IT Security & Privacy

Why Governance Tools Miss What Hackers Exploit

SAP systems store sensitive business data, run mission-critical processes, and ensure that operations continue uninterrupted. However, having the SAP GRC product suite or similar governance, risk, and compliance tools does not cover all aspects of system security. Relying on them to keep you safe is a recipe for infiltration.

SoundCloud Data Breach Triggers Service Disruptions & Raises Questions About Incident Response Controls

SoundCloud has confirmed with Bleeping Computer that a recent wave of service outages and access issues stemmed from a security incident that exposed a subset of user data, as the company moved to contain unauthorized access to parts of its infrastructure.

LastPass Fined £1.2 Million After UK Data Breach Exposes 1.6 Million Users

The UK Information Commissioner’s Office (ICO) has fined password manager provider LastPass £1.2 million following a 2022 data breach that exposed the personal information of up to 1.6 million UK users, concluding that the company failed to implement sufficiently robust security measures despite offering a service designed to improve online security.

DORA Reshapes Cyber Testing as Italy Updates TIBER-IT Guide

Italy’s financial regulators are updating the rulebook on how banks, insurers, and other financial institutions stress-test their cyber defenses, as the EU’s Digital Operational Resilience Act moves from theory to day-to-day supervision.

Coupang Leadership Shifts After Major Data Breach Unsettles South Korea

Coupang is facing one of the most consequential cybersecurity crises in South Korea’s recent history, prompting Chief Executive Park Dae-jun to resign as the company works to contain the fallout, the Wall Street Journal first reported.

OpenAI Flags Rising Cyber Threat as Next-Generation Models Advance

OpenAI is cautioning that its next wave of frontier AI systems is on track to reach “high” cybersecurity risk levels, a threshold the company says would meaningfully increase the number of people capable of executing sophisticated cyberattacks. The warning comes in a new internal assessment that was shared with Axios.

AI’s Data Appetite Is Now a Compliance Risk

AI is excellent at both looking confident and eating data like it’s at an all-you-can-eat buffet. And while that’s great for accuracy and shiny demos, it’s a little less great for privacy teams who now have to explain to regulators why a training dataset suddenly includes customer chats, location trails, or that folder someone swore was anonymized.