According to news reports, guests at 14 Trump properties across the USA and parts of Canada have had their credit card information exposed for the third time in as many years. A letter posted on the Trump Hotels corporate website explained that the hackers broke into Sabre Hospitality Solutions, a reservation service used by Trump Hotels, and stole data between August 2016 and March 2017. Lisa Baergen, Director at award-winning passive biometrics and behavioural analytics company, NuData Security commented below. Lisa Baergen, Director at NuData Security: “The full scope of the Sabre breach is still not yet known, and perhaps might never be fully known given the global reach of the Sabre reservations…
ISBuzz Team
More than half of ex-employees still have access to all corporate applications, admit UK businesses London, UK – new study by OneLogin, the identity management provider bringing speed and integrity to the modern enterprise, reveals that a large proportion of businesses fail to adequately protect their networks from the potential threat posed by ex-employees. The study disclosed that IT decision makers are aware that over half (58 per cent) of former employees still can access the corporate network. Also, nearly a quarter (24 per cent) of UK businesses have experienced data breaches by ex-employees. The study, which surveyed more than 600…
The Four Seasons, Hard Rock, Loews and now the Trump hotels have reported (link to Skift story) that they and their customers have been impacted by the Sabre data breach reported in May in attacks believed linked to the SynXis travel reservation platform. IT security experts commented below. Lisa Baergen, Director of Marketing at NuData Security: “While the full scope of the Sabre breach announced earlier this spring is still not yet known (and perhaps might never be fully known, given the global reach of the Sabre reservations network). What is known, is that more and more hospitality chains are now announcing that customers have been…
Three-quarters of non-IT leaders at U.S. firms believe that the European Union’s (EU) upcoming General Data Protection Regulation (GDPR) does not apply to them according to an NTT Report. Chris Olson commented below. Chris Olson, CEO at The Media Trust: “All enterprises with an interest in Europe–customers, employees, data centers, legal entities, etc.–should be concerned about GDPR and how the digital environment impacts their ability to comply. While most enterprises are busy identifying data points within their organizations most have overlooked the data collection activities occurring on their websites and mobile apps. The internet is a highly-dynamic environment requiring a…
As news spread today of another potential Verizon data breach incident that exposed millions of customer records, IT security experts commented below. Willy Leichter, Vice President of Marketing at Virsec: “This latest incident raises thorny security issues because it seems both careless and suspicious. Obviously leaving 14 million records unprotected is careless and implies a lack of controls, security and governance, in an organization that is entrusted with vast quantities of legally protected personal information. But it’s equally suspicious is that this company with close government ties, a history of supporting surveillance, and phone cracking, would have ungoverned access to sensitive…
The latest news has uncovered that potentially thousands of Android users may be at risk to a newly discovered form of malware, which attempts to extort victims by threatening to leak a trove of personal information including photos, website histories and text messages unless a ‘ransom’ is paid to the hackers. Lee Munson, Security Researcher at Comparitech.com commented below. Lee Munson, Security Researcher at Comparitech.com: “Bucking the recent trend of ransomware demanding money for the return of encrypted data, LeakerLocker’s business model is a potentially far more lucrative one, ensnaring a massive p “What’s worth noting here though is the fact that the…
Aberdeen Group has released a new report which shows that quick detection and remediation of a cyber attack can lead to double-digit reductions in the business impact. Bob Noel, Director of Strategic Relationships and Marketing at Plixer commented below. Bob Noel, Director of Strategic Relationships and Marketing at Plixer: “For decades, organizations have focused their budget and resources on technologies intended to prevent security incidents. Based on modern complexity and the increasing threat surfaces driven by mobile and IoT, complete prevention is not possible and breaches are inevitable. Aberdeen’s report should be a wake-up call to the board room that…
The breach of Avanti Market’s PoS System – which serves 1.6 million customers annually by providing 24-hour, self-service ‘break room’ marketplaces to corporate environments – NuData Security and STEALTHbits Technologies experts commented below. Lisa Baergen, Marketing Director at NuData Security: “Having physical biometrics stolen could have a serious impact on Avanti customers as credit cards, passwords and other information can be changed, but fingerprints cannot. Now that this information is in the hands of fraudsters and likely for resale on the dark web, it will be too easy to breach and take over more accounts, create synthetic identities and more. Because of this, organizations need to rethink how…
With a string of global cyber attacks, companies need to invest appropriately and must careful consider the quality when offering cyber security training, which is the latest advice from the Institute of Information Security Professionals (IISP). Failure to do so could lead many businesses down the wrong path, and potentially leave them in a vulnerable position. Javvad Malik, Security Advocate at AlienVault commented below. Javvad Malik, Security Advocate at AlienVault: “For companies looking to invest in training up technology staff in cyber security. It is useful to first ascertain what gaps lie where. Cyber security itself is a vast field with many facets, so without…
Tomorrow some of the biggest names on the Internet are coming together for a day of action in an effort to send a message to the FCC to stop dismantling the net neutrality rules that were put in place in 2015. Chris Olson, CEO at The Media Trust commented below. Chris Olson, CEO at The Media Trust: “Regardless of how net neutrality pans out, this issue highlights the value of the digital economy to businesses and consumers alike. But it’s important to not forget that the internet is all about the consumption of information. Every participant in the digital ecosystem–Brands, Ad/MarTech, Publishers, Corporates,…
