The official Twitter feed for all things IT security. A CyberRisk Alliance Resource.

NYC
Compromised MemOS packages on npm and PyPI spread cross-platform malware that steals developer credentials and may use stolen tokens to compromise more packages, @SocketSecurity reported. #cybersecurity #CISO #infosec bit.ly/4hdOXRQ
1
3
5
2,456
ShinyHunters claims it stole 2 TB of sensitive data on thousands of current and former FBI agents. The FBI is investigating, but the breach claims remain unconfirmed. #cybersecurity #CISO #infosec bit.ly/4dRqRKg
1
201
Law enforcement can disrupt hacker infrastructure, but OT security starts with the devices. Manufacturers and operators must build trust across the entire device lifecycle, says @OmniTrust_TLM's David Sequino in this op-ed. #cybersecurity #CISO #infosec bit.ly/4h87L4O
1
529
#AI is becoming critical infrastructure without the designation. In this op-ed, @rubrikInc's Travis Rosiek argues the U.S. must act now while prioritizing resilience, containment and rapid recovery. #cybersecurity #CISO #infosec bit.ly/3T4gSdJ
673
The @CISAgov is pushing the CVE program into a new “Quality Era” as #AI helps drive vulnerability volumes higher, focusing on better governance, data and actionable records. #cybersecurity #CISO #infosec bit.ly/3Ti2ej3
1
3
937
AI agents are expanding the attack surface faster than security teams can track them. Continuous discovery and runtime controls can help rein in shadow #AI without blocking adoption, @F5's Kunal Anand said in a recent blog post. #cybersecurity #infosec bit.ly/3T2jFUJ
1
2
788
#Ransomware groups are exploiting a critical TeamCity flaw, putting CI/CD pipelines at risk, the @CISAgov warned. Experts urge teams to patch, rotate credentials and check for compromise. #cybersecurity #CISO #infosec bit.ly/4hbeWcx
1
2
944
Compromised MemOS packages on npm and PyPI spread cross-platform malware that steals developer credentials and may use stolen tokens to compromise more packages, @SocketSecurity reported. #cybersecurity #CISO #infosec bit.ly/4hdOXRQ
1
2
4
2,179
APIs were built for predictable applications. #AI agents change the equation. Financial firms need stronger identity, permissions and guardrails before agents act at machine speed, says @viewtrade's Sergei Lishchenko in this op-ed. #cybersecurity #infosec bit.ly/4yalfD6
3
2
801
ShinyHunters claims it stole 2 TB of sensitive data on thousands of current and former FBI agents. The FBI is investigating, but the breach claims remain unconfirmed. #cybersecurity #CISO #infosec bit.ly/4dRqRKg
1
2
923
Just 13% of network segments with OT devices are OT-only, @Forescout found. Poor segmentation can give attackers a path from compromised IT or IoT devices into critical systems. #cybersecurity #CISO #infosec bit.ly/4yaVDWD
1
2
602
Trump plans an “AI Force” and new AI czar as security experts call for guardrails, accountability and clearer rules for increasingly autonomous #AI systems. #cybersecurity #CISO #infosec bit.ly/4xFY6Yh
1
493