Duncan Riley
Latest from Duncan Riley
Justice Department expands cybersecurity efforts with new NatSec Cyber
The U.S. Department of Justice today announced the creation of a new litigation section that will focus on prosecuting malicious foreign cyber activity. Called the National Security Cyber Section, or NatSec Cyber for short, the new section was designed in response to the findings in Deputy Attorney General Lisa O. Monaco’s Comprehensive Cyber Review in July ...
True Anomaly launches new solutions to enhance cybersecurity in space
Space security company True Anomaly Inc. has today unveiled two new solutions that provide robust environments for high-precision testing and operator training for cybersecurity in space. The new solutions, Digital Range application and On-Orbit Range, merge digital and live elements to offer a unique, comprehensive training and testing platform. The Digital Range application has been built for efficiency and ...
Bitdefender warns of new exfiltration malware targeting remote desktop protocol workloads
Researchers at S.C. Bitdefender SRL today warned of new custom malware actively targeting remote desktop protocol clients to steal data. First noticed in its use as part of a state-sponsored East Asian espionage operation called RedClouds, the server-side implant, dubbed “RDStealer,” monitors RDP connections with client drive mapping enabled, infecting connecting RDP clients with a Logutil backdoor and exfiltrating ...
AI meets email security: Ironscales launches ‘Themis Co-pilot’ beta
Israeli phishing protection startup Ironscales Ltd. today announced the beta launch of a new artificial intelligence tool for Microsoft Outlook designed to empower end-users in threat detection and reporting. Called Themis Co-pilot, the new service is built upon PhishLLM, a proprietary large language model hosted within Ironscale’s infrastructure. Themis Co-pilot is designed to give end-users the necessary tools to ...
Microsoft discloses detailed analysis of Layer 7 DDoS attacks
Microsoft Corp. disclosed Friday that outages that affected its customers earlier this month were caused by a distributed denial-of-service attack launched by a threat actor called Storm-1359. The Layer 7 DDoS attack affected Microsoft services, including Azure, Outlook and OneDrive. A “Layer 7” attack is a form of DDoS that targets the application layer of the internet ...
Russian man arrested for alleged involvement with LockBit ransomware gang
A Russian national has been arrested in Arizona on charges alleging that he was involved in multiple LockBit ransomware attacks against victims in the U.S., Asia, Europe and Africa. The LockBit ransomware gang, which first emerged in 2020, operates on a ransomware-as-a-service model where affiliates use already developed ransomware to execute attacks. In its time, LockBit ...
Clop MOVEit hacking victims now include Department of Energy facilities
The number of victims targeted by the Clop ransomware gang’s targeting of a critical vulnerability in Progress Software Corp.’s MOVEit file transfer software continues to grow, with the revelation today that the victims now include several U.S. government agencies. Although a full list of agencies targeted was not disclosed by Cybersecurity & Infrastructure Agency officials ...
Cranium launches AI Card to streamline compliance and trustworthiness
Artificial intelligence security and trust software firm Cranium.ai Corp. has today announced the launch of Cranium AI Card, a tool designed to help organizations gather and share information about the trustworthiness and compliance of their AI models. AI Card has been designed to address issues of trustworthiness, security and regulatory compliance associated with AI models. The tool offers a transparent and ...
Action1 raises $20M to implement zero-knowledge architecture into its platform
Risk-based patch management startup Action1 Corp. has today announced that it has raised $20 million in new funding for research and development, focusing specifically on implementing zero-knowledge architecture into its platform. Founded in 2018, Action1 pitches itself as the No. 1 risk-based patch management platform for distributed networks. The company’s platform assists organizations in discovering, prioritizing and ...
Valence Security brings AI to SaaS risk analysis and remediation
Cybersecurity startup Valence Security Inc. today announced AI Assistant, a new service integrating generative AI and OpenAI LP technologies into its Collaborative SaaS Security Remediation Platform. The company argues that understanding and managing security for various software-as-a-service applications can be daunting for security teams. The distinctive aspects of each application, such as terminology, permissions, data models and security ...









