Okta snatches up security firm Spera, reportedly for over $100M

Okta, the identity and access management company, is acquiring security firm Spera. Anticipated to close during the fiscal first quarter beginning in early February, the Spera acquisition will build on Okta’s existing identity threat detection and response (ITDR) capabilities, Okta says, while equipping customers with tech to “elevate their identity security, posture management and identify,…

Hackers Abusing GitHub to Evade Detection and Control Compromised Hosts

Dec 19, 2023The Hacker NewsSoftware Security / Threat intelligence Threat actors are increasingly making use of GitHub for malicious purposes through novel methods, including abusing secret Gists and issuing malicious commands via git commit messages. “Malware authors occasionally place their samples in services like Dropbox, Google Drive, OneDrive, and Discord to host second stage malware…

CISA urges manufacturers to end default passwords

The US Cybersecurity and Infrastructure Security Agency (CISA) has urged manufacturers to end default passwords on internet-exposed systems due to the severe risks posed by malicious actors. In a recent alert, CISA highlighted the exploitation of operational technology devices by Iranian threat actors affiliated with the Islamic Revolutionary Guard Corps (IRGC) who used default passwords…

CISA urges manufacturers to end default passwords

The US Cybersecurity and Infrastructure Security Agency (CISA) has urged manufacturers to end default passwords on internet-exposed systems due to the severe risks posed by malicious actors. In a recent alert, CISA highlighted the exploitation of operational technology devices by Iranian threat actors affiliated with the Islamic Revolutionary Guard Corps (IRGC) who used default passwords…

CISA urges manufacturers to end default passwords

The US Cybersecurity and Infrastructure Security Agency (CISA) has urged manufacturers to end default passwords on internet-exposed systems due to the severe risks posed by malicious actors. In a recent alert, CISA highlighted the exploitation of operational technology devices by Iranian threat actors affiliated with the Islamic Revolutionary Guard Corps (IRGC) who used default passwords…

Cybersecurity threats facing medical devices

Patrick Maw, an expert in medical device cybersecurity at University College London Hospitals NHS Foundation Trust, recently gave a talk at IoT Tech Expo Global highlighting the cybersecurity threats facing connected medical devices. Maw explained that a wide range of medical equipment now connects to healthcare networks, from infusion pumps and CT scanners to mobile…