Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for Ken Westin

Ken Westin

Ken Westin
  • Website

Ken Westin, Director, Security Strategy at Cybereason

IRS Data Breach may have Compromised 300,000 Taxpayer Accounts

Ken WestinAugust 27, 20152 Mins Read

The IRS cyberattacks may have affected more than 300,000 taxpayer accounts – and more than 600,000 breaches were attempted. Ken Westin, senior security analyst for Tripwire commented on the recent massive cyber attacks. [su_note note_color=”#ffffcc” text_color=”#00000″]Ken Westin, Senior Security Analyst for Tripwire : “This is a perfect example of how unrelated data breaches imperil us all. Cybercriminals have identified ways to correlate and aggregate data compromised in other breaches to increase their profits.  The information that was used such as  Social Security numbers, date of birth, tax filing status (married or not) and street address is the same type of information that…

Read More

Cloud Services is Compromised by Russian Hackers

Ken WestinAugust 6, 20152 Mins Read

Ken Westin, senior security analyst for Tripwire has been noting the potential for this “Hammertoss” cyber espionage scenario for some time and was not surprised by the FireEye report that came out. Ken Westin, senior security analyst for Tripwire : “This particular method of attack is pretty clever, as it takes advantage of most enterprise organizations trust and whitelisting of well known social media platforms. By downloading binary images and embedding commands in the images they easily circumvent most detection mechanisms. The additional measure of encrypting the message within the image serves a double purpose to both hide the messages in…

Read More

Classified Information but was not Identified as Classified

Ken WestinAugust 3, 20152 Mins Read

With the latest information from the inspector general that some emails that Hillary Clinton sent from her private server contained classified information but was not identified as classified. Ken Westin, Security Analyst for Tripwire says this issue puts a light on the challenges of Shadow IT in Government. Also explains that without direct access to a systems and data, it is difficult to identify sensitive data that has been exposed. Ken Westin, Security Analyst for Tripwire :  “Regardless of the politics involved, the issue here outlines challenges of “Shadow IT” either in government or the enterprise. When IT administrators do not…

Read More

ID Theft-Protection Firm Fails at Protecting Data

Ken WestinJuly 29, 20152 Mins Read

Customers who hired the infamous ID theft-protection firm Lifelock to monitor their identities after their data was stolen in a breach were in for a surprise. It turns out Lifelock failed to properly secure their data. Ken Westin, Senior Security Analyst, at Tripwire commented on the Theft-Protection firm lifelock. Ken Westin, Senior Security Analyst, Tripwire : “All consumer service businesses need to prove that they have taken proper steps to protect their customers through the implementation of best practices for security controls and policies. Failure to continuously apply and update security controls can be a PR disaster for any business,…

Read More

Comment on Violates 2010 FTC Settlement – Fails to Protect Data

Ken WestinJuly 28, 20152 Mins Read

Commenting on FTC news that LifeLock violated, a 2010 settlement with the agency and 35 state attorneys general by continuing to make deceptive claims about its identity theft protection services, and by failing to take steps required to protect its users’ data. Ken Westin, a cybersecurity expert with Tripwire, provided the following comments. Ken Westin, Senior Security Analyst for Tripwire (www.tripwire.com): “All consumer service businesses need to prove that they have taken proper steps to protect their customers through the implementation of best practices for security controls and policies. Failure to continuously apply and update security controls can be a PR…

Read More

Security Expert Comments on Adobe to Patch Hacking Team’s Flash Zero-Day

Ken WestinJuly 13, 20152 Mins Read

Brian Krebs reported that Adobe Systems Inc. said it plans to issue a patch to fix a zero-day vulnerability in its Flash Player software that is reportedly being exploited in active attacks. The flaw was disclosed publicly over the weekend after hackers broke into and posted online hundreds of gigabytes of data from Hacking Team, a controversial Italian company that’s long been accused of helping repressive regimes spy on dissident groups. For more information visit HERE. Ken Westin, Senior Security Analyst for Tripwire (www.tripwire.com): “The market for zero day vulnerabilities is alive and well and as the Hacking Team breach…

Read More

Security Expert Comments on Card Breach at Donald Trump Hotel Properties

Ken WestinJuly 9, 20151 Min Read

Commenting on reports that there has been a credit card breach at Donald Trump’s hotel properties, Ken Westin, senior security analyst for Tripwire, provided the following: Ken Westin, senior security analyst for Tripwire (www.tripwire.com): “Much like many of the other breaches we have seen targeting the retail and hospitality, this is not an attack that targeted a single hotel or store.  Instead, this was the result of a larger more sophisticated and orchestrated attack. When a larger group of organizations appear to be involved, it usually indicates that the breach took advantage of shared network resources or applications. “Many organizations…

Read More

Security Expert Comments on Unbreakable Encryption

Ken WestinJune 29, 20152 Mins Read

Toshiba is working on an unbreakable encryption solution that would create a one-time encryption key. The key for Toshiba’s quantum-cryptography system will be delivered as photons through a custom-made fiber optic cable not connected to the Internet. Ken Westin Security Analyst for Tripwire commented on the unbreakable encryption. Ken Westin, Security Analyst for Tripwire :  “It is great to see new innovations and researched focused on better methods of encrypting data, however when I hear “unbreakable encryption” or “100% secure” I immediately think of the Titanic. Making such claims in the world of security, particularly when it involves new technology is getting a bit ahead of ourselves,…

Read More

Cyberespionage Comes to Professional Sports

Ken WestinJune 24, 20151 Min Read

The F.B.I. is looking into the whether or not the Front Office for the St. Louis Cardinals hacked into the Houston Astros internal networks containing confidential information about their players. Ken Westin, Security Analyst for Tripwire says hacking isn’t always about stealing credit cards, gaining a competitive advantage is also a reason as well. Comments from Ken Westin, Security Analyst for Tripwire : “Hacking isn’t always about stealing credit cards, but can also be about access to information to provide a competitive edge. We have increasingly seen this behavior in business where hackers steal and sell information to competitors or…

Read More

Security Expert Comments on Cardinals Face FBI Inquiry in Astros Hack

Ken WestinJune 23, 20151 Min Read

The St. Louis Cardinals are facing an FBI and Justice Department inquiry in the hacking of the Houston Astros’ Network , Ken Westin, senior security analyst at Tripwire, provided the following comments: Ken Westin, senior security analyst at Tripwire (www.tripwire.com): “Hacking isn’t always about stealing credit cards, but can also be about access to information to provide a competitive edge. We have increasingly seen this behavior in business where hackers steal and sell information to competitors or investors to give them an edge. A baseball team hacking another team is a logical extension of this type of attack, as it…

Read More
1 2 Next
ISB-Bora-Side-Bar

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}