README

NIST vulnerability bottleneck underscores fragility of software security
Read more

Changelog: Hello to LockBitSupp and goodbye to Changelog
Read more


Changelog: ArcaneDoor campaign targets Cisco devices
Published by Nathaniel Mott on April 25, 2024
Read more
Welcome to Changelog for 4/25/2024, published by Synack! README senior editor Nathaniel Mott here with all the doom and gloom you need this fine Spring day.


Changelog: Sandworm becomes APT44
Published by Nathaniel Mott on April 18, 2024
Read more
Welcome to Changelog for 4/18/2024, published by Synack! README senior editor Nathaniel Mott here with the week’s leading security news.


NIST vulnerability bottleneck underscores fragility of software security
Published by Robert Lemos on April 12, 2024
Read more
A sudden halt to the ranking of vulnerability severity has left government agencies and some companies without an approved source of ranking and prioritization.


Changelog: Kaspersky is the new TikTok
Published by Nathaniel Mott on April 11, 2024
Read more
Welcome to Changelog for 4/11/2024, published by Synack! README senior editor Nathaniel Mott “enjoying” those April showers and bringing you the top security news of the week.


CISA cyber reporting mandate faces tough road
Published by Shaun Waterman on April 10, 2024
Read more
A coalition of organizations has asked CISA to extend the public comment period on new cyberattack reporting rules proposed in response to CIRCIA.


Changelog: Cyber review board is all bark, no bite on Microsoft
Published by Nathaniel Mott on April 4, 2024
Read more
Welcome to Changelog for 4/4/2024, published by Synack! README senior editor Nathaniel Mott here after a long weekend with the week’s leading security news.


Changelog: The U.S. and U.K. expose APT31
Published by Nathaniel Mott on March 28, 2024
Read more
Welcome to Changelog for 3/28/2024, published by Synack! README senior editor Nathaniel Mott here with the week’s leading security news.


Exploits Explained: ZIP embedding attack on Google Chrome extensions
Published by Malcolm Stagg on March 28, 2024
Read more
Malcolm Stagg recounts the discovery of CVE-2024-0333, a vulnerability in Google Chrome that could have been exploited to install malicious extensions.


Changelog: TikTok is the new Kaspersky
Published by Nathaniel Mott on March 21, 2024
Read more
Welcome to Changelog for 3/21/2024, published by Synack! README senior editor Nathaniel Mott here with a reluctant defense of TikTok following the passage of a bill looking to ban it.