Blog

The latest news and developments

Explore a blend of security news, industry developments, and in-depth technical analysis of our services on Secora Consulting's blog. Bookmark this page to stay informed.

Latest Blogs and News

Secora Consulting’s blog is a mixture of news and developments in the security world and technical breakdowns of our services. Bookmark this page to stay informed.

Cybersecurity News

This Week in Cybersecurity: Looking Back at Week 29

This week in cybersecurity, several critical threats were identified across various sectors, involving unauthenticated access, supply chain vulnerabilities, and sophisticated malware deployment. A severe SQL injection flaw in FortiWeb has been identified, enabling full remote code execution, while critical VMXNET3 vulnerabilities in VMware products may allow guest-to-host code execution. Meanwhile, FortiGuard Labs has uncovered the integration of Lcryx ransomware into the H2miner cryptomining botnet, signaling a dangerous evolution in hybrid cyberattacks.

Cybersecurity News

This Week in Cybersecurity: Looking Back at Week 28

This week in cybersecurity has been nothing short of intense, with developments spanning global law enforcement action, large scale data breaches, and sophisticated malware campaigns. Authorities arrested four individuals in connection with a major cyberattack targeting UK retail giants M&S, Co-op, and Harrods, marking a significant breakthrough in an ongoing probe. Meanwhile, Qantas confirmed a breach affecting 5.7 million customers, raising fresh concerns about data protection in the aviation industry.

Cybersecurity News

This Week in Cybersecurity: Looking Back at Week 27

This week brought a wave of high impact incidents and critical updates including a massive third-party breach at Qantas, while a sophisticated cyberattack has targeted none other than the International Criminal Court. Meanwhile, a ransomware assault on a Swiss health foundation has resulted in the exposure of a staggering 1.3 terabytes of sensitive data. On the defense front, Google has rushed out an emergency patch for a Chrome zero-day that is already being exploited in the wild, and Microsoft’s June Patch Tuesday addresses over 70 vulnerabilities, including five actively exploited zero-days.

Cybersecurity News

This Week in Cybersecurity: Looking Back at Week 26

In this weeks cybersecurity news, organisations across sectors, from education to enterprise tech, have been confronted with both new risks and regulatory shifts. In Ireland, the City of Dublin Education and Training Board faces a hefty €125,000 fine after failing to safeguard sensitive student grant data, while the country simultaneously launches a national cybersecurity framework inspired by NIST standards to boost organisational resilience. Meanwhile, vulnerabilities in popular technologies have raised alarm bells worldwide.

Vulnerability

Maximising Your Cybersecurity with the NCSC Cyber Improvement Grant

Organisations that have taken advantage of Enterprise Ireland’s Cyber Security Review Grant have gained a comprehensive assessment of their cybersecurity posture, identified key vulnerabilities, and received a clear roadmap to strengthen their cybersecurity measures. After benefiting from this initial review, your organisation can move forward with the Cyber Improvement Grant to implement these recommendations. With applications closing on July 31st, now is the perfect time to take this next step.

Cybersecurity News

This Week in Cybersecurity: Looking Back at Week 25

This week’s roundup features a diverse range of threats, from the abuse of open-source hacking tools to innovative phishing tactics bypassing two-factor authentication. A staggering 16 billion login credentials have been exposed in what researchers are calling one of the largest data breaches in history, raising serious concerns about credential hygiene and the widespread use of infostealer malware. Ireland’s National Cyber Security Centre has issued a new warning on the growing threat of SMS pumping, while ransomware attacks continue to cause widespread disruption, with supply chain firm Chain IQ and NHS service provider Synnovis both falling victim—impacting data and delaying over 1,100 operations.