Monthly Archives: May 2024

The Path to SOC 2 Compliance for Startups

I’ve worked for some notable early-stage startup companies that sought to do business with Fortune 500 companies. I clearly remember the challenges of demonstrating how you can protect their customer data. SOC 2 compliance for startups can be a massive undertaking.When you have a compelling solution, as many of CSA’s Startup Members do, you often […]

CISA Alerts Federal Agencies to Patch Actively Exploited Linux Kernel Flaw

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a security flaw impacting the Linux kernel to the Known Exploited Vulnerabilities (KEV) catalog, citing evidence of active exploitation. Tracked as CVE-2024-1086 (CVSS score: 7.8), the high-severity issue relates to a use-after-free bug in the netfilter component that permits a local attacker to elevate […]

Latest Windows 11 Insider build brings changes to Copilot, support for Emoji 15.1 and more

Microsoft today released Windows 11 Insider Preview Build 26227 to the Canary Channel, featuring significant updates to the Copilot experience, expanded emoji support, and a redesigned settings interface for linked devices. Copilot Becomes a Standalone App In a move to streamline user interaction, Microsoft has altered Copilot into a standalone app, now conveniently pinned to […]

Android is updating its Emoji Kitchen, and more new introductions announced

Google announced several new features and updates for Android devices. First, users of Google Messages with RCS Chat can now edit messages for up to 15 minutes after sending. This allows for correcting typos or clarifying messages. Sharing a phone’s hotspot with other devices is also simplified with “Instant Hotspot.” Now, a single tap connects […]

Announcing Windows 11 Insider Preview Build 26227 (Canary Channel)

Hello Windows Insiders, today we are releasing Windows 11 Insider Preview Build 26227 to the Canary Channel. Developers, please note that for a short period of time, we will not be releasing an SDK for builds we flight to the Canary Channel. Changes and Improvements [Copilot in Windows*] As part of this update, we’re also […]

FlyingYeti Exploits WinRAR Vulnerability to Deliver COOKBOX Malware in Ukraine

Cloudflare on Thursday said it took steps to disrupt a month-long phishing campaign orchestrated by a Russia-aligned threat actor called FlyingYeti targeting Ukraine. “The FlyingYeti campaign capitalized on anxiety over the potential loss of access to housing and utilities by enticing targets to open malicious files via debt-themed lures,” Cloudflare’s threat intelligence team Cloudforce One

Cyber Espionage Alert: LilacSquid Targets IT, Energy, and Pharma Sectors

A previously undocumented cyber espionage-focused threat actor named LilacSquid has been linked to targeted attacks spanning various sectors in the United States (U.S.), Europe, and Asia as part of a data theft campaign since at least 2021. “The campaign is geared toward establishing long-term access to compromised victim organizations to enable LilacSquid to siphon data […]

‘Operation Endgame’ Hits Malware Delivery Platforms

Law enforcement agencies in the United States and Europe today announced Operation Endgame, a coordinated action against some of the most popular cybercrime platforms for delivering ransomware and data-stealing malware. Dubbed “the largest ever operation against botnets,” the international effort is being billed as the opening salvo in an ongoing campaign targeting advanced malware “droppers” […]