CRA
The Cyber Resilience Act and SaaS: Why Compliance is Only Half the Battle
Ariel Parnes | | Behavioral Monitoring, compliance vs resilience, CRA, Cyber Resilience Act, EU cybersecurity regulation, ftc enforcement, global software regulation, identity abuse, lifecycle security, OAuth token theft, phishing-resistant security, SaaS Security, SaaS threat detection, Salesforce vishing, Salesloft breach, SEC disclosure rules, secure by design, secure development pipelines, shared responsibility, social engineering, Vulnerability Management
The EU’s Cyber Resilience Act is reshaping global software security expectations, especially for SaaS, where shared responsibility, lifecycle security and strong identity protections are essential as attackers increasingly “log in” instead of ...
Security Boulevard
Cybersecurity and Open Source Experts Up In Arms About the CRA
Provisions in the EU's proposed Cyber Resilience Act drew more fire from high-profile cybersecurity and open source technology advocates ...
Security Boulevard
Credential Stuffing Attacks Targeted GCKey, CRA Accounts
David Bisson | | CRA, credential stuffing, GCKey, IT Security and Data Protection, Latest Security News
Malicious actors launched credential stuffing attacks that targeted Canada’s GCKey service and Canada Revenue Agency (CRA) accounts. On August 15, the Treasury Board of Canada Secretariat announced that the Government of Canada ...
Canada Revenue Agency Discloses Credential Stuffing Attack on 5,500 Service Accounts
Alina Bizga | | Canada Revenue Agency, CRA, credential stuffing, credential stuffing attack, Data breach, Data exposure, Digital Privacy, Fraud, Industry News, personal data exposure
A credential stuffing attack targeting Canada Revenue Agency (CRA) accounts has forced the government tax collector to suspend its online services over the weekend. The compromised accounts were linked to the GCKey ...

