Showing posts with label The State of Security. Show all posts
Showing posts with label The State of Security. Show all posts

Friday, 13 November 2020

Successful Ransomware Attacks on Education Sector Grew 388% in Q3 2020

The number of successful ransomware attacks on the education sector increased 388% in the third quarter of 2020. According to Emsisoft, the education sector reported 31 ransomware incidents in Q3 2020. That’s a 388% increase over the 8 incidents that occurred in the previous quarter. Nine of the 31 ransomware attacks disclosed in the third […]… Read More

The post Successful Ransomware Attacks on Education Sector Grew 388% in Q3 2020 appeared first on The State of Security.



from The State of Security https://ift.tt/3ndyrSW
via https://ifttt.com/ IFTTT

The North Face resets passwords after credential-stuffing attack

An undisclosed number of customers of outdoor clothing retailer The North Face have had their passwords reset by the company, following a credential-stuffing attack. The company has revealed that on October 9, 2020, it became aware that hackers had used usernames and passwords stolen from a third-party website to gain unauthorised access to customer accounts. […]… Read More

The post The North Face resets passwords after credential-stuffing attack appeared first on The State of Security.



from The State of Security https://ift.tt/35ukYjH
via https://ifttt.com/ IFTTT

Thursday, 12 November 2020

Avionics Safety and Secured Connectivity: A Look at DO-326A/ED-202A, DO-355 and DO-356

One of the major improvements that the avionics industry is undergoing is an Internet of Things (IoT) upgrade. And this is inevitably affecting how airlines approach aircraft safety. From the beginning, safety has been paramount to the aviation industry. But while it is a welcome innovation, the incorporation of IoT devices in aircraft comes with […]… Read More

The post Avionics Safety and Secured Connectivity: A Look at DO-326A/ED-202A, DO-355 and DO-356 appeared first on The State of Security.



from The State of Security https://ift.tt/2Iv5PVY
via https://ifttt.com/ IFTTT

Wednesday, 11 November 2020

Attackers vs. Hackers – Two *Very* Different Animals

The cybersecurity industry is more well-informed than most, but even so, misconceptions arise and spread, helped along by the fact that the rise in cybersecurity incidents has led to substantial “pop culture” intrigue with all things cybersecurity. One of the more harmful of these misconceptions is the conflation of “hacker” and “attacker,” terms which are […]… Read More

The post Attackers vs. Hackers – Two *Very* Different Animals appeared first on The State of Security.



from The State of Security https://ift.tt/3eOLVl5
via https://ifttt.com/ IFTTT

Tuesday, 10 November 2020

Ukrainian Gets 9 Years in Prison for Trying to Steal $10M from Microsoft

A Ukrainian citizen received a nine-year prison sentence for a scheme in which he tried to steal $10 million from Microsoft. On November 9, the U.S. District Court in Seattle handed down the sentence to Volodymyr Kvashuk, 26, a Ukrainian citizen who was residing in Renton, Washington. According to court documents, Kvashuk used to work […]… Read More

The post Ukrainian Gets 9 Years in Prison for Trying to Steal $10M from Microsoft appeared first on The State of Security.



from The State of Security https://ift.tt/2Imxj0u
via https://ifttt.com/ IFTTT

What is Policy Compliance? Four Tips to Help You Succeed

Policy compliance within the information security space can be an exhausting concept to wrap our heads around. Writing a policy document, publishing it to staff and then staying hands-on to ensure it is followed in perpetuity is easily seen as an arduous, if not an impossible, task. Policies set the basis for every successful information […]… Read More

The post What is Policy Compliance? Four Tips to Help You Succeed appeared first on The State of Security.



from The State of Security https://ift.tt/38t7juU
via https://ifttt.com/ IFTTT

Monday, 9 November 2020

Computer Manufacturing Company Compal Discloses Security Incident

Computer manufacturing company Compal Electronics announced that it had suffered a security incident involving some of its systems. Qingxiong Lu, deputy manager director of Compal, told United News Network on November 9 that the company had experienced a security incident. In his explanation of the event, Qingxiong identified that the incident had mainly affected Compal’s […]… Read More

