In early January 2025, a breach at PowerSchool, a widely used student information system, exposed data belonging to students, families, and staff across North America. Several […]
In December 2024, attackers began exploiting vulnerabilities in Cleo’s managed file transfer products, and the Clop extortion group claimed responsibility for the resulting data theft. It […]
In early December 2024, cybersecurity agencies including Five Eyes partners published hardening guidance for communications infrastructure in response to the Salt Typhoon telecom intrusions. Alongside the […]
Through late 2024, Bill C-26, Canada’s cybersecurity legislation that includes the Critical Cyber Systems Protection Act, continued its progress through Parliament. The bill is aimed at […]
In early November 2024, it emerged that a suspect linked to the wave of cloud data-theft and extortion campaigns tied to Snowflake customer accounts had been […]
On October 30, 2024, the Canadian Centre for Cyber Security released its National Cyber Threat Assessment for 2025 and 2026. The report named state-sponsored activity from […]
In October 2024, the Internet Archive suffered a data breach exposing user account information, alongside disruptive denial-of-service attacks against its services. A widely loved nonprofit with […]
October is Cybersecurity Awareness Month, and in 2024 both Canadian and international campaigns pushed the same practical basics: use multi-factor authentication, choose strong unique passwords or […]
In late September 2024, a set of vulnerabilities in the CUPS printing system on Linux and Unix-like machines was disclosed, chained together to allow remote code […]