Close Menu
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Facebook X (Twitter) LinkedIn
Facebook X (Twitter) LinkedIn
Information Security BuzzInformation Security Buzz
  • Home
  • Articles
    • Attacks
      • BEC
      • Data Breach
      • DDoS
      • Evasion Attacks
      • Injection
      • Malware
      • MITM
      • Phishing
      • Ransomware
      • RCE
      • Social Engineering
      • Spoofing
      • Spyware
    • Business and Policy
      • BCP and DRP
      • GRC
      • Regulations
    • Data Protection
      • DLP
      • DRM
      • Encryption
      • IAM
    • Future, Trends and Insight
      • AI
      • Events & Community
      • Emerging Tech
      • Expert Panel
      • Interviews With Experts
      • Insights
      • Study & Research
    • Resources
      • Guides
      • Tools
      • Training & Education
    • Security
      • API
      • Apps
      • Cloud
      • Critical Infrastructure
      • Endpoint
      • Hardware
      • IoT
      • Mobile
      • Network
      • OT
      • Port Security
      • Security Architecture
      • Software Development
      • Supply Chain
      • Zero