Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 372

ISBuzz Team

ISBuzz Team
  • Website

British Transport Police’s Website Has Been Hacked

ISBuzz TeamMay 16, 20191 Min Read

Recently, it was confirmed that the British Transport Police’s website has been hacked. Whilst at first appeared to be a minor problem only affecting the ‘newsroom section’ of the website, subsequent checks carried out by BTP, the National Cyber Security Centre and the National Crime Agency found “a small number” of staff details were leaked.   Expert Comments:   Tim Dunton, MD at Nimbus Hosting:  “It is no secret that cyber attacks are the fastest growing form of crime in the 21st century. The British Transport Police should be setting an example for online security, particularly when a catalogue of sensitive public and staff…

Read More

One-Year GDPR Anniversary: Expert Commentary

ISBuzz TeamMay 16, 20193 Mins Read

Experts Comments:    Chris DeRamus, Co-founder and CTO at DivvyCloud:  “Since GDPR was implemented a year ago, it has sparked inspiration around the globe for similar data privacy regulations. We have already seen a few companies hit by GDPR fines, and they were far from frivolous. In fact, research from DLA Piper in February 2019, revealed that there had been a total of 91 fines issued under GDPR, a number which has since grown. Google has faced the highest fine yet, with its violation around lack of transparency costing the company €50 million. In the coming months, even more companies are likely…

Read More

Scottish Council Data Breach

ISBuzz TeamMay 16, 20191 Min Read

In light of the news of a data breach by Scotland’s largest local authority, please find comment below from Jon Fielding, Managing Director, EMEA Apricorn. Jon Fielding, Managing Director, EMEA at Apricorn:  “It is frustrating to see incidents like these continue to occur when the remedy is so simple.  This breach of sensitive information by Scotland’s largest local authority rings many alarm bells. It’s concerning that an organisation such as this is still using hardcopy for PII. What’s worse, is that they do so and yet seem to have no process in place to dispose of it with any consideration for the security and privacy of…

Read More

Russia Leaks PII Of 2.5 Million Citizens And Government Officials

ISBuzz TeamMay 16, 20191 Min Read

ZDNet reported today that multiple Russian government sites have leaked the personal and passport information of over 2.25 million citizens, government employees, and high-ranking politicians. Ivan Begtin, co-founder of Informational Culture, a Russian NGO, has discovered and documented the leaks.    Paul Norris, Senior Systems Engineer, EMEA at Tripwire:   “The fact that the personal identifiable information that was leaked in this incident belongs to government officials makes the response of their organisations and of the people involved even more crucial. There is obvious value in obtaining passport information, job titles, email addresses, place of work and tax identification numbers of government workers but these are…

Read More

Microsoft’s May 2019 Patch Tuesday Fixes 79 Vulnerabilities

ISBuzz TeamMay 15, 20192 Mins Read

It has been reported that included in this month’s Patch Tuesday updates are fixes for publicly disclosed or exploited vulnerabilities. With the release of the May 2019 security updates, Microsoft has released 3 advisories and updates for 79 vulnerabilities, with 19 being classified as Critical.   Satnam Narang, Senior Research Engineer at Tenable: “This month’s Patch Tuesday release contains updates for nearly 80 CVEs including a patch for a critical remote code execution in Remote Desktop Services (RDP) as well as an elevation of privilege vulnerability in Windows Error Reporting that has been exploited in the wild.  “CVE-2019-0708 is a critical Remote Desktop Services Remote Code Execution vulnerability. An…

Read More

Report: Most Organizations Are Dissatisfied With Their Web Application Firewalls (WAFs)

ISBuzz TeamMay 15, 20193 Mins Read

Ineffective protection, time-consuming management, high cost of ownership all play a role   Cequence Security, a provider of innovative software solutions that protect web, mobile, and API-based applications from cyberattacks, today released a new Ponemon Institute report – “The State of Web Application Firewalls”- showing that only 40% of organizations are satisfied with their WAF. The report is based on data gathered from 595 organizations across the U.S. On average, they have each deployed 158 web, mobile, and API-based applications, on premises and in the cloud.   “The research clearly reveals WAF dissatisfaction in three areas,” said Dr. Larry Ponemon, chairman and founder of Ponemon Institute. “First,…

Read More

Experts Reactions On Intel Flaw Lets Hackers Siphon Secrets From Millions Of PCs

ISBuzz TeamMay 15, 20192 Mins Read

Researchers have uncovered yet another flaw in Intel’s hardware. It can allow attackers to eavesdrop on virtually every bit of raw data that a victim’s processor touches.   https://twitter.com/a_greenberg/status/1128346757279244289 Jake Moore, Security Specialist at ESET:  “Spying tools should never be underestimated, as they are constantly being tried and tested in the wild. Being able to eavesdrop on a target is always a favourite in a cyber criminals’ toolkit but we also shouldn’t forget that tools such as this aren’t just used by the bad guys. We all remember EternalBlue and how that was used to exploit data by actors on both sides of the law.   …

Read More

Uniqlo Data Breach Commentary

ISBuzz TeamMay 15, 20195 Mins Read

Fast Retailing, the company behind multiple Japanese retail brands, announced that the UNIQLO Japan and GU Japan online stores have been hacked and third parties accessed 461,091 customer accounts following a credential stuffing attack. Information accessed includes customer names, addresses, phone numbers, email addresses, genders, dates of birth, purchase history, clothing measurements and partial payment card information.  Experts Comments:   Kevin Gosschalk, CEO at Arkose Labs: “The recent Uniqlo breach shines a light on the seriousness of hackers carrying out automated attacks at scale. After nearly half a million accounts have been compromised, Uniqlo is urging users to not only reset…

Read More

San Francisco Is The First US City To Ban Facial Recognition – Experts Comments

ISBuzz TeamMay 15, 20195 Mins Read

Following the news that San Francisco has become the first city to ban the use of facial recognition in local agencies, such as law enforcement, please see a comment below from Matthew Aldridge, Senior Solution Architect at Webroot, who believes that while the technology can work well, the risk of biometric data being stolen is too great a risk for it to be deployed worldwide.  https://twitter.com/nytimes/status/1128421740923817985 Matthew Aldridge, Senior Solution Architect at Webroot:   It is great to see San Francisco leading the way on this debate. We’ll see in time whether this course of action is the best one, but it is…

Read More

Turkish Law On Data Breaches GDPR Report

ISBuzz TeamMay 15, 20195 Mins Read

Turkey’s first comprehensive data protection law was being launched in April 2016. The 2016 Law on the Protection of Personal Data (“Turkish Data Protection Law”) is based largely on EU Data Protection Law. As a candidate state for EU membership, Turkey aligns much of its legal system with EU law. Turkish data protection law consequently shares many essential features with Europe’s data protection regime. Turkey’s 1982 constitution conferred a right of privacy, but this was drafted well before the advent of the internet. Turkey’s 2016 Law on the Protection of Personal Data was the first comprehensive law to establish standard…

Read More
Previous 1 … 370 371 372 373 374 … 1,258 Next
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}