Visualização normal

Hoje — 8 de Setembro de 2026Cybersecurity News
  • ✇Cybersecurity News
  • CVE-2026-80172 (CVSS 9.8): Dell SCG Flaw Grants Unauthorized Access Do Son
    A Dell Secure Connect Gateway vulnerability (CVE-2026-80172, CVSS 9.8) grants unauthorized access via forged admin tokens. Patch SCG now. Related Posts: September 2026 SAP Security Patch Day Fixes Critical Flaws ASUS Patches Control Center Express and Armoury Crate Flaws Public PoC Disclosed for ZcopyReaper Linux Vulnerability (CVE-2026-43502) The post CVE-2026-80172 (CVSS 9.8): Dell SCG Flaw Grants Unauthorized Access appeared first on Daily CyberSecurity.
     
Antes de ontemCybersecurity News
  • ✇Cybersecurity News
  • Sakura Internet Breach Exposes 1.36 Million Customer Accounts Do Son
    Sakura Internet disclosed a breach of its customer management system affecting 1.36 million accounts, though passwords were hashed and salted and no ransom was demanded. Related Posts: Leaked Corporate AWS Keys Expose Full Admin Rights Kimi Work Silently Uploads Five Recent Agent Sessions With Feedback Reports SafePal Data Breach Exposes Order Information of 39,798 Customers The post Sakura Internet Breach Exposes 1.36 Million Customer Accounts appeared first on Daily CyberSecurity.
     
  • ✇Firewall Daily – The Cyber Express
  • Taiwan Flags Five Major Cyber Risks After 726 Security Incidents in 2025 Ashish Khaitan
    Taiwan’s digital security authorities have identified five major areas of concern following hundreds of reported cybersecurity incidents involving government agencies in 2025. According to Taiwan’s Ministry of Digital Affairs, the country recorded 726 cybersecurity incidents this year, highlighting ongoing Taiwan cyber risk challenges tied to ransomware, fake software, supply chain weaknesses, and social engineering attacks. The Administration for Cyber Security said the total number of repor
     

Taiwan Flags Five Major Cyber Risks After 726 Security Incidents in 2025

Taiwan cyber risk

Taiwan’s digital security authorities have identified five major areas of concern following hundreds of reported cybersecurity incidents involving government agencies in 2025. According to Taiwan’s Ministry of Digital Affairs, the country recorded 726 cybersecurity incidents this year, highlighting ongoing Taiwan cyber risk challenges tied to ransomware, fake software, supply chain weaknesses, and social engineering attacks. The Administration for Cyber Security said the total number of reported cases declined slightly compared to 2024, with 29 fewer incidents recorded year over year. However, officials warned that attack methods continue to expose weaknesses across government systems and digital infrastructure.

Cybersecurity Incidents in Taiwan 

As reported by CNA and cited by UDN, most cybersecurity incidents were categorized as low-level threats under Taiwan’s classification system. However, authorities stressed that even minor breaches can create broader operational and national security concerns if left unresolved.  Under Taiwan’s cybersecurity framework, incidents are divided into four levels based on their impact on confidentiality, integrity, and system availability. Level 1 incidents accounted for 87.33% of all reports in 2025, while Level 2 incidents represented 9.78%. Level 3 incidents made up 2.89% of the total. No Level 4 incidents — the most severe category — were reported during the year.  Unauthorized access remained the most common issue among reported cybersecurity incidents, accounting for 68.6% of all cases. Equipment-related failures represented 15.43% of incidents, while denial-of-service attacks accounted for 4.96%. Website attacks made up another 2.48% of reported cases.  Following a review of cyber threat patterns and incident reports from government agencies, Taiwan’s Administration for Cyber Security identified five major Taiwan cyber risk trends that officials believe require immediate attention. 

Fake Messaging Apps Raise Taiwan Cyber Risk

One of the biggest cybersecurity risks highlighted by the administration involved fake communication software distributed through unofficial websites. According to UDN, some users unknowingly downloaded counterfeit messaging applications after replacing old devices or setting up new computers. Authorities said these downloads allowed attackers to install backdoor malware capable of compromising systems and sensitive information. The administration urged government agencies to implement stricter procedures for system modifications and software installations. Officials recommended that all software, hardware, and application installations receive prior approval before being used within agency systems. The administration warned that unofficial downloads continue to create major Taiwan cyber risk exposure across public sector networks.

Ransomware Tactics Become More Sophisticated

The second major concern centered on ransomware groups using customized software drivers to infiltrate systems and evade security detection tools. Authorities noted that attackers are becoming more advanced in bypassing conventional endpoint security measures. To reduce the likelihood of future cybersecurity incidents, the administration advised agencies to regularly scan websites for vulnerabilities, apply timely fixes, deploy web application firewalls, and ensure endpoint protection software remains updated. The ministry emphasized that outdated security tools and delayed patch management continue to increase Taiwan's cyber risk across both government and critical infrastructure networks.

Weak Supply Chain Security Creates Additional Exposure 

Supply chain vulnerabilities were identified as the third major cybersecurity threat. Officials cited one case in which a maintenance contractor installed remote desktop software on a website server. Hackers later gained access to the system after successfully guessing the password linked to the remote access tool.  The incident highlighted growing concerns about third-party vendors and contractor oversight. According to the administration, external maintenance work can create hidden entry points for cybercriminals if agencies fail to maintain strict security controls. The administration said agencies should strengthen supervision of vendors, improve password management practices, and enforce tighter restrictions on remote access systems to reduce Taiwan's cyber risk tied to supply chain operations. 
  • ✇Security Boulevard
  • TikTok Says No to End-to-End Encryption: Here’s Why That’s a Big Deal Tom Eston
    In a move that bucks the entire industry trend, TikTok has confirmed it will not implement end-to-end encryption (E2EE) for direct messages on its platform — arguing that E2EE would make users less safe. We break down what’s really going on: the child safety argument, the privacy counterargument, the geopolitical questions surrounding ByteDance, and what […] The post TikTok Says No to End-to-End Encryption: Here’s Why That’s a Big Deal appeared first on Shared Security Podcast. The post TikTok S
     

TikTok Says No to End-to-End Encryption: Here’s Why That’s a Big Deal

9 de Março de 2026, 01:00

In a move that bucks the entire industry trend, TikTok has confirmed it will not implement end-to-end encryption (E2EE) for direct messages on its platform — arguing that E2EE would make users less safe. We break down what’s really going on: the child safety argument, the privacy counterargument, the geopolitical questions surrounding ByteDance, and what […]

The post TikTok Says No to End-to-End Encryption: Here’s Why That’s a Big Deal appeared first on Shared Security Podcast.

The post TikTok Says No to End-to-End Encryption: Here’s Why That’s a Big Deal appeared first on Security Boulevard.

💾

❌
❌