A Fifth of Sunburst Backdoor Victims from Manufacturing Industry

A Fifth of Sunburst Backdoor Victims from Manufacturing Industry

Nearly a fifth of organizations hit by the Sunburst backdoor emanating from the SolarWinds supply chain attack are from the manufacturing sector, a new analysis from Kaspersky has revealed. While researchers have already uncovered technical details of the Sunburst backdoor that was embedded in the SolarWinds incident late last year, information of the full impact of the attack is still being investigated. It has been officially confirmed that around 18,000 users may have installed backdoor…

Read More

Best practices in applying MITRE ATT&CK to your organizational security

Best practices in applying MITRE ATT&CK to your organizational security

Best practices in applying MITRE ATT&CK to your organizational security | 2021-01-29 | Security Magazine This website requires certain cookies to work and uses other cookies to help you have the best experience. By visiting this website, certain cookies have already been set, which you may delete and block. By closing this message or continuing to use our site, you agree to the use of cookies. Visit our updated privacy and cookie policy to learn…

Read More

Identifying data terms can improve cybersecurity efficiency

Identifying data terms can improve cybersecurity efficiency

The term “data” is vague. Knowing the types of data helps companies protect themselves and better recover from a cyberattack. Image: Getty Images/iStockphoto You may know where your data is, but do you also know what the data consists of? “Imagine you’re at a party. You ask someone you’ve just met what they do for a living, and they answer: ‘I work in data,’” said Sky Cassidy, CEO of MountainTop Data, in an email interview….

Read More

#DataPrivacyDay: Organizations Must Increase Focus on Data Privacy in 2021

#DataPrivacyDay: Organizations Must Increase Focus on Data Privacy in 2021

Organizations must be far more focused on data privacy issues this year, according to a panel of experts speaking during the Spirion webinar Customer Data Privacy 2021: It’s No Longer Just Business, It’s Personal. The panel began by setting out the trends that have pushed data privacy issues to the fore over recent years. These include the growth and fragmentation of data privacy legislation, both in the US and across the world, which has expanded…

Read More

The Rising Tide of Security Threats in The Industrial Internet of Things

The Rising Tide of Security Threats in The Industrial Internet of Things

By Don Schleede, Information Security Officer at Digi International Throughout Cyber Security Awareness Month in October, many organizations shared their thoughts on the state of cybersecurity and reflected on the processes and steps that can improve it. However, the discussion largely focused on protecting end-users rather than building security into networks and devices from a systemic perspective. In addition, through its theme of “If You Connect It, Protect It,” however, Cybersecurity Awareness Month has also…

Read More

66% of Workers Risk Breaching GDPR by Printing Work-Related Docs at Home

66% of Workers Risk Breaching GDPR by Printing Work-Related Docs at Home

Two-thirds of remote workers risk potentially breaching GDPR guidelines by printing out work-related documents at home, according to a new study from Go Shred. The confidential shredding and records management company discovered that 66% of home workers have printed work-related documents since they began working from home, averaging five documents every week. Such documents include meeting notes/agendas (42%), internal documents including procedure manuals (32%), contracts and commercial documents (30%) and receipts/expense forms (27%). Furthermore, 20% of…

Read More

How to show an ROI on cybersecurity spends

How to show an ROI on cybersecurity spends

It’s not easy to justify cybersecurity spends based on financial gains. Read tips on how to improve the odds. anyaberkut, Getty Images/iStockphoto One of the toughest jobs that cybersecurity professionals face is convincing C-suite executives there is an actual Return On Investment (ROI) from cybersecurity spends. There are ways to eliminate the ROI disconnect between the C-suite and the IT department, says the author of the Hitachi Systems Security blog Cybersecurity Budgeting 101: How to…

Read More

Apprenticeships Highlighted as Potential Solution to Cyber-Skills Crisis

Apprenticeships Highlighted as Potential Solution to Cyber-Skills Crisis

Offering apprenticeships could help to encourage more young people into the cybersecurity sector, alleviating skills shortages, according to a new poll run by Infosecurity Europe. The region’s top cybersecurity event, held annually by Infosecurity publisher Reed Exhibitions, asked its Twitter followers for their thoughts on the ongoing skills crisis in the industry. Some 43% argued that apprenticeships, in which trainees learn on-the-job whilst studying for a formal qualification, would be a good fit for a…

Read More

Delivery Biz Exposes 400 Million Records in Privacy Snafu

Delivery Biz Exposes 400 Million Records in Privacy Snafu

A popular south Asian delivery company exposed 400 million records containing customers’ personal information after misconfiguring an Elasticsearch server, according to researchers. A team from reviews site Safety Detectives found the 200GB trove during a simple IP address check on specific ports. It was left wide open with no password protection or encryption, meaning anyone with the server’s IP address could have accessed the database. The team soon traced the leak back to Bykea, a…

Read More

US Breach Volumes Fell 19% in 2020 as Ransomware Surges

US Breach Volumes Fell 19% in 2020 as Ransomware Surges

The number of publicly reported US data breaches and leaks last year dropped 19% as attackers continued to move away from mass theft of customer data to more lucrative tactics like ransomware, according to a leading non-profit. The Identity Theft Resource Center (ITRC) compiled its annual report from company announcements, mainstream news reports, government agencies, recognized security firms and researchers, and other non-profits. In total, it recorded 1108 incidents, down by nearly a fifth on…

Read More
1 2,425 2,426 2,427 2,428 2,429 2,548