US Sanctions Chinese Cybersecurity Firm for Ransomware Attack

US Sanctions Chinese Cybersecurity Firm for Ransomware Attack

The U.S. has sanctioned Sichuan Silence, a Chinese cybersecurity firm involved in ransomware attacks targeting critical infrastructure in 2020. One of its employees, Guan Tianfeng, has also been charged individually. Guan, a security researcher, discovered a zero-day vulnerability in a firewall product developed by U.K.-based security firm Sophos. He exploited the vulnerability, designated CVE 2020-12271, using a SQL injection attack that retrieved and remotely executed a script from a malicious server. Guan and his co-conspirators…

Read More

Sophos Study: 94% of Ransomware Victims Have Their Backups Targeted

Sophos Study: 94% of Ransomware Victims Have Their Backups Targeted

Organisations that have backed up their sensitive data may believe they are relatively safe from ransomware attacks; however, this is not the case based on findings from a new study from IT security company Sophos. The report showed that cybercriminals attempted to compromise the backups of 94% of companies hit by ransomware in the past year. Attackers are aware that those who fall victim to ransomware must choose to either pay the ransom or recover…

Read More

Sophos: Cyber Security Professional Burnout Is Widespread, Creating Risk for APAC Organisations

Sophos: Cyber Security Professional Burnout Is Widespread, Creating Risk for APAC Organisations

Many cybersecurity professionals with burnout in APAC have suffered in silence for years. However, a growing body of regional research, including a recent report from cybersecurity firm Sophos, is bringing attention to the extent, causes and impacts of the problem. The Sophos report, The Future of Cybersecurity in Asia-Pacific and Japan, found burnout and fatigue are widespread, with nine out of 10 employees impacted on some level. Causes include a lack of resources and alert…

Read More

The 20 Coolest Cloud Security Companies Of The 2023 Cloud 100 | CRN

The 20 Coolest Cloud Security Companies Of The 2023 Cloud 100 | CRN

Security News Mark Haranas January 31, 2023, 10:00 AM EST CRN breaks down 20 of the top cloud cybersecurity vendors will make waves in 2023—from startups like Ermetic and Laminar to Palo Alto Networks and Check Point Software Technologies. Proofpoint Ashan Willy CEO Proofpoint , known for its email, compliance and other security tools, has a solid presence in the cloud with its Proofpoint Cloud App Security Broker. The company recently…

Read More