Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 421

ISBuzz Team

ISBuzz Team
  • Website

Less Than Half Of Firms Able To Detect IoT Breaches

ISBuzz TeamJanuary 18, 20193 Mins Read

A new research that has revealed less than half of firms are able to detect IoT breaches.  Only 48% of European firms can detect when any of their internet-connected devices have been breached, a survey shows. In the UK, this figure drops to 42%, the second lowest in Europe after France, where only 36% of companies polled said they can detect if any of their devices making up the internet of things (IoT) suffers a breach, according to the study. It goes on to suggest blockchain as a means of securing the IoT. Experts Comments below: Barry Shteiman, VP Research and…

Read More

What Does A No-Deal Brexit Mean For The Flow Of EU-UK Data?

ISBuzz TeamJanuary 18, 20192 Mins Read

So MPs have voted against Theresa May’s deal, and the EU are ruling out reopening the agreement making ano-deal Brexit more likely than ever – what does this mean for the sharing of data? Hint – It’s not good! Expert Comments below: Chris Combemale, CEO at DMA: “In the wake of today’s no vote in Parliament, it is imperative that the Government formulate a plan B and avoid a no-deal Brexit at all costs. A no-deal Brexit would create severe uncertainty for the data and marketing sector and could potentially bring EU to UK data flows to a halt. This would have further…

Read More

Voipo Misconfiguration

ISBuzz TeamJanuary 18, 20193 Mins Read

The news was recently reported that Voipo, a Lake Forest, California-based communications provider, left a database containing seven million call logs, six million text messages and other internal documents containing unencrypted passwords unprotected without a password. The database was exposed since June 2018 and contains call and message logs dating back to May 2015. Just like last year’s Voxox breach, any intercepted text messages containing 2FA codes or password reset links could have allowed the attacker to hijack a user’s account. Experts Comments below: Stephan Chenette, CTO and Co-founder at AttackIQ: “It does not take much for outsiders to find unsecured databases…

Read More

Multiple Zero-Day Vulnerabilities Discovered By Tenable Research In Building Access Technology

ISBuzz TeamJanuary 17, 20193 Mins Read

An attacker could get free rein over buildings by exploiting the unpatched flaws to create fraudulent badges and disable building locks Tenable®, Inc., the Cyber Exposure company, today announced that Tenable Research has discovered several zero-day vulnerabilities in the PremiSys™access control system developed by IDenticard. When exploited, the most severe vulnerability would give an attacker unfettered access to the badge system database, allowing him/her to covertly enter buildings by creating fraudulent badges and disabling building locks. According to its website, IDenticard has tens of thousands of customers around the world, including Fortune 500 companies, K-12 schools, universities, medical centres and government…

Read More

Security Talent Shortage

ISBuzz TeamJanuary 17, 20193 Mins Read

While CISOs and security teams have been doing their best to find creative solutions to the never-ending security talent shortage, the industry continues to struggle to meet the current and future demand. A Cisco report pegged the amount of unfilled cybersecurity jobs in 2019 at 1.5 million. Nimmy Reichenberg, CMO at cyber security company Siemplify says, “Many have hired IT professionals and setup training programs to provide them with cybersecurity skills, and while this stopgap approach provides some relief, it is in no way a silver bullet. The greatest challenge lies in hiring experienced security professionals, and those can’t be created overnight. You can’t just…

Read More

If Cybersecurity Breaches Are Inevitable What Should Organizations Do About It?

ISBuzz TeamJanuary 17, 20196 Mins Read

There’s an inconvenient truth in the business community. As many business decision-makers are only too aware, hardly a week seems to go by without a data breach of some form being reported to press, and this year alone has witnessed some major breaches which have affected thousands of people around the world. Just take a look at the stats. In October last year, DNA testing firmMyHeritage suffered a breachaffecting 92 million people. Fast forward to March this year, and we learnt that the data of87 million Facebook usershad been shared. Then in June,Ticketmaster revealedthat the login information, payment data, addresses,…

Read More

Long-Term Hacking Campaigns Against U.S Electric Grid

ISBuzz TeamJanuary 17, 20192 Mins Read

A recent deep dive by The Wall Street Journal reconstructs the worst hack into the US power systems, revealing attacks on hundreds of small contractors. Rather than strike the utilities head on, the hackers went after hundreds of contractors and sub-contractors and worked their way up the supply chain. Industry experts have said that Russian government hackers likely remain inside some systems undetected. Andrea Carcano, Co-Founder and Chief Product Office at Nozomi Networks: “Recent reporting that deconstructs long-term hacking campaigns by sophisticated hacking groups like Dragonfly and Energetic Bear demonstrates some of the successful tactics used against utility companies in an attempt to hack…

Read More

Disaster Recovery: Beyond Backup

ISBuzz TeamJanuary 17, 20194 Mins Read

With the excessive amounts of data circulating in today’s modern organizations, the importance offinding a perfect storage solution, that can safeguard data, is deemed more imperative than ever. As data generation shows no signs of slowing down, it’s necessary to realize and accept that neither backup alone nor cloud alone will likely be a sufficient storage and disaster recovery plan to protect all that data. Moving forward, companies will need to find a perfect balance between cloud and on-premises storage to fit their unique needs. When Disaster Strikes… Organizations are storing and retaining more information each day than ever before.In…

Read More

Oklahoma Securities Commission Data Breach

ISBuzz TeamJanuary 17, 20196 Mins Read

Another huge leak of government information – a huge amount, 3 terabytes, of unprotected data from theOklahomaSecurities Commission wasuncoveredby Greg Pollock, a researcher with cybersecurity firm UpGuard. It amounted to millions of files, many on sensitive FBI investigations, all of which were left wide open on a server with no password, accessible to anyone with an internet connection. Expert Comments below: Kevin Bocek, Vice President, Security Strategy & Threat Intelligence at Venafi: “Sensitive data is often shared in vulnerable places, soOklahoma’s potential breach of 3TB of FBI data isn’t especially shocking. However, if we examinesecurities.ok.gov, it appears that the state…

Read More

200 Mil Chinese Resumes Exposed In MongoDB Leak

ISBuzz TeamJanuary 17, 20193 Mins Read

In response to news that200 million Chinese resumes were exposed in a MongoDBdatabase leakand there are indications the date was accessed at least a dozen timesexperts with OneSpan and Cequence offer perspective. Franklyn Jones, CMO atCequence: “It’s unusual for data breaches to yield such a rich set of data on individuals. Unfortunately, it provides fraudsters with the ability to acquire these stolen records on the dark web, then use automated bots for the purpose of synthetic account creation. Their goal might include using stolen IDs to establish a new line of credit, for example, which can lead to identity theft…

Read More
Previous 1 … 419 420 421 422 423 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}