Hackers Poison Software Updates Through ISP Breach

StormBamboo Compromises ISP to Abuse Insecure Software Update Mechanisms A sophisticated hacking group, known as StormBamboo, has been caught red-handed deploying malware through a compromised internet service provider (ISP). Security researchers at Volexity uncovered...

Australia to Mandate Ransomware Payment Disclosure

https://www.abc.net.au/news/2024-07-30/cyber-ransom-payments-new-laws-before-parliament/104113038 Australia is set to introduce a new law requiring businesses to report ransom payments to the government. This mandatory disclosure aims to improve national cybersecurity...

GitHub’s Dark Secret: Deleted Data Never Really Dies

https://trufflesecurity.com/blog/anyone-can-access-deleted-and-private-repo-data-github A new security vulnerability has been uncovered on GitHub that allows access to data from deleted repositories and forks. This means that sensitive information, such as API keys,...