Latest Publications

Share:

F5 Security Incident: BIG‑IP Source Code Theft Spurs Urgent Actions

On October 15, application security vendor F5, Inc. disclosed that a highly sophisticated nation-state threat actor maintained long-term, persistent access to certain F5 systems. The attackers exfiltrated portions of BIG-IP1...more

On-Premises Oracle EBS Systems at Risk Due to CL0P Exploit

A recent campaign by the CL0P ransomware group has targeted on-premises, customer-managed Oracle E-Business Suite (EBS) systems, resulting in the potential for widespread data exfiltration and extortion attempts. The...more

Colorado Tightens Rules on Minors’ Online Data—Are You Ready for October 1?

Effective October 1, 2025, Colorado Senate Bill (SB) 24-041 significantly amends the Colorado Privacy Act (CPA) to impose heightened obligations on entities processing personal data of minors—defined as individuals under 18...more

BRICKSTORM Malware Campaign: What You Need To Know

What’s Happening: Recent investigations by leading threat intelligence and incident response teams have identified a sophisticated and persistent cyber campaign leveraging the BRICKSTORM malware, attributed to UNC5221 and...more

One to Watch: Maryland Privacy Law Effective October 1, 2025

The Maryland Online Data Privacy Act (MODPA) is set to take effect on October 1 and marks a significant shift in how personal data is protected at the state level. Falling in line with other states’ privacy laws, Maryland’s...more

Automated Decision-Making Under the Microscope: CPPA Finalizes New CCPA Rules

On July 24, 2025, the California Privacy Protection Agency (CPPA) Board unanimously approved a comprehensive set of final regulations under the California Consumer Privacy Act (CCPA), introducing significant new compliance...more

UPDATE: Organizations Using the Salesloft Drift AI Chat Agent Must Check It for Compromise

On August 28th, Mandiant issued an update to its previous Salesloft Drift advisory. Therein, Mandiant discussed that Salesloft issued a security notification on Aug. 26 regarding its Drift application. At that time, it...more

Salesforce Users: Organizations Using the Salesloft Drift AI Chat Agent with Salesforce Must Check Their Presence for Compromise

Salesloft issued a security notification on August 26 regarding its Drift application. It appears to be a broad opportunistic attack on Salesloft/Drift instances integrated with Salesforce tenants. Salesloft issued updates...more

Active and Critical Security Concern for SharePoint

On July 20, 2025, Microsoft and the Cybersecurity and Infrastructure Security Agency (CISA) issued urgent warnings about new, actively exploited vulnerabilities in Microsoft SharePoint Server. These vulnerabilities, known as...more

FTC Finalizes Updates to COPPA Rule: What You Need To Know

On April 22, 2025, the Federal Trade Commission (FTC) published final updates to the Children’s Online Privacy Protection Act Rule (COPPA Rule). The final COPPA Rule goes into effect on June 23, 2025, 60 days after its...more

California Attorney General Announces Enforcement Sweep on Location Data Collection

On March 10, 2025, the Office of the Attorney General of California (CAAG) announced an enforcement sweep of the California Consumer Privacy Act (CCPA) focused on the location data industry. Attorney General Rob Bonta stated...more

NIST Releases Cybersecurity Framework 2.0

The National Institute of Science and Technology (NIST) has released NIST Cybersecurity Framework (2.0) (Framework 2.0). NIST released two earlier versions of the Framework for Improving Critical Infrastructure Cybersecurity...more

12 Results
 / 
View per page
Page: of 1

"My best business intelligence, in one easy email…"

Your first step to building a free, personalized, morning email brief covering pertinent authors and topics on JD Supra:
*By using the service, you signify your acceptance of JD Supra's Privacy Policy.
- hide
- hide