SAMA Issues Updated Cybersecurity Framework Requirements for 2024
The Saudi Arabian Monetary Authority has released updated guidelines for financial institutions, introducing new requirements for cloud security and third-party risk management.
Stay informed with the latest cybersecurity news, vulnerability alerts, compliance updates, and threat intelligence from trusted sources worldwide.
Security researchers have identified a critical zero-day vulnerability affecting multiple enterprise VPN solutions. The flaw allows remote code execution and has been actively exploited in the wild. Organizations are urged to apply patches immediately.
The Saudi Arabian Monetary Authority has released updated guidelines for financial institutions, introducing new requirements for cloud security and third-party risk management.
A significant data breach at a major US healthcare provider has exposed sensitive patient information including medical records, Social Security numbers, and insurance details.
Organizations in Saudi Arabia must ensure compliance with the updated NCA Essential Cybersecurity Controls (ECC-2:2024) framework by the upcoming deadline.
A sophisticated new ransomware strain has been identified targeting manufacturing and industrial control systems, with encryption mechanisms that evade traditional detection.
Organizations certified under ISO 27001:2013 must complete their transition to the 2022 version before the deadline to maintain certification.
A critical vulnerability in a widely-used Identity and Access Management platform allows attackers to bypass authentication controls. Patches available.
The National Cyber Security Centre has released version 3.2 of the Cyber Essentials requirements, introducing new controls for cloud services and remote work.
Intelligence agencies have identified a sophisticated APT campaign targeting financial institutions in the Middle East with advanced persistent access techniques.
EU member states begin enforcing the Network and Information Security Directive 2.0, with significant penalties for non-compliance in critical sectors.
A major cloud service provider experienced a significant outage affecting services across multiple regions, highlighting the importance of multi-cloud strategies.
A sophisticated supply chain attack has compromised a widely-used development tool, potentially affecting thousands of downstream applications and organizations.
Subscribe to our daily security briefing and receive curated threat intelligence, vulnerability alerts, and compliance updates directly in your inbox.
Free daily briefing. Unsubscribe anytime.