The post Computer Manufacturing Company Compal Discloses Security Incident appeared first on The State of Security.



from The State of Security https://ift.tt/3paCWzt
via https://ifttt.com/ IFTTT

Lessons from Teaching Cybersecurity: Week 6

As I had mentioned previously, this year, I’m going back to school. Not to take classes, but to teach a course at my alma mater, Fanshawe College. I did this about a decade ago and thought it was interesting, so I was excited to give it another go. Additionally, after a friend mentioned that their […]… Read More

The post Lessons from Teaching Cybersecurity: Week 6 appeared first on The State of Security.



from The State of Security https://ift.tt/3peAQOT
via https://ifttt.com/ IFTTT

Creando presupuestos para ciberseguridad efectivos

Construir una organización eficaz y resistente con un presupuesto limitado es una gran hazaña. Cuando se trata de presupuestos de ciberseguridad, hay muchos aspectos que deben considerarse. Afortunadamente, la alineación con las mejores prácticas de la industria y los marcos de seguridad agregan un poco de claridad a este desafío. Al presentar el webcast “¡Todo […]… Read More

The post Creando presupuestos para ciberseguridad efectivos appeared first on The State of Security.



from The State of Security https://ift.tt/2GFEMH1
via https://ifttt.com/ IFTTT

CISA Strategy for 5G Security and Resilience

In August 2020, the Cybersecurity and Infrastructure Security Agency (CISA) released its strategy to ensure the security and resilience of 5G infrastructure in the United States. Roughly every 10 years, the next generation of mobile communication networks is released, bringing faster speeds and increased capabilities. The fifth generation (5G) of wireless technology is a complete […]… Read More

The post CISA Strategy for 5G Security and Resilience appeared first on The State of Security.



from The State of Security https://ift.tt/38qQ65w
via https://ifttt.com/ IFTTT

Friday, 6 November 2020

Ransomware Gangs Not Honoring Ransom Payments for Stolen Data

Security researchers observed that multiple ransomware gangs are not honoring the ransom payments received from victims for their stolen data. In its Quarterly Ransomware Report for Q3 2020, Coveware revealed that almost 50% of crypto-malware cases involved the threat to publish unencrypted data stolen from victims in addition to the use of encryption to render […]… Read More

The post Ransomware Gangs Not Honoring Ransom Payments for Stolen Data appeared first on The State of Security.



from The State of Security https://ift.tt/36cmnua
via https://ifttt.com/ IFTTT

Thursday, 5 November 2020

Email Attacks Using Fear of Election Interference to Spread QBot

Digital attackers launched a malicious email campaign that used fear of election interference in order to spread the QBot trojan. On November 4, Malwarebytes came across an attack email. This message arrived as a thread reply in an attempt to boost its legitimacy. The body of the email did not include the recipient’s name or […]… Read More

The post Email Attacks Using Fear of Election Interference to Spread QBot appeared first on The State of Security.



from The State of Security https://ift.tt/3oVqraZ
via https://ifttt.com/ IFTTT

Capcom hacked. Resident Evil game developer discloses cyber attack

Japanese game developer Capcom has revealed that it suffered a security breach earlier this week which saw malicious hackers access its internal systems. The maker of such well-known video games as “Resident Evil” and “Street Fighter” disclosed in a short press release that in the early hours of Monday some of its networks “experienced issues” […]… Read More

The post Capcom hacked. Resident Evil game developer discloses cyber attack appeared first on The State of Security.



from The State of Security https://ift.tt/2TSW32u
via https://ifttt.com/ IFTTT

Building a Security Alliance with Your Cloud Partners

As more infrastructure is moved to the cloud, there are many opportunities to reconsider your security stance and relationships to build ever stronger and more secure IT solutions whilst reducing your security costs. In this post, I’m looking to explore some ways that you can build out your alliances to be better prepared and battle-worthy […]… Read More

