Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 843

ISBuzz Team

ISBuzz Team
  • Website

HTTPS Websites Vulnerable to Decryption Attack

ISBuzz TeamMarch 3, 20163 Mins Read

Ars Technica reports that “more than 11 million websites and e-mail services protected by the transport layer security protocol are vulnerable to a newly discovered, low-cost attack that decrypts sensitive communications in a matter of hours and in some cases almost immediately, an international team of researchers warned Tuesday.” Craig Young, Security Researcher at Tripwire explains what needs to be done. [su_note note_color=”#ffffcc” text_color=”#00000″]Craig Young, Cybersecurity Researcher at Tripwire : “The continued use of obsolete cryptography tools needs to stop. Earlier this year we learned how the SLOTH attack could compromise privacy of TLS, VPN, and SSH services when the obsolete…

Read More

California Berkeley Uni Victim of Cyber Attack, Again!

ISBuzz TeamMarch 3, 20162 Mins Read

The University of California, Berkeley, has admitted to a second data breach which may have exposed the data of 80,000 people to misuse. Current and former students, faculty members and vendors linked to the university are among those who have been warned about the incident, which took place through financial management software which contained a security flaw, allowing an attacker — or group — to access internal services. Lane Thames, software development engineer and security researcher at Tripwire have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Lane Thames, Software Development Engineer and Security Researcher at Tripwire: “Universities are fruitful targets…

Read More

The Importance of In-Flight Encryption

ISBuzz TeamMarch 3, 20164 Mins Read

Network security is currently high on everyone’s agenda, and with good reason. 2015 saw a deluge of high profile breaches, which reminded companies and the general public alike of what is at stake. Nearly 300 million records and $1 billion were stolen last year alone through cyber-attacks. The impact such an attack can have on the reputation of a company can be substantial, with a stigma of mistrust prevailing for many months – even years – after an incident. This, in turn, also profoundly affects a company’s bottom line. Some recent attacks have lost organisations hundreds of thousands of customers,…

Read More

Snapchat Isolated Email Phishing Scam

ISBuzz TeamMarch 3, 20162 Mins Read

SnapChat’s payroll department was targeted by an isolated email phishing scam in which a scammer pretended to be the CEO and asked for payroll information, Mártin Illés, Product Evangelist at Balabit have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Mártin Illés, Product Evangelist at, Balabit : “The snapchat breach is another example of where hackers become “insiders” using social engineering tactics – this is obviously much easier and beneficial for them than writing zero-day exploits. Although traditional access control tools and anti-malware solutions are necessary in today’s corporate cyber defences, these tend to only protect companies’ sensitive assets against external…

Read More

Much Larger Breach than First Reported

ISBuzz TeamMarch 3, 20162 Mins Read

The IRS is now reporting that 724,000 taxpayer accounts were accessed in the breach in May 2015. The organisation first reported that 114,000 taxpayer accounts were accessed, then three months later, that number grew to as many as 334,000 which has almost doubled again. Tim Erlin, director of security and product management at Tripwire have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Tim Erlin, Director of Security and Product Management at Tripwire : “It’s not surprising to see the number of records increase as a breach investigation continues. It’s rare that anyone can identify the full scope of a breach when it’s…

Read More

Smart cities: The Implications for the Private Sector

ISBuzz TeamMarch 3, 201610 Mins Read

Smart cities will provide businesses with unprecedented economic opportunities. However, cyber threat actors will be presented with an unprecedented attack surface in smart cities because of the significant increase in the number of interconnected devices. Securing these cities needs to be a joint project involving the local administrations and the private sector organisations with an immediate stake in the continuation of the city’s stable function. Ensuring that these cities are cyber secure will require the identification and prioritisation of critical assets, behaviour-based security – establishing a benchmark of normal operation of critical assets and continuously ensuring that all parts of…

Read More

Claim Responsibility for LA Hospital Ransomware

ISBuzz TeamMarch 3, 20162 Mins Read

Turkish hackers have claimed responsibility for the ransomware cyber attack which hit an LA hospital recently. The hackers boasted “So thanks to feebleness of weak-wiled Americans We became richer and earned $17k!  If you read this message you must understand that Turkey is the great cyber-power whose might you have witnessed! If Washington keeps on supporting Kurdish terrorists Turkish hackers will become richer!”. IT security experts from Proofpoint discuss how credible these claims are. [su_note note_color=”#ffffcc” text_color=”#00000″]Kevin Epstein, VP of Threat Operations at Proofpoint : “Attribution of cyberattacks is notoriously difficult. Cybercriminals routinely route data through multiple countries and servers within…

Read More

Snapchat Loses Employee Data Due to Phishing

ISBuzz TeamMarch 2, 20165 Mins Read

By impersonating the CEO of Snapchat in a phishing attack, hackers have revealed sensitive payroll information about a number of Snapchat employees. According to a Snapchat blog post, “the phishing email wasn’t recognized for what it was–a scam–and payroll information about some current and former employees was disclosed externally.” Security experts from Digital Guardian, Barracuda Networks, Lieberman Software, Tripwire and Proofpoint have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Kevin Epstein, VP of Threat Operations at Proofpoint : “Snapchat’s phishing attack should serve as yet another reminder to organizations and employees that people remain the weakest link in security. Phishing attacks have…

Read More

ZERO Tolerence to Phishing and Malware

ISBuzz TeamMarch 2, 20163 Mins Read

Email phishing and malware attacks are issues that plague today’s organisations, regardless of size, revenue, location or industry. Such attacks can cripple even the most well-established and high-grossing businesses, and even result in their downfall. Fraudulent cyber attacks are detrimental to revenue, to customers’ and employees’ safety, and to a brand’s reputation as a trusted organisation. To solve this issue for businesses, Cyber Security Partners (CSP), a subsidiary of Marketing Source, has recently launched a new real-time, data-driven, cyber threat detection platform called Zero. The launch of Zero means that users now have unrivalled protection from email phishing and malware.…

Read More

Businesses Don’t Need a Website to Be a Victim of DDoS

ISBuzz TeamMarch 2, 20163 Mins Read

Research by Kaspersky Lab and B2B International shows that businesses don’t need to have external interfaces such as public websites, customer portals and transactional systems to be affected by a DDoS attack. Internal web services, operations and connectivity are just as vulnerable – manufacturing companies especially. In 2015, one in six (16%) companies worldwide suffered a Distributed Denial of Service (DDoS) attack, with the attack rate rising to one in four (24%) for enterprises. For most, these attacks focused on external activities. Just under half of those affected said their public websites had been hit, while around a third said…

Read More
Previous 1 … 841 842 843 844 845 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}