Skip to main content

Tag: supply chain

873 articles

Erlang/OTP SSH daemon Critical: Urgent Must-Have Fix

Erlang/OTP SSH daemon Critical: Urgent Must-Have Fix

A critical unauthenticated RCE in the Erlang/OTP SSH daemon lets attackers run commands on vulnerable systems, putting telecom, messaging and network appliances at immediate risk. Apply vendor patches, isolate exposed SSH services, and scan for signs of compromise right away.

Analyst 207
Kaseya ransomware: Stunning Risky State-Linked Claims

Kaseya ransomware: Stunning Risky State-Linked Claims

Was the July 2021 Kaseya REvil attack just criminal profit-seeking or something far more dangerous—potentially state-enabled? New evidence presented at DEF CON 33 suggests probable Russian government involvement, a claim that would radically change how governments, businesses, and MSPs respond to future supply-chain cyberattacks.

Analyst 207
Modular Handgun System: Must-Have or Risky Budget Cut

Modular Handgun System: Must-Have or Risky Budget Cut

A sudden drop to $6 million for the Army’s Modular Handgun System raises fresh doubts about whether this is a harmless rephasing or the start of a slower, riskier rollout that could complicate training, sustainment, and industry planning. With thousands of pistols already fielded and safety questions lingering, troops and lawmakers deserve clear timelines and transparency so modernization doesn’t get derailed by short-term budget juggling.

Analyst 207
Click & Collect Service: Must-Have, Restored but Risky

Click & Collect Service: Must-Have, Restored but Risky

M&S has reopened Click & Collect, so customers can get back to the convenient, cost-savvy shopping they love. But with some services still lagging after the cyber attack, rebuilding trust and boosting security is now essential.

Analyst 207
Lenovo Webcam Vulnerability: Stunning BadUSB Threat

Lenovo Webcam Vulnerability: Stunning BadUSB Threat

Researchers have discovered that some Lenovo webcams on Linux can be turned into BadUSB devices that inject keystrokes remotely — a chilling reminder that hardware, not just software, can be weaponized. This wake-up call means users and manufacturers alike must take hardware security seriously before trusting everyday devices.

Analyst 207
New Supply Chain Vulnerability: Unpacking the Risks Ahead

New Supply Chain Vulnerability: Unpacking the Risks Ahead

As data becomes the new gold, a startling revelation unfolds: Microsoft’s collaboration with Chinese engineers to manage the Defense Department’s computer systems raises urgent questions about our national security. Dive into the risks that could leave our most sensitive information vulnerable to espionage!

Analyst 207
supply chain vulnerability: Harrowing Risky Threat

supply chain vulnerability: Harrowing Risky Threat

ProPublica’s reporting reveals a startling weak link: engineers in China maintaining U.S. Defense Department systems create a human-powered supply chain vulnerability that could be exploited by adversaries. It’s time for stricter oversight, transparency, and technical safeguards so efficiency doesn’t come at the cost of national security.

Analyst 207
npm package malware: Must-Have Best Defenses

npm package malware: Must-Have Best Defenses

Think a routine dependency update is harmless? The recent npm malware attack—where phishers stole maintainer tokens to publish malicious versions of five popular packages—proves supply-chain trust can be shattered and why maintainers, consumers, and registries must act now to enforce 2FA, rotate tokens, and verify publish provenance.

Analyst 207
Retail cybersecurity threats: Essential Best Defenses

Retail cybersecurity threats: Essential Best Defenses

Retailers are now prime targets for attacks on payment systems, customer data, and supply chains — this guide explains why the risk is rising and gives practical, prioritized defenses you can implement now to protect revenue, reputation, and customers.

Analyst 207
Maritime security: Must-Have Strategies for Best Defense

Maritime security: Must-Have Strategies for Best Defense

Ships and ports keep our world moving, but rising threats—from cyberattacks to piracy—mean smarter, layered defenses and stronger collaboration are no longer optional but essential.

Analyst 207
Ukrainian hackers drone network: Stunning Strategic Win

Ukrainian hackers drone network: Stunning Strategic Win

If confirmed, the reported takedown of Russia’s Gaskar drone network by Ukrainian hackers shows how a small cyber team can cripple supply chains and reshape battlefield math without firing a shot. That stunning, risky move forces allies and adversaries to rethink deterrence, escalation, and the rules of modern war.