The post Building a Security Alliance with Your Cloud Partners appeared first on The State of Security.



from The State of Security https://ift.tt/2GsaKGC
via https://ifttt.com/ IFTTT

Wednesday, 4 November 2020

REvil Ransomware Gang Acquire Source Code for KPOT 2.0 Infostealer

The operators of REvil ransomware came into possession of the source code for the KPOT 2.0 information-stealing malware variant. ZDNet reported that UNKN, a member of the REvil ransomware gang, acquired the source code for KPOT 2.0 in an auction announced by the malware’s author back in mid-October. #KPOT source code up for sale! 💰💰 […]… Read More

The post REvil Ransomware Gang Acquire Source Code for KPOT 2.0 Infostealer appeared first on The State of Security.



from The State of Security https://ift.tt/34WbflW
via https://ifttt.com/ IFTTT

3 Steps to Building a Resilient Incident Response Plan

According to the Accenture State of Cybersecurity 2020 report, the average cost of a cyber attack for ‘non-leaders’ stands at $380,000 per incident. The report classifies organizations into ‘leaders’ and ‘non-leaders.’ The ‘leaders’ are those who set the bar for innovation and achieve high-performing cyber resilience. Given the rate of cyber attacks today, a security […]… Read More

The post 3 Steps to Building a Resilient Incident Response Plan appeared first on The State of Security.



from The State of Security https://ift.tt/2TPYN0q
via https://ifttt.com/ IFTTT

Tuesday, 3 November 2020

Tripwire Patch Priority Index for October 2020

Tripwire‘s October 2020 Patch Priority Index (PPI) brings together important vulnerabilities from Microsoft, Apple, Adobe, and Oracle. First on the patch priority list this month is a very high priority vulnerability in Oracle WebLogic Server. The vulnerability is within the Console component of Oracle WebLogic Server, and it can be exploited without authentication and requires […]… Read More

The post Tripwire Patch Priority Index for October 2020 appeared first on The State of Security.



from The State of Security https://ift.tt/324HAFa
via https://ifttt.com/ IFTTT

N-Day Vulnerabilities: How They Threaten Your ICS Systems’ Security

In the last quarter of 2019, researchers at ClearSky uncovered an attack operation that they dubbed the “Fox Kitten Campaign.” Iranian actors used this offensive to gain persistent access into the networks of dozens of companies operating in Israel and around the world across the IT, telecommunication, oil and gas, aviation, government and security sectors. […]… Read More

The post N-Day Vulnerabilities: How They Threaten Your ICS Systems’ Security appeared first on The State of Security.



from The State of Security https://ift.tt/3271MpP
via https://ifttt.com/ IFTTT

Monday, 2 November 2020

Phishers Using Google Drive to Trick People into Visiting Malicious Websites

Reports emerged of phishers having abused a feature in Google Drive in an attempt to trick users into visiting malicious websites. In this scam wave, users reported having received Google Drive notifications in Russian or English asking them to collaborate on unfamiliar documents. Those documents contained links to scam websites. Some of those links tried […]… Read More

The post Phishers Using Google Drive to Trick People into Visiting Malicious Websites appeared first on The State of Security.



from The State of Security https://ift.tt/3oLtulQ
via https://ifttt.com/ IFTTT

Ordell Robbie, Tripwire and Security Configuration Management.

ORDELL: Take the keys, man. Listen to music. LOUIS: Which one is for the car? (Ordell finds it. While he goes through the keys, Vicki comes back on the line.) (Max speaks with her as he fills out his papers.) ORDELL: (holding a key) This one’s for the ignition… (holding a little black box) … […]… Read More

The post Ordell Robbie, Tripwire and Security Configuration Management. appeared first on The State of Security.



from The State of Security https://ift.tt/3mMg0of
via https://ifttt.com/ IFTTT