Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 368

ISBuzz Team

ISBuzz Team
  • Website

885 Million Sensitive Records Exposed By First American

ISBuzz TeamMay 29, 20194 Mins Read

Brian Krebs broke the news late Friday that Fortune 500 real estate insurance giant First American exposed approximately 885 million sensitive records because of a bug in its website. The news has been picked up by various business media.   Krebs reported that the company’s website was storing and leaking bank account numbers, statements, mortgage and tax records, and Social Security numbers and driving license images in an enumerable format — so anyone who knew a valid web address for a document simply had to change the address by one digit to view other documents, he said.   There was…

Read More

Beyond Boundaries: Smartphone Security Borderless Society

ISBuzz TeamMay 29, 20195 Mins Read

With greater connectivity, comes a greater risk.    This can be a cause of concern and stress for many of us. In a world that expects us to be connected anywhere and at any time, we often fail to understand that this means we are also at risk – everywhere and at all times.    As our work and personal environments become increasingly blurred, the challenge for organisations today is to achieve the correct balance between security and openness to staff working flexibly – especially when using mobile devices. A huge variety of ‘things’ are being connected to the Internet – and with data…

Read More

Only 1% Of Cybercrimes Prosecuted

ISBuzz TeamMay 29, 20192 Mins Read

A recent report from Richard Breavington, a partner at RPC, found that 1% of cybercrimes are prosecuted, from the 17,900 reported cases of computer hacking last year.   https://twitter.com/westtekIT/status/1133368228162486272 Expert Comments:  Haroon Malik, Director of Cyber Security Consulting at Fujitsu: “The low prosecution rate for cybercrimes is concerning. Hacking tools are more widely available than ever before, and cyber-criminals are finding ever-evolving ways to ‘feed their habit’. What’s more, if hacking into a business and walking away with stolen funds or sensitive information is unlikely to see you get caught, then the incentive is clear.   “But as easy as it is to…

Read More

Implications Of Preceptics’ Hack

ISBuzz TeamMay 29, 20192 Mins Read

Preceptics, a company that provides license plate readers, license plate recognition systems and vehicle identification products has been hacked and the consumer information gleaned from that hack is being offered on the Dark Web for free.  https://twitter.com/sarahmarville/status/1133365812755140608 Expert Comments:  Dov Goldman, Director of Risk & Compliance at Panorays:   “When we drive through an electronic toll gate, we’re happy that our license plate is scanned and the toll is charged to our credit card. Most likely, we don’t think about the privacy implications of this great convenience. The data breach at Perceptics, the largest manufacturer of license plate scanning systems, will force us to…

Read More

Here Today, Gone Today: The Fleeting Timeline Of A Phishing Attack

ISBuzz TeamMay 28, 20195 Mins Read

Phishing is a business, much like any other, that’s designed to make money. And because the bad actors are keenly aware of how current technologies are trying to catch them, they have developed new techniques for not getting caught and staying in business. Today the hackers are capturing valuable personal information and quickly moving on to evade detection. One of the most dangerous trends involves web page domains and URLs which change so fast that standard blacklist-based engines can no longer keep up. The life-span of a phishing website URL has decreased significantly since 2016 (see diagram below). In fact,…

Read More

First America Data Breach

ISBuzz TeamMay 28, 20193 Mins Read

Following the news that the web site for Fortune 500 real estate title insurance giant, First American Financial Corp has just been informed it has been leaking hundreds of millions of documents related to mortgage deals going back to 2003, please see below comments from security experts at HackerOne:    Jon Bottarini, Hacker and Lead Federal Technical Programs Manager at HackerOne:    “At first glance it appears that this vulnerability is an Insecure Direct Object Reference (IDOR) because the developer who found the vulnerability stated that he was retrieving different documents by simply changing the document number. Modifying the document number in his link by numbers…

Read More

Downgrade Of Equifax By Moody’s Due To Cyber Breach

ISBuzz TeamMay 28, 20194 Mins Read

In response to this week’s downgrade by Moody’s of Equifax as a result of its 2017 massive breach of consumer data, six cybersecurity and risk experts offer perspective on this ongoing issue.   Laurence Pitt, Strategic Security Director at Juniper Networks:  “A stock downgrade following cyber-attack is not a surprise, in fact it cements what we have been saying for a long time: Cybersecurity is a boardroom issue. Think about it – everyone is in business with a single goal which is to make money, this includes the bad-guys except that they want to make their money by preventing someone else…

Read More

The GDPR Shot Across The Google Bow

ISBuzz TeamMay 28, 20192 Mins Read

The Irish the Data Protection Commission is investigating Google after a complaint was lodged regarding Google’s DoubleClick/Authorized Buyers advertising system active on 8.4 million websites. The complaint alleges that the system relies on broadcasting users’ personal data without letting them know.  https://twitter.com/ZaqsTech/status/1131266176221270016 Expert Comments:    Chris Olson, CEO at The Media Trust:   “Many companies continue to struggle to comply with GDPR one year since its enforcement. If big tech companies with deep pockets are having challenges, you can imagine how much further behind the law’s requirements smaller organizations are falling. Those that aren’t concerned are likely unaware that the law covers them.…

Read More

Securing The Long Tail Of The Modern Supply Chain

ISBuzz TeamMay 27, 20195 Mins Read

Digital supply chains are growing exponentially as organisations increasingly rely on data to power their business. They expect data to flow freely, without borders or delays – but as expectations for data-on-demand grow, risks grow along with it.  Supply chains are often large and complex. With outsourcing an increasingly popular method of driving profits, there is little stopping your digital supply chain from having a long and frequently invisible tail that introduces unknown and unquantifiable risks. Once an organisation has agreed to engage with a supply chain partner, there is implicit trust that good practice will be followed⎯but in reality…

Read More

Comments On 300% Increase In Mobile Fraud

ISBuzz TeamMay 24, 20192 Mins Read

A new RSA report reveals that fraud attacks from mobile apps increased 300% in just the first quarter of this year.   Expert comments:   Don Duncan, Security Engineer at NuData Security:  “Retail mobile eCommerce sales in the U.S. is expected to reach $338 billion by 2020 according to Statistica. Combine smaller screens with more people hurrying to shop with their smartphones and it adds up to cybercriminal’s dream. It is harder for users to detect a fake website or link on a smartphone or tablet and once their personal information is intercepted, their accounts and online identities are at risk.”    “A change in…

Read More
Previous 1 … 366 367 368 369 370 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}