Analyst 207
Hacking Trains: Stunning Dangerous Risks Revealed

Hacking Trains: Stunning Dangerous Risks Revealed

What if a cheap radio signal could throw a freight train off schedule—or worse, off its rails? Our decades-old, unencrypted rail tech makes that frighteningly possible, and without upgrades like encryption, mutual authentication, and better monitoring, lives, supply chains, and the economy are all at risk.

Analyst 207
Manufacturing Must-Have: Best Defense Against Ransomware

Manufacturing Must-Have: Best Defense Against Ransomware

Manufacturing is under urgent threat: KnowBe4 projects 47% of expected 2024 breaches will be ransomware, and legacy OT, weak segmentation, and untrained staff make factories prime targets. Act now—harden networks, train teams, and strengthen backups to protect production, revenue, and supply chains before downtime costs skyrocket.

Analyst 207
5G cybersecurity Must-Have: Best Protection Guide

5G cybersecurity Must-Have: Best Protection Guide

As 5G spreads, new cyber risks multiply—NCCoE’s latest white paper lays out practical, must-have principles to design secure 5G networks from the ground up. Whether you’re a tech leader or policymaker, this guide helps you balance innovation and safety to protect devices, data, and critical infrastructure.

Analyst 207
Ransomware Drives 47% of 2024 Manufacturing Cyber Breaches

Ransomware Drives 47% of 2024 Manufacturing Cyber Breaches

Ransomware attacks now fuel nearly half of all manufacturing cyber breaches in 2024, threatening not just production lines but national security and global supply chains. Discover why this surge puts the backbone of our economy on high alert—and what it means for the future of manufacturing.

Analyst 207
North Korean Hackers Intensify Campaign with New Malware Loader

North Korean Hackers Intensify Campaign with New Malware Loader

North Korean hackers have taken their game to a new level, sneaking a dangerous malware loader into the trusted npm registry—putting thousands of developers and organizations at risk without them even knowing it. Stay ahead of the threat that’s shaking the very foundation of software supply chains worldwide.

Analyst 207
Ingram Micro Resumes Partial Orders After Ransomware Attack

Ingram Micro Resumes Partial Orders After Ransomware Attack

Ingram Micro is cautiously reopening its order lines after a crippling ransomware attack, but long waits and uncertainty remind us just how fragile our global tech supply chains really are.

Analyst 207
M&S Chair Addresses Ransomware Attack Amid Payment Speculation

M&S Chair Addresses Ransomware Attack Amid Payment Speculation

When ransomware strikes a retail giant like M&S, the fallout is more than just operational—it’s a wake-up call about our digital vulnerabilities. Chairman Archie Norman’s recent remarks peel back the curtain on their response, leaving us questioning what really happens behind the scenes in cyber crises.

Analyst 207
NCCoE Cybersecurity Insights for National Small Business Week

NCCoE Cybersecurity Insights for National Small Business Week

Wondering how to protect your small business from cyber threats that could shut you down overnight? Discover practical, easy-to-follow cybersecurity strategies from the experts at NCCoE to keep your business safe and thriving.

Analyst 207
France : Villepin, un pied dans l’intelligence économique

France : Villepin, un pied dans l’intelligence économique

Découvrez comment Dominique de Villepin, figure politique française, allie vision stratégique et intelligence économique pour influencer l’avenir de la France.

Analyst 207
Security Alert: Malicious Pull Request Affects Over 6,000 Developers Through Vulnerable Ethcode VS Code Extension

Security Alert: Malicious Pull Request Affects Over 6,000 Developers Through Vulnerable Ethcode VS Code Extension

Security Alert: A malicious pull request targets over 6,000 developers via the vulnerable Ethcode VS Code extension. Update your security measures now.

Analyst 207
Ingram Micro Operations Disrupted by Ransomware Attack

Ingram Micro Operations Disrupted by Ransomware Attack

Ingram Micro faces significant operational disruption following a ransomware attack, impacting services and supply chains globally.

Analyst 207
IT Giant Ingram Micro Reveals Ransomware Breach

IT Giant Ingram Micro Reveals Ransomware Breach

Ingram Micro announces a ransomware breach, revealing critical security vulnerabilities and potential impacts on its operations and clients.

Analyst 207
Ingram Micro outage caused by SafePay ransomware attack

Ingram Micro outage caused by SafePay ransomware attack

Ingram Micro faces a significant outage due to a SafePay ransomware attack, disrupting services and raising concerns about cybersecurity vulnerabilities.

Analyst 207