NIBS (credit image/Pixabay/ Ryan McGuire)Last week was a bumper week for reports of data breaches. Breach news aggregation site Breachsense, lists 150 breaches in the last seven days. The majority of entries do not say how much data was stolen. However, based on what is listed, it will be in the 100s of terabytes.

Cryptocurrency firm Bybit claims $1.4 billion in Ethereum has been stolen by unnamed cybercriminals. If proven, it will be the biggest cryptocurrency theft in history. However, with over $20 billion in assets, the company has promised that no customers will be out of pocket.

In other news, Pangea launched AI Guard, Prompt Guard, and a 3-level escape room challenge with US$10,000 as prize money. The two new products will sit alongside the company’s existing AI Access Control and AI Visibility tools, creating a larger suite of AI guardrails.

Sectigo launched Sectigo Certificates as a Service (CaaS) for Partners. The new service will enable its partners to certificate lifecycle management and domain validation procedures using a single API. The announcement is the latest service available to partners to help improve their services by leveraging the Sectigo platform.

Sonar, a leading provider of code quality and code security solutions, has acquired AutoCodeRover. AutoCodeRover was founded by researchers from the National University of Singapore to help enterprises and developers maintain reliable and performant software systems through autonomous program improvement.

Sama has launched Agentic Capture, describing it as a feedback framework for multi-modal agentic AI. It sits on the Sama Platform, providing insight and reporting that enable a deeper understanding of the behaviour of AI agents and their impact on model goals.

BlueVoyant

BlueVoyant has been named by CRN to the prestigious Security 100 list for the fifth consecutive year. This list highlights leading IT security vendors that are committed to collaborating with channel partners to keep businesses secure from cyber threats.

Michael Conley, BlueVoyant’s chief revenue officer. “BlueVoyant continues to be channel-first, and to prioritize enabling partners to deliver holistic cyber defense to enterprises across the globe. Together, we continue to deliver next-generation cybersecurity that mitigates risks in a cost-effective manner.”

Dragos

Dragos, Inc., has been named a Leader in the first Gartner Magic Quadrant for CPS (Cyber-Physical Systems) Protection Platforms. Gartner evaluated 17 vendors against 15 criteria on two axes: Ability to Execute and Completeness of Vision.

Jodi Schatz, Chief Product Officer, Dragos, said, “We believe, this recognition underscores Dragos’s commitment to helping customers secure their OT and ICS environments with the most advanced and effective OT-specific cybersecurity technology and threat intelligence available.

Europol

Europol published a new report, Assessing Technologies in Law Enforcement: A Method for Ethical Decision-Making, providing law enforcement agencies with a structured approach to evaluating new technologies while upholding fundamental rights and public trust.

Developed by the Strategic Group on Technology and Ethics under the European Clearing Board, with support from Europol’s Innovation Lab, the report sets out a seven-step ethical assessment method to help law enforcement navigate the challenges of digital transformation. It aims to ensure that the adoption and use of new technologies align with core values such as transparency, fairness, privacy and accountability.

FBI

The Federal Bureau of Investigation (FBI), Cybersecurity and Infrastructure Security Agency (CISA), and the Multi-State Information Sharing and Analysis Center (MS-ISAC) released a joint advisory. It provides ransomware IOCs and TTPs related to the Ghost (Cring)— (“Ghost”)—ransomware.

It gives a range of mitigations organisations should take including maintaining regular system backups that are known-good and stored offline or are segmented from source systems. It states that Ghost ransomware victims whose backups were unaffected by the ransomware attack were often able to restore operations without needing to contact Ghost actors or pay a ransom.

noyb

In March 2023, noyb filed complaints against several German political parties about microtargeting during the 2021 elections. It says the CDU, AfD, SPD, Bündnis 90/Die Grünen, Die Linke and the Ecological Democratic Party illegally used political microtargeting to attract voters. With the 2025 Election, the parties have repeated that targeting due to a lack of action by the competent Data Protection Authorities.

WSO2

WSO2Con 2025 will take place in Barcelona between March 18 and March 20. The company has announced that it will focus on empowering enterprises to embrace Platformless Modernization. The conference will showcase real-world strategies, expert insights, and innovations that simplify development, accelerate digital transformation, and future-proof IT infrastructures.

Keynotes, customer stories and technical discussions during the three-day event will explore and deep-dive into how enterprises can transform digital innovation by eliminating the complexities of traditional platforms either by adopting an enterprise-grade internal developer platform or leveraging software-as-a-service offerings to build your own.

Security news from the week beginning 10 February 2025

LEAVE A REPLY

Please enter your comment!
Please enter your name here