Duncan Riley
Latest from Duncan Riley
Cisco Talos warns of wider security implications following Snowflake breach
A new report released today by Cisco Talos is warning of the implications of the recent Snowflake Inc.-related cloud data platform breach and how the comprised accounts highlight the vulnerabilities inherent in cloud environments. The Snowflake breach involved attackers using stolen login credentials to infiltrate customer accounts. The credentials were not protected by multifactor authentication, ...
Background check firm KarmaCheck raises $45M to fuel development and growth
Background checks, credentialing and compliance software company KarmaCheck Inc. today announced that it has raised $45 million in new funding to accelerate the development of its technology platform and expand into new industry segments. Founded in 2019 by Eric Ly, one of the co-founders of LinkedIn, KarmaCheck pitches its offering as reimagining background checks and ...
Jana Partners acquires stake in Rapid7, reportedly pushes for sale of company
Activist investor Jana Partners LLC has taken a stake in cybersecurity solutions provider Rapid7 Inc. and is reportly planning to push the company to sell itself. Jana’s managing partner, Scott Ostfelf, unveiled the investment today and, while not saying how many shares the investment firm had acquired, described Jana’s shareholding as “significant.” The Wall Street ...
Supply chain attack compromises 100,000 websites via polyfill.io domain takeover
About 100,000 sites have potentially been compromised in a supply chain attack following an alleged Chinese firm’s takeover of a popular open-source library. The compromise involved the acquisition of polyfill.io, a domain name linked to the open-source Polyfill project, in February. Polyfill.io is a service that automatically provides the necessary polyfills — pieces of code ...
Arctic Wolf report reveals 70% of organizations targeted by BEC attacks in past year
A new report out today from managed cybersecurity services company Arctic Wolf Networks Inc. finds a significant increase in business email compromise attacks, with 70% of all organizations reportedly targeted by BEC attacks in the last 12 months. The 2024 Arctic Wolf Trends report, based on a survey of its customers and internal data, found ...
CData raises $350M in growth capital to enhance data connectivity solutions
Data access and connectivity solutions company CData Software Inc. today announced that it has raised about $350 million in growth capital to accelerate its investments in building innovative data integration solutions for customers. Founded in 2016, CData offers data integration solutions for real-time access to online on on-premises applications, databases and web application programming interfaces. ...
Google intensifies efforts against wide-reaching China-linked influence operation
Google LLC’s Threat Analysis Group today shared insights into how it is taking on prolific influence operation actor DRAGONBRIDGE, a “spammy influence network” allegedly linked to China with a presence across multiple platforms. DRAGONBRIDGE, also known as “Spamouflage Dragon,” was first highlighted by Google TAG in January 2023. The group is known for producing a high ...
Coder secures $35M to expand global footprint and enhance cloud development tools
Remote development platform company Coder Technologies Inc. announced today that it has raised $35 million in new funding to broaden its open-source footprint, evolve cloud development environments and expand globally. Founded in 2017, Coder provides open-source tools and an enterprise platform aimed at making it easier to configure, secure and scale development environments. The company’s mission is ...
Rocketlane raises $24M to expand professional services automation and development efforts
Customer onboarding and professional services automation platform company Rocketlane Corp. announced today that it has raised $24 million in new funding to expand its operations and development efforts. Founded in 2020, Rocketlane offers a platform for collaborative customer onboarding and professional services automation designed to streamline project management, enhance team collaboration and improve overall customer ...
Cloudflare AppSec report finds denial-of-service and bot attacks dominate web threat landscape
A new report from content delivery network provider Cloudflare Inc. today warns of a rapid rise in web threats dominated by distributed denial-of-service attacks, bot traffic and rapid zero-day vulnerability exploitation. The State of Application Security 2024 report is based on the analysis of HTTP traffic patterns observed between April 1, 2023, and March 31 this year. ...