The evolving landscape of data privacy: Key trends to shape 2025

Incoming laws, combined with broader developments on the threat landscape, will create further complexity and urgency for security and compliance teams. As Data Privacy Week (January 27-31) and Data Protection Day (January 28) approach, it’s the perfect time to spotlight the critical role data protection plays in the success of modern organizations. In fact, privacy and data protection go … More The evolving landscape of data privacy: Key trends to shape 2025

ESET discovers new APT group and its supply chain attack on South Korean VPN service

ESET researchers have discovered a supply-chain attack against a VPN provider in South Korea by a newly discovered and previously undetected China-aligned APT group that ESET has named PlushDaemon. In this cyberespionage operation, the attackers replaced the legitimate installer with one that also deployed the group’s signature implant, which ESET has named SlowStepper — a … More ESET discovers new APT group and its supply chain attack on South Korean VPN service

Under lock and key: Protecting corporate data from cyberthreats in 2025

Data breaches can cause a loss of revenue and market value as a result of diminished customer trust and reputational damage. There were over 3,200 data compromises in the United States in 2023, with 353 million victims, including those affected multiple times, according to the US Identity Theft Resource Center (ITRC). Each one of those individuals … More Under lock and key: Protecting corporate data from cyberthreats in 2025

Europe prepared strategy to protect hospitals from cyberattacks

The European Union is stepping in to help hospitals and healthcare providers combat increasing cyberattacks. According to Politico*, the European Commission has unveiled “action plan” to enhance cybersecurity in the sector, which includes additional funding for securing hospitals’ technical infrastructure, guidance on applying existing rules like the EU’s NIS2 cybersecurity directive, and improved information-sharing. Since … More Europe prepared strategy to protect hospitals from cyberattacks

ESET Research discovers UEFI Secure Boot bypass vulnerability

ESET researchers have discovered a vulnerability, affecting the majority of UEFI-based systems, that allows actors to bypass UEFI Secure Boot. This vulnerability, assigned CVE-2024-7344, was found in a UEFI application signed by Microsoft’s “Microsoft Corporation UEFI CA 2011” third-party UEFI certificate. Exploitation of this vulnerability can lead to the execution of untrusted code during system … More ESET Research discovers UEFI Secure Boot bypass vulnerability