US Agencies and FireEye were hacked with a supply chain attack on SolarWinds Software – Cyber Defense Magazine

US Agencies and FireEye were hacked with a supply chain attack on SolarWinds Software – Cyber Defense Magazine

Hackers broke into the networks of federal agencies and FireEye by compromising SolarWinds’ Orion Network Management Products. The cyber espionage group has tampered with updates released by IT company SolarWinds, which provides its products to government agencies, military, and intelligence offices, two people familiar with the matter told the Reuters agency. Nation-state actors, allegedly Russia-linked hacked, have compromised the networks of several US government agencies, including the US Treasury, the Commerce Department’s National Telecommunications and Information…

Read More

How OCA Empowers Your XDR Journey | McAfee Blogs

How OCA Empowers Your XDR Journey | McAfee Blogs

eXtended Detection & Response (XDR) has become an industry buzzword promising to take detection and response to new heights and improving security operations effectiveness. Not only are customers and vendors behind this but industry groups like Open Cybersecurity Alliance (OCA) share this same goal and there are some open projects to leverage for this effort. XDR Promise Let’s start with an understanding of XDR. There is a range of XDR definitions but at the end…

Read More

Anatomy of a hack – Solar Winds Orion – Cyber Defense Magazine

Anatomy of a hack – Solar Winds Orion – Cyber Defense Magazine

Nation State hacks major IS Software vender by James Gorman, CISO, Authx What happened when one of the leading IT support venders in the world, leading government agencies the world over and up 18,000-33,000[1] companies running the affected version (2019.4 HF 5 and 2020.2 with no hotfix or 2020.2 HF 1)[2] of SolarWinds Orion software. Here’s what happened: The threat actor – indicated to be a nation state in Microsoft’s Threat Intelligence Center’s release[3] – was able to compromise the…

Read More

Ohio Couple Sold Secrets to China

Ohio Couple Sold Secrets to China

An Ohio man has admitted to conspiring with his spouse to steal scientific trade secrets from a children’s hospital and sell them to the People’s Republic of China.  Former Dublin resident Yu Zhou and his 47-year-old wife, Li Chen, confessed to establishing a company in China to personally profit from cutting-edge research work done at Nationwide Children’s Hospital in Columbus, Ohio. Zhou and Chen worked in separate medical research labs at NCH’s Research Institute for 10 years each,…

Read More

Why I’m not concerned about the rise in Linux attacks

Why I’m not concerned about the rise in Linux attacks

Jack Wallen explains why he’s not worried that the rise in popularity of the Linux operating system will mean your open source platforms will be vulnerable to attacks. Linux powers big business–of that there is no debate. With more and more manufacturers selling Linux preinstalled on desktops and laptops, the writing on the wall is clear: Linux popularity is growing faster than most expected.  For some, that means the rise of attacks on the platform…

Read More

California Hospital Notifies 67k Patients of Data Breach

California Hospital Notifies 67k Patients of Data Breach

A hospital in California has notified 67,000 patients that their personal data may have been exposed in a cyber-attack. In a letter dated December 8, Sonoma Valley Hospital told patients that it was one of several American healthcare providers victimized two months ago in a wide-sweeping ransomware campaign. “SVH experienced a ransomware cyber-attack on October 11, 2020 by what is believed to be a Russian threat actor,” wrote the hospital. “This event was part of a broader attack on…

Read More

Businesses Often Do Not Inform Customers of Tracking

Businesses Often Do Not Inform Customers of Tracking

Almost three-quarters of businesses admit that tracking of customer data happens, but without consent. According to research from Zoho Corp, a survey of 1400 business leaders about third party ad tracking found 100% of respondents said their companies allow it, and 57% are “comfortable” or “very comfortable” with the way third-parties use customer data. However, 72% admit they know that tracking happens but do not inform customers. In the USA and Canada, 62% of companies…

Read More

The lines between corporate and tech strategy continue to blur

The lines between corporate and tech strategy continue to blur

Strategic platforms with advanced analytics, automation, and AI are on tap for 2021, according to Deloitte. Image: iStock/urupong Deloitte has released a slew of predictions for 2021, including in the enterprise tech, data and tech, media, telecom spaces. Deloitte picked resilience as the theme for its 12th annual tech trends report; a word that became a mantra in nearly every organization after their 2020 plans were upended by the coronavirus pandemic. In a webinar Monday,…

Read More

How understanding cognitive science can strengthen cybersecurity’s weak links

How understanding cognitive science can strengthen cybersecurity’s weak links

Learn how applying cognitive science is one way to thwart cybercriminals’ abilities to get unsuspecting users to do their bidding. Image: iStockphoto/metamorworks There’s a saying “fight fire with fire.” This, in a unique way, applies to cybersecurity. I’m not suggesting you find the person who is attacking your network and retaliate, as that usually leads to more of the same.  What I am thinking of is more in tune with what those brave men and…

Read More
1 2,471 2,472 2,473 2,474 2,475 2,541