• $3.5M Nike lawsuit alleges wrongful termination, retaliation and misused funds

    $3.5M Nike lawsuit alleges wrongful termination, retaliation and misused funds

    Former Nike senior project manager Lamar Prince claims in a lawsuit he was fired after speaking out over misused funding within the company.

    Read More

  • Critical Flaws in CocoaPods Expose iOS and macOS Apps to Supply Chain Attacks

    A trio of security flaws has been uncovered in the CocoaPods dependency manager for Swift and Objective-C Cocoa projects that could be exploited to stage software supply chain attacks, putting downstream customers at severe risks. The vulnerabilities allow “any malicious actor to claim ownership over thousands of unclaimed pods and insert malicious code into many…

    Read More

  • CapraRAT Spyware Disguised as Popular Apps Threatens Android Users

    The threat actor known as Transparent Tribe has continued to unleash malware-laced Android apps as part of a social engineering campaign to target individuals of interest. “These APKs continue the group’s trend of embedding spyware into curated video browsing applications, with a new expansion targeting mobile gamers, weapons enthusiasts, and TikTok fans,” SentinelOne security researcher…

    Read More

  • Indian Software Firm’s Products Hacked to Spread Data-Stealing Malware

    Installers for three different software products developed by an Indian company named Conceptworld have been trojanized to distribute information-stealing malware. The installers correspond to Notezilla, RecentX, and Copywhiz, according to cybersecurity firm Rapid7, which discovered the supply chain compromise on June 18, 2024. The issue has since been remediated by Conceptworld as of June 24

    Read More

  • End-to-End Secrets Security: Making a Plan to Secure Your Machine Identities

    At the heart of every application are secrets. Credentials that allow human-to-machine and machine-to-machine communication. Machine identities outnumber human identities by a factor of 45-to-1 and represent the majority of secrets we need to worry about. According to CyberArk’s recent research, 93% of organizations had two or more identity-related breaches in the past year. It…

    Read More

  • New OpenSSH Vulnerability Could Lead to RCE as Root on Linux Systems

    OpenSSH maintainers have released security updates to contain a critical security flaw that could result in unauthenticated remote code execution with root privileges in glibc-based Linux systems. The vulnerability, codenamed regreSSHion, has been assigned the CVE identifier CVE-2024-6387. It resides in the OpenSSH server component, also known as sshd, which is designed to listen for…

    Read More

  • Google to Block Entrust Certificates in Chrome Starting November 2024

    Google has announced that it’s going to start blocking websites that use certificates from Entrust starting around November 1, 2024, in its Chrome browser, citing compliance failures and the certificate authority’s inability to address security issues in a timely manner. “Over the past several years, publicly disclosed incident reports highlighted a pattern of concerning behaviors…

    Read More

  • OHSU board meeting swarmed by union members

    OHSU board meeting swarmed by union members

    Union workers presented a petition calling for no cuts to benefits before the board approved a $5.5B budget.

    Read More

  • OBI CEO and board chair on Oregon’s ‘competitiveness crisis’

    OBI CEO and board chair on Oregon’s ‘competitiveness crisis’

    “Stopping Oregon’s competitive slide will require a commitment by the state’s elected leaders to recognize and address the policies and culture driving it. We can’t think of a better – and more necessary – focus for the 2025 legislative session.”

    Read More

  • Portland’s heavy tax burden called out in new report

    Portland’s heavy tax burden called out in new report

    Tax Foundation finds Portland has highest business taxes and second-highest top marginal rate on wage income in the country.

    Read More