Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 391

ISBuzz Team

ISBuzz Team
  • Website

Six Pillars To Effective Meeting Room Collaboration

ISBuzz TeamMarch 26, 20196 Mins Read

Being reliable makes collaboration viable. When video conferencing is backed by a secure cloud architecture and rigorous control processes, the ability to effectively manage risk and avoid service outage makes enterprise communications seamless in today’s ‘always-on’ economy. With the rapidly changing and unpredictable nature of global business, it is vital for those wishing to lead industries, that they build their enterprises on robust communication tools. Cloud-based video conferencing solutions enable enterprises to be more productive and reduce the burden of IT infrastructure. However, business leaders also need assurances that they and their employees’ data remain secure when using these solutions.…

Read More

React Apps Data Exposed Via Unprotected MongoDB Database

ISBuzz TeamMarch 26, 20192 Mins Read

It has been reported that a popular family tracking app was leaking the real-time locations of more than 238,000 users for weeks after the developer left a server exposed without a password. The app, Family Locator, built by Australia-based software house React Apps, allows families to track each other in real-time, such as spouses or parents wanting to know where their children are. It also lets users set up geofenced alerts to send a notification when a family member enters or leaves a certain location, such as school or work. But the backend MongoDB database was left unprotected and accessible by anyone who…

Read More

Federal Emergency Management Agency’s (FEMA) Data Leak Exposes Data Of 2.3M Survivors

ISBuzz TeamMarch 26, 20192 Mins Read

It has been reported that the Federal Emergency Management Agency’s (FEMA) has disclosed a data leak that exposed banking details and other personal information of 2.3 million survivors.  Expert Comments Below:  Tim Mackey, Senior Technical Evangelist at Synopsys:  “At the risk of becoming political, the disclosure by FEMA that it released identifiable information to a contractor about requests made by disaster victims for temporary housing shows the lack of controls in place within organisations around PII. Once disclosed to the contractor, FEMA likely lost visibility into what data sharing and controls were around this information. That the name of the contractor was redacted from the…

Read More

ASUS Software Updates Hacked, Installed Malicious Backdoors

ISBuzz TeamMarch 26, 20195 Mins Read

Reports from Kaspersky Lab researchers found out that computer giant ASUS installed a malicious backdoor last year on thousands of users’ computers after a server for its live software updates was hacked, and issued legitimate ASUS digital certificates with bogus software updates. https://twitter.com/business/status/1110406960866906112 Experts Comments Below:   Colin Little, Senior Threat Analyst at Centripetal Networks:  “The ASUS backdoor exposes a trusted-vendor’s channel compromise distribution vector, which has historically caused damage world-wide. For example, the NotPetya cyber weapon, which was unleashed on the Ukraine in 2017, used the same distribution vector from a popular accounting software provider (ref ).   “When we consider this history, we plainly see the…

Read More

Millions Of Emails Exposed In Oregon DHS Data Breach

ISBuzz TeamMarch 25, 20192 Mins Read

News recently broke that the emails of over 350k clients of the Oregon Department of Human Services (DHS) have potentially been compromised after 9 employees were the target of a spear phishing campaign.  It left 2 million emails potentially exposed.   https://twitter.com/4iQ/status/1109121253401604096 Expert Comments Below:  Jonathan Deveaux, Enterprise Data Protection Specialist at comforte AG:   “It seems no matter how much training and awareness that is provided, the human element remains the weakest link in the cybersecurity chain. The problem is not entirely the employees’ faults, as hackers and attackers are improving their tactics to trick employees into clicking on links infested with malware.…

Read More

Facial Recognition Implemented By US Customs & Border Protection

ISBuzz TeamMarch 25, 20191 Min Read

The US Customs and Border Protection program called Biometric Exit has already been rolled out in 17 airports in the US. While passenger convenience is enhanced, there are some privacy concerns that have been raised. https://twitter.com/stshank/status/1108845390214815744 Expert Comments Below: Ryan Wilk, VP of Customer Success at NuData Security: “Convenience versus privacy will be one of the biggest issues that the US will grapple with over the next few years. For airports, sporting events and brick and mortar stores, facial recognition would be convenient and easy to move people through at a faster pace. Facial recognition combined with passive biometrics can…

Read More

Zero-day In WordPress SMTP Plug-in

ISBuzz TeamMarch 25, 20192 Mins Read

The Easy WP SMTP Plug-in that is used by WordPress site owners to configure the SMTP settings of their site server’s outgoing emails, is being leveraged by hacker groups to create backdoor admin accounts and redirecting users to tech support scams. Both NinTechNet and Defiant – cybersecurity companies have reported the attacks. https://twitter.com/TropicsNet/status/1109977787576647682 Brandon Chen, Digital Security & Operations Manager at The Media Trust:   “Thoroughly vetting plugins, ensuring they’re up to date and executing only authorized tasks, and removing them when they’re no longer needed, are all part of protecting users from identity and financial theft. Each plugin represents at least a few attack surfaces, because…

Read More

From Preparation To Implementation: How To Fully Adopt Automation In 2019

ISBuzz TeamMarch 25, 20193 Mins Read

The last 12 months have seen a shift in how enterprises view automation and its benefits to their security and DevOps teams. Last year, it was found that more than three-quarters of organisations would like the ability to automate some of the day-to-day manual tasks related to their security information and event management (SIEM) systems. Yet, many of those businesses also admitted they are concerned about executing automation because they do not have the employees with the right skillset to make it work.    When you consider these findings alongside the ever-increasing skills gap in the IT sector, it has become apparent that organisations have…

Read More

UK Finance 2018 Fraud Statistics

ISBuzz TeamMarch 25, 20193 Mins Read

Yesterday UK Finance, the UK’s industry trade body, published its annual report into the UK’s payment industry fraud, Fraud the Facts 2019.      The report reveals that in 2018:  Criminals stole £1.2 billion through fraud and scams:  Unauthorised financial fraud losses across payment cards, remote banking and cheques totalled £844.8 million, an increase of 16% compared to 2017  Authorised push payment scams resulted in gross losses of £354.3 million.  Banks and card companies prevented £1.66 billion in unauthorised fraud, equivalent to £2 in every £3 of attempted fraud being stopped  Remote banking fraud losses, made up of internet banking, telephone banking and mobile banking, was down by 2%  But mobile…

Read More

Rise In DDoS Attack Size

ISBuzz TeamMarch 25, 20192 Mins Read

Global research has revealed the scale and quantity of DDoS (Distributed Denial of Service) attacks increased significantly across 2018 with attacks reaching 400Gbps in size or larger.  EfficientIP secures brands including Netflix, IKEA and the London Stock Exchange against exactly these types of attacks.  Specialists in network security with expert knowledge in DDoS attacks, its latest Global DNS Threat Report shows:  Although attacks 400Gbps or larger now occur, they only represent 5% of attacks. The majority are between 5 and 10Gbps. Not as powerful but still enough to cause significant damage.  The average attack has increased 57% in cost from $455,000 in 2017 to $715,000 in 2018.  23%…

Read More
Previous 1 … 389 390 391 392 393 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}