Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 438

ISBuzz Team

ISBuzz Team
  • Website

Vision Direct Customer Card Details Stolen

ISBuzz TeamNovember 21, 20182 Mins Read

In light of the news today that Vision Direct customer card details were stolen in a data hack with 16,300 customers at risk, please see below for comment from David Emm, Principal Security Researcher at Kaspersky Lab. David Emm, Principal Security Researcher at Kaspersky Lab: “Today’s news of the Vision Direct breach – the data of which was obtained using a fake Google Analytics script which had been placed in its website code that let hackers breach security defences – serves a stark warning for providers to do all they can to protect their customer’s data. “We share an alarming amount of information when we shop…

Read More

Over 78% Of Australian And New Zealand Magento At Risk From Hackers Due To Simple Security Oversight

ISBuzz TeamNovember 21, 20183 Mins Read

Security web scans and analysis on over 4,500 Australian and New Zealand Magento websites, the most popular e-commerce platform globally, reveal over 78% are at high risk from cyber criminals, according to leading global cybersecurity experts. The latest survey carried out by Foregenix identifies the most significant vulnerability for Australian and New Zealand SMEs’ are hackers looking to exploit the absence of critical security patches. Global cybersecurity experts Foregenix, which operates out of Sydney, found almost 90% of websites using Magento 1 were at risk, however, the figuresfell sharply to around 35% for Magento 2 websites. The global analysis – which examined…

Read More

Dutch SIDN, NBIP Experts Warn Of Greater DDoS Risk

ISBuzz TeamNovember 21, 20182 Mins Read

The Dutch domain registrar SIDN and the nation’s internet service providers group NBIP are warning  small businesses of increased risk of DDoS attacks according to Telecom Paper. The jointly-issued report finds that web shops selling consumer goods such as clothes, cosmetics and garden equipment have a greater chance of being hit by DDoS attacks. The two European organizations also note DDoS trends, including: Shared hosting puts SMB e-tailers at 35X increased risks, as they’re impacted if another site on the server is hit by an attack; Public sector entities and larger banks are among those mostly likely targeted by direct attacks; and The organizations estimate total costs of DDoS attacks at EUR 1 billion per year. In response,…

Read More

13 Malware-Laden Fake Apps On Google Play Grab Credentials, Installed More 500K Times. How Brands Can Protect Their Reputation

ISBuzz TeamNovember 21, 20182 Mins Read

Researcher Lukas Stefanko has just warned (via Twitter) about malware embedded in fake apps available on Google Play, noting that 13 apps have been installed more than 560,000 times. A OneSpan mobile cybersecurity expert offers perspective on the goals of the attackers and how brands can prevent their apps from being repackaged by criminals. Will LaSala, Director of Security Solutions, Security Evangelist at OneSpan: “Application repackaging has been on the rise for a while now. Earlier this year it was reported that applications were being hijacked to install cryptocurrency miners. We saw a decline in these attacks when governments started to address the…

Read More

6 Months Since GDPR

ISBuzz TeamNovember 21, 20183 Mins Read

As tomorrow marks 6 months since the implementation of the General Data Protection Regulation (GDPR), please find below commentary from security experts in relation to GDPR. Chris Mayers, Chief Security Architect at Citrix: “Today, there is still a strong chance that a number of organisations could be struggling with issues around data sprawl, the volume of personal customer information and uncertainty around data ownership – as our research from around a year ago suggested. “The poll also found the average large UK business was reliant on 24 systems to manage and store personal data, with one in five (21 per…

Read More

York Council App Users Hacked: Nearly 6,000 Affected

ISBuzz TeamNovember 21, 20183 Mins Read

In light of the news that the One Planet York app – used by York City Council and its residents – has been hacked and up to 6,000 people may have had their data stolen, IT security experts commented below. Martin Thorpe, Enterprise Security Architect at Venafi8: “This is a serious breach, with thousands of people having their personal data at put at risk. Unfortunately, hacks of these kind are rising year on year though; York is certainly not alone. There are now over 15.5 billion apps in the UK, often containing very personal information – from health data to financials. Yet developers are often more focused…

Read More

Cozy Bear Returns With Post-Election Spear-Phishing Campaign

ISBuzz TeamNovember 21, 20182 Mins Read

Attackers suspected of working for the Russian government masqueraded as a US State Department official in an attempt to infect dozens of organizations in government, military, defence contracting, media, and other industries, researchers from security firm FireEye have warned. The tactics, techniques and procedures are akin to those used previously by the Russian APT group Cozy Bear, aka APT29. At least 38 FireEye clients have been targeted so far in the spear-phishing campaign. Commenting on the approach and possible intentions of the attack, and the US government’s need to protect it’s agencies, employees and citizens, is Tim Sadler, co-founder and CEO at Tessian.…

Read More

UK ‘Wholly Unprepared’ For A Critical Infrastructure Cyberattack

ISBuzz TeamNovember 20, 20182 Mins Read

News broke today that ministers are failing to act with “a meaningful sense of purpose or urgency” in the face of a growing cyber threat to the UK’s critical national infrastructure (CNI), a parliamentary committee has warned. The joint committee on national security strategy said at a time when states such as Russia were expanding their capability to mount disruptive cyber-attacks, the UK’s level of ministerial oversight was “wholly inadequate”. Israel Barak, Chief Information Security Officer at Cybereason: “The spectrum of cyberattacks against critical infrastructure providers in the UK and the profile of adversaries who targeting these environments continues to broaden. Critical infrastructure is generally…

Read More

Building the Case For SOC/NOC Integration

ISBuzz TeamNovember 20, 20184 Mins Read

SOC/NOC Integration Breeds Increased Efficiency and Effectiveness SOCs (security operations centers) and NOCs (network operations centers) both serve vital functions in your network. And while each serves a different function, significant overlaps exist that can be leveraged to create more efficiency and effectiveness in your organization. SOC staff must assess and respond to security events quickly to resolve cybersecurity issues before they can negatively impact the business, while NOC staff are responsible for making sure your network maximizes uptime and ensuring that bandwidth and demand can be managed properly. Your SOC and NOC have demanding work that they need to…

Read More

Third Parties Are A Rising Security Risk To Organisations

ISBuzz TeamNovember 20, 20182 Mins Read

The Ponemon Institute surveyed more than 1,000 CISOs and other security and risk professionals across the US and UK to understand the challenges companies face in protecting sensitive and confidential information shared with third-party vendors and partners. According to the findings, 59 percent of companies said they have experienced a data breach caused by one of their vendors or third parties. In the U.S., that percentage is even higher at 61 percent — up 5 percent over last year’s study and a 12 percent increase since 2016. Javvad Malik, Security Advocate at AlienVault: The use of third parties has risen over the past few…

Read More
Previous 1 … 436 437 438 439 440 … 1,258 Next
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}