Advanced RAT.” “This indicates its widespread use by cybercriminals targeting Windows users,” the researchers said, adding that the RAT’s author has made the malware available without the source code, intentionally obfuscating the executable files to make analysis more difficult. “Although the developer claims it is a free version, they hint…

Read More

Fast Flux: The Invisible Cyber Threat Undermining National Security

Kirsten DoyleApril 4, 20254 Mins Read

Cybersecurity officials in the US, Australia, Canada, New Zealand, and the UK have collectively warned against a new cyber threat dubbed “fast flux.” This tactic is being used by hackers to hide malicious websites and avoid shutdown.  What is Fast Flux? Fast flux is a method whereby malicious attackers quickly change the IP addresses that a domain name is linked to so that it becomes more difficult for defenders to block or track malicious sites because they’re always on the move. There are two main types: Keeping Malicious Content Online Fast flux is often used to keep phishing sites, malware…

Read More

Europe Hits the Brakes on GDPR: Plans to Slash Red Tape in the Works

Kirsten DoyleApril 4, 20253 Mins Read

The European Union is preparing to dial back certain provisions of the General Data Protection Regulation (GDPR), one of its most widely known and complex tech legislations, reports Politico The intention is to lighten the regulatory load on businesses, particularly small and medium-sized enterprises (SMEs), and allow them to compete more effectively with those in the U.S., China, and elsewhere.  The European Commission will present a proposal in coming weeks to simplify the GDPR. It is a part of broader efforts led by Commission President Ursula von der Leyen to slash red tape and make EU regulation more pro-business. The Commission has already put forward such simplification proposals in other areas like sustainability reporting and access to EU funds. Struggling With Complexity Since its launch in 2018, the GDPR has compelled companies to follow strict rules…

Read More

Royal Mail Suffers Major Data Breach Involving 144GB of Leaked Files

Kirsten DoyleApril 4, 20253 Mins Read

The Royal Mail Group, one of the UK’s oldest institutions, is in the hot seat, following an alleged data breach that exposed 144GB of internal and customer information. The leak was announced on 31 March 2025, by a hacker known as “GHNA” on the cybercrime platform Breach Forum. According to Hackread.com, the leaked archive contains 293 folders and more than 16,000 files, including sensitive customer PII (names, addresses, and shipping details), internal communications like Zoom recordings, backend SQL databases, and Mailchimp marketing data. One video even shows a meeting between Royal Mail and Spectos, that operates globally in the fields…

Read More

Massive Login Scanning Surge Targets Palo Alto GlobalProtect

Kirsten DoyleApril 3, 20255 Mins Read

GreyNoise researchers have observed a dramatic surge in login scanning activity targeting Palo Alto Networks PAN-OS GlobalProtect portals. Over the last 30 days, almost 24,000 unique IP addresses have attempted to access these portals. The pattern suggests a coordinated effort to probe network defenses and identify exposed or vulnerable systems, potentially as a precursor to targeted exploitation. The surge is said to have begun on March 17, sustaining at nearly 20,000 unique IP addresses per day before dropping off on March 26. At its peak, 23,958 unique IP addresses are estimated to have participated in the activity. Of these, only…

Read More

CISA Warns of Major Vulnerabilities Found in Industrial Control Systems

Kirsten DoyleApril 3, 20253 Mins Read

The Cybersecurity & Infrastructure Security Agency (CISA) has issued urgent alerts warning of multiple critical vulnerabilities affecting Industrial Control Systems (ICS), including Hitachi Energy MicroSCADA Pro/X SYS600 and Rockwell Automation Lifecycle Services with Veeam Backup and Replication.   These security flaws, some remotely exploitable, could allow malicious actors to execute code, manipulate critical files, hijack sessions, and launch phishing attacks against industrial networks. Hitachi Energy Vulnerabilities With a CVSS v3 score of up to 9.9 (Critical), the vulnerabilities in Hitachi Energy MicroSCADA Pro/X SYS600 could pose major security risks, including code injection, unauthorized system file access, session hijacking, and phishing. Affected…

Read More

Hacking Verizon Call Records: A Security Breach with National Security Implications

Kirsten DoyleApril 3, 20254 Mins Read

Security researcher Evan Connelly recently identified a security vulnerability in the Verizon Call Filter iOS app which made it possible for a malicious actor to leak call history logs of Verizon Wireless customers. Call logs can be highly valuable, particularly for nation-states, as they enable intelligence agencies to map social networks, track high-value targets, figure out communication patterns, and correlate metadata with other surveillance data to uncover covert operations or political affiliations. This was evident in the recent coverage of the Salt Typhoon breach of telecom networks. “Given that this data is of such value, you’d expect that both how…

Read More
Previous 1 … 39 40 41 42 43 … 60 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}