Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISBuzz Team - Page 864

ISBuzz Team

ISBuzz Team
  • Website

Government Crackdown on Nuisance Calls to make Marketing Companies Display Caller ID

ISBuzz TeamJanuary 14, 20163 Mins Read

Direct marketing companies will have to legally display their telephone number on caller ID Consumers will find it easier to report unsolicited calls to the regulators Around one in five marketing calls fail to display valid number Direct marketing companies will have to display their telephone numbers under plans Government has set out in the bid to tackle the scourge of nuisance calls. Unsolicited direct marketing calls can cause significant stress and anxiety, particularly to those people who rely on the telephone as their main means of keeping in touch with friends and loved ones. At best these calls are…

Read More

Malicious Email Campaign that Drops Ursnif

ISBuzz TeamJanuary 14, 20162 Mins Read

The attack permits the malware to jump onto computers in a unique manner, using the ‘Range’ HTTPS header. The Ursnif malware is retrieved from the command and control server when the malware requests the file, but should a user browse to that location they see this JPG of the kangaroo below. The email uses a macro-laden Microsoft office document attachment, purporting to be from the Australian Taxation Office; with taxation proving to be a popular lure in 2016. The researchers also found that the malware authors made a mistake in their encryption routine, unintentionally making it easier for researchers to understand…

Read More

Opens API to Test SSL/TLS Security for PCI DSS Requirements and NIST Guidelines

ISBuzz TeamJanuary 14, 20162 Mins Read

High-Tech Bridge, a leading provider of  web application security, has opened a free to use API for the company’s SSL security testing service, which verifies the security and reliability of SSL/TLS implementation on any website or web app according to PCI DSS requirements, NIST guidelines and industry best-practices. The free  SSL/TLS security testing service was launched by High-Tech Bridge in October 2015, enabling the test of any server or service working over SSL-encrypted protocol (e.g. HTTPS, POP3S, IMAP3, SMTPS, LDAPS, FTPS, etc). Since then, almost 75,000 people have tested their servers and significantly improved reliability and security of their data encryption,…

Read More

Vulnerabilities Exposed by Hacking Group W0rm

ISBuzz TeamJanuary 14, 20162 Mins Read

Not sure if you’ve seen, but cloud software company Citrix has been hacked by an organisation called w0rm which exposed vulnerabilities in its network, allegedly for ‘altruistic’ reasons to raise standards of cybersecurity. Tony Pepper, CEO, Egress Software Technologies said why companies need to protect all customer data, especially in the face of new penalties from the European Union. [su_note note_color=”#ffffcc” text_color=”#00000″]Tony Pepper, CEO, Egress Software Technologies : “Another week, another hack – and with well-known names such as TalkTalk and now Citrix hitting the headlines, it prompts questions about organisations’ ability to effectively deploy information security measures across their…

Read More

A New Data Stealing Trojan called Spyumel

ISBuzz TeamJanuary 13, 20162 Mins Read

Researchers have discovered a new data stealing Trojan called Spyumel thatemploys real certificates to evade security tools. Hackers using Spymel are using a certificate issued by DigiCert and given to SBO Invest. Since Hackers got their hands on the first certificate, DigiCert has issued another certificate but hackers are now using another certificate from SBO Invest. Tim Erlin, Director of IT Security and Risk Strategy from Tripwire says : [su_note note_color=”#ffffcc” text_color=”#00000″]Tim Erlin, Director of Security and Product Management at Tripwire : “Why break in when you can steal a key? Compromising authentication, from passwords to certificates, is a tried…

Read More

Star Wars BB8 Toy Hackable

ISBuzz TeamJanuary 13, 20163 Mins Read

The Star Wars BB-8 toy can be hacked via a firmware update hijack. Security researchers claim that the firmware update process is flawed because it takes place via HTTP. Paul Farrington, senior solution architect at Veracode, the application security specialist have the following comments on it. [su_note note_color=”#ffffcc” text_color=”#00000″]Paul Farrington, Senior Solution Architect at Veracode : While news that the Star Wars BB-8 toy can be hacked is significantly less serious that the Vtech breach, due to the lack of data collection features, this case once again demonstrates the vulnerable nature of connected devices in the home. As we are seeing…

Read More

2015 Global Incident Detection and Response Survey

ISBuzz TeamJanuary 13, 20162 Mins Read

In the Rapid7 survey of 250+ global security pros, a majority of respondents report increased spending and focus on incident detection and response (IDR), yet the findings expose staggering gaps when it comes to security teams putting IDR theory into practice – and doing it in the right way. Critical challenges include: Too many alerts, too little time for security teams means risk goes undetected Today security programs, and specifically IRD solutions, are not yet helping to stop users from being the weakest link All the while, cybercriminals are evolving their strategies, tactics and techniques with speed and determination.In advance…

Read More

2016, the Year of Connection, Attacks and Regulations

ISBuzz TeamJanuary 13, 20165 Mins Read

In 2016 we will continue to see the line between personal and work blur, with an increasing amount of devices being used for both. The drive for internet attached devices in the home will see a rise in increasingly complex home networks – which risk providing an easier route for attackers that can then be used against individuals and as a portal to corporate networks. Network tools have been available to organisations since networks began, but in the home it is a new phenomenon. Friends and visitors also connect to the home wifi, and of course there is still the…

Read More

IP EXPO Manchester Returns for a Second Year, Driving Digital Transformation in the North

ISBuzz TeamJanuary 13, 20163 Mins Read

Following a successful first year supporting Northern business transformation, IP EXPO Manchester 2016 is now open for registration IP EXPO Manchester, part of the UK and Europe’s number one enterprise IT event series, today announces that the second annual IP EXPO Manchester event is now open for registration. The free-to-attend event, taking place on 18-19 May at Manchester Central, brings together a broad range of technologies across the entire IT spectrum that enable enterprises to embrace digital transformation and reap the business benefits. The event caters to IT directors, sysadmins, engineers, business owners across the Midlands and North of England,…

Read More

The Cost of a Data Breach and How to Avoid Paying it

ISBuzz TeamJanuary 13, 20165 Mins Read

Over the past 12 months there have been several high-profile data breaches which have hit the headlines. Recently, almost 157,000 TalkTalk customers had their personal details hacked. A small percentage of the stolen data, including names and addresses, were put up for sale shortly after the attack. Although the attack on TalkTalk will have come as a shock to its 4 million customers, attacks of this nature are becoming increasingly common. But what is the impact of data breaches? Sony Pictures, which was the victim of a cyber attack in 2014, predicted that the breach would cost $35M (£23M) for…

Read More
Previous 1 … 862 863 864 865 866 … 1,258 Next
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}