Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 375

ISBuzz Team

ISBuzz Team
  • Website

Key Findings : Verizon DBIR 2019

ISBuzz TeamMay 8, 20192 Mins Read

Verizon has today released the 2019 Data Breach Investigations Report (DBIR), providing an analysis of over 40,000 security incidents and more than 2,000 confirmed data breaches investigated across 180 countries during the last 12 months.    This year’s report includes data from the FBI for the first time, and highlights the risks faced by the C-Suite, with executives six times more likely to be a target of social-engineering than they were only a year ago. Some of the key findings include:    Can you keep a secret? – Espionage was the key motivation behind a quarter of all breaches, with over a fifth of these attacks traced back to nation states…

Read More

Experts Comments: Verizon DBIR

ISBuzz TeamMay 8, 201915 Mins Read

The Verizon DBIR report has been made public today, and the key findings indicate an increase in cyberespionage and nation state attacks.   Some of the key findings of the reports:  C-Suite executives are the high target of social engineering attacks.  Increase in Cyberspionage attacked (12% compared to 2018)  Financially motivated breaches fell from 76% to 71%  32% of breaches and 78% of cyberespionage are victim of phishing.   Most of the malware arrived via email (90%)  60% of web application attacks were on cloud-based email servers  52% of cyberattacks involve hacking  34% of attacks involved insiders  43% of cyberattacks were on small businesses  A significant increase on HR…

Read More

Freedom Mobile Data Leak

ISBuzz TeamMay 8, 20197 Mins Read

Security researchers discovered an Elasticsearch server belonging to Freedom Mobile, Canada’s fourth largest cell network, that contained five million logs of customer data. The data was exposed without a password and includes full credit card numbers, expiration dates and verification numbers stored in plaintext as well as customer names, email addresses, phone numbers, postal addresses, dates of birth, customer types and account numbers. None of the data was encrypted. The logs also include credit checks filed through Equifax and includes details of whether an application was accepted or rejected and why. A spokesperson for the company said about 15,000 customers…

Read More

Binance Crypto Exchange Suffers $40 Million Breach

ISBuzz TeamMay 8, 20193 Mins Read

Cryptocurrency exchange Binance has confirmed a “large scale” data breach in which hackers stole more than $40 million in cryptocurrency. https://twitter.com/TheHackersNews/status/1126000078823444480 Experts Comments:    Jake Moore, Cyber Security Specialist at ESET: “This announcement could have a damaging effect on cryptocurrencies. After the rise and fall of crypto in 2017, people have exercised caution when it comes to digital currencies, so this could dramatically affect the volatility of the currency if people question the security of their finances. It seems to be a very well thought out and targeted attack with a damming outcome for all involved, so it goes without saying that…

Read More

Facebook Users Being Targeted By “Baby Sussex Scams”

ISBuzz TeamMay 8, 20192 Mins Read

In light of current events, scammers are targeting Facebook users with a new scheme that takes advantage of the buzz surrounding Prince Harry and Duchess Meghan Markle’s new baby. This scam is a “bait-and-switch” style ploy that relies on a fake website to scan the user’s computer for private information like bank accounts and credit card numbers. Experts Comments: Paul Bischoff, Privacy Advocate at Comparitech.com: “Fake video player updates are among the most common types of malicious ads that prey on web users. This scheme in particular leverages people’s inherit trust in their Facebook friends to get them to click through and install a…

Read More

Executive Order On America’s Cybersecurity Workforce

ISBuzz TeamMay 8, 20191 Min Read

The White House has issued a new Executive Order on America’s Cybersecurity Workforce. https://twitter.com/CISAgov/status/1124036088413208577 Expert Comments:  Pravin Kothari, Founder and CEO of CipherCloud: “This has been long overdue. The level of hacking against the US has created an extraordinary threat to the national security targeting our businesses, infrastructure, stealing trade secrets, and meddling our election, challenging our democracy and freedom. This is a defensive step in protecting America by addressing a key aspect of cybersecurity – workforce – with education and preparedness.    It’s a step in the right direction, but more needs to be done, and will require major funding and…

Read More

Evolving Mobile Device Management Strategies

ISBuzz TeamMay 8, 20196 Mins Read

As organisations continue to innovate to realise efficiencies through the use of increasingly sophisticated and pervasive mobile technologies, many are continually challenged by the risks associated with managing an ever growing device estate. Successfully managing the complexity of multiple software and hardware mobile platforms necessitates a practical, secure and cost-effective way to manage, monitor and track devices.    This is best achieved through implementing an end-to-end Mobile Device Management (MDM) strategy, that can sometimes require consideration of the entire software and hardware stack, to ensure valuable time and resources are used effectively in securing and monitoring mobile devices that accesses business-critical data.    I have summarised four of the themes…

Read More

Microsoft New Privacy Focused Features

ISBuzz TeamMay 8, 20192 Mins Read

Microsoft unveiled new privacy-focused features which allow users to control how much data is sent back to Microsoft, as well as control how much data third parties receive when browsing the internet.  https://twitter.com/WinObs/status/1125441430237749251 Expert Comments:  Alex Heid, Chief Research Officer at SecurityScorecard:  “The announcement by Microsoft that the Edge web browser is moving to the Chromium engine is quite significant and indicates that Microsoft has embraced the concept of open source software and will likely leverage open source code in the future for additional major development projects. The shift also indicates the full retirement of the antiquated and vulnerable Internet Explorer…

Read More

Mozilla Disabling Firefox Add-Ons That Contain Obfuscated Code

ISBuzz TeamMay 5, 20191 Min Read

Mozilla is changing its policies and have let developers know that they will be blocking all Firefox add-ons that contain obfuscated code in an effort to clean out malicious third-party code.  Expert Comments:  Usman Rahim, Digital Security and Operations Manager at The Media Trust:   “Paying closer attention to the risks that third-party code suppliers pose is an important step in the right direction. However, Mozilla should clarify a few potential issues:    –  First, where do Mozilla and Google, which has introduced a similar policy, draw the line on obfuscation? Most if not all developers at least slightly obfuscate code in…

Read More

Hundreds Of Orpak Gas Station Systems Can Be Easily Hacked Thanks To Hardcoded Passwords

ISBuzz TeamMay 5, 20192 Mins Read

It has been reported that Homeland Security’s cybersecurity agency says a popular gas station software contains several security vulnerabilities that require “low skill” to exploit. The advisory, posted by the Cybersecurity and Infrastructure Security Agency (CISA), gave the Orpak SiteOmat software a rare vulnerability severity rating of 9.8 out of 10. According to the advisory, the software contained a hardcoded password set by the manufacturer, which if used would grant unfettered access to the system.  https://twitter.com/zackwhittaker/status/1124040208259977217 Expert Comments:  Sam Curry, Chief Security Officer at Cybereason: “Sadly, these latest headlines should not be a surprise to anyone because these weaknesses are in place and they are everywhere.…

Read More
Previous 1 … 373 374 375 376 377 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}