Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 862

ISBuzz Team

ISBuzz Team
  • Website

Cracks Down on Proxy Streaming

ISBuzz TeamJanuary 21, 20162 Mins Read

Video-streaming giant Netflix has said it is going to stop subscribers from using internet proxies to view content not available in their home countries. Due to licensing agreements, Netflix content varies between countries – many users have a virtual private network (VPN) or other proxy to get round this. The firm said it would increase efforts in the next few weeks to block the use of such proxies. Mark James, security specialist at ESET have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Mark James, Security Specialist at IT Security Firm ESET : “Restricted content has always been a lure for some people…

Read More

Advantech Vuln. Disclosed

ISBuzz TeamJanuary 21, 20164 Mins Read

Rapid7 will disclose a vulnerability in Advantech’s EKI-1322 serial device server. The team found that the Dropbear SSH daemon did not enforce authentication, and a possible backdoor account was discovered in the product. Due to heavy modifications of the Dropbear daemon, it does not actually enforce authentication, and allows any user to bypass authentication by using any public key and password. But there’s good news: The authentication bypass issue is resolved in EKI-1322_D2.00_FW, which was made available from the vendor’s website as of December 30, 2015. [su_note note_color=”#ffffcc” text_color=”#00000″]Team at Rapid7 : R7-2015-26: Advantech EKI Dropbear Authentication Bypass (CVE-2015-7938) While looking into the…

Read More

Taking a Global Approach to Single Sign-On

ISBuzz TeamJanuary 21, 20166 Mins Read

How to protect business data without imposing onerous authentication processes on employees is a challenge that most businesses have or will face. Single Sign-On (SSO) solutions help to alleviate this by managing access to multiple applications using a single login and password. However, choosing the right SSO solution is not a simple decision and depends on the company’s existing IT environment, objectives, risks and investment priorities.  Often, companies have to maintain, operate, supervise and audit multiple solutions and for historical reasons, may already have separate SSOs already in place to cover different environments, such as Enterprise SSO (eSSO), Web Access…

Read More

MegalodonHTTP Author Arrested

ISBuzz TeamJanuary 21, 20162 Mins Read

Last month, the Norwegian police arrested five men in a joint effort with Europol as part of the OP Falling sTAR. Very little is known about the details of the operation and who and what these miscreants did, but Norway’s Kripos national criminal investigation service noted that they were charged with possessing, using and selling malware, including RATs (Remote Access Trojans).  [su_note note_color=”#ffffcc” text_color=”#00000″]Loucif Kharouni, Sr Threat Researcher at Damballa : Damballa’s Threat Discovery Center worked in cooperation with the Norwegian police over the last few months to track and identify the author of the malware called MegalodonHTTP. We published a blog about…

Read More

Extraordinary Financial Performance for 2015 Highlighted by Record-Breaking Q4 Results

ISBuzz TeamJanuary 21, 20163 Mins Read

Global Leader in Next-generation IT Security Solutions Increases Total 2015 Revenue by Over 50%;  Exceptional Q4 With 77% Revenue Increase Marks Ninth Consecutive Quarter of Record Growth Thycotic, a provider of privileged account management (PAM) solutions for over 3,500 organizations world-wide, has extended its record of stellar growth throughout 2015, capping the year with a total revenue increase of more than 50% over 2014 and wrapping-up a remarkable Q4 with a 77% quarterly revenue increase. The company’s growth strategy, which has now produced nine consecutive quarters of record revenues, resulted in the addition of a significant number of new customers, considerable…

Read More

ENITSE Enterprise IT Security Conference & Exhibition

ISBuzz TeamJanuary 21, 20161 Min Read

ENITSE Enterprise IT Security Conference & Exhibition will be held on 17-18 May 2016 in Istanbul, Turkey. ENITSE is one of the most important events in EMEA in its category. IT Security, Network Security, Big Data Security, Mobile Security, Cloud Security, IT Risk Management, Application Security, Identity and Access Management, Web Security, End User Security and Database Security are key topics of the conference. The Conference Program (Agenda) of ENITSE 2016 Conference is published on the conference website. Sponsorship and delegate registrations are open. There is an early bird pricing on delegate registration which is valid until 04 March 2016.…

Read More

Disparity Between Mobile App Security Perception and Reality

ISBuzz TeamJanuary 21, 20165 Mins Read

While 84 percent of consumers and IT execs believe their mobile health and finance apps are secure, 90 percent of mobile health and finance apps test positive for two critical security risks Arxan Technologies, the leading provider of application protection solutions, announced the publication of its 5th Annual State of Application Security Report. The new research is based on the analysis of 126 popular mobile health and finance apps from the US, UK, Germany, and Japan, as well as a study examining security perspectives of consumers and app security professionals. Arxan discovered a wide disparity between consumer confidence in the…

Read More

Legislation to Force Companies to Reveal Cyber Attack

ISBuzz TeamJanuary 20, 20163 Mins Read

MP Dr Liam Fox call for companies to come clean after cyber attack. Chris Wysopal, CTO and CISO at Veracode have the following comments on it. Chris Wysopal, CTO and CISO at Veracode : “There is no question that responsible disclosure is a good policy, however globally there remains limited precedent for it. In the US, companies listed on the NASDAQ Stock Market or the New York Stock Exchange are required to notify the public if the leaked information would “reasonably be expected to affect the value of a company’s securities or influence investors’ decisions.” While in Europe, the General…

Read More

Mature Consumers More Careful Online but Less Savvy about Dangers

ISBuzz TeamJanuary 20, 20164 Mins Read

When it comes to staying safe online, consumers aged 45 and over are more cautious than younger Internet users about sharing information, but can lack the knowledge to spot a damaging scam or imminent threat. According to recent consumer surveys* from Kaspersky Lab, those aged 24 and under are more willing to reveal information about themselves online and take fewer steps to protect themselves, but understand potential threats better and can recognise them more easily. The research found that for younger people, sharing data online is an everyday occurrence, with 83 per cent undertaking private messaging online, compared to just…

Read More

Vulnerability of U.S. Nuclear Computers

ISBuzz TeamJanuary 19, 20162 Mins Read

A new report out from the Office of the Inspector General claims the Nuclear Regulatory Commission’s cybersecurity center isn’t optimized to protect the agency’s network in the current cyber threat environment. The nation’s unclassified nuclear computer systems are vulnerable to cyber attacks because of generic security contracts that don’t spell out who is responsible for keeping an eye on them. Tim Erlin, director of IT security and risk strategy for Tripwire have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Tim Erlin, Director of Security and Product Management at Tripwire : “It’s always less costly to build security in from the beginning…

Read More
Previous 1 … 860 861 862 863 864 … 1,258 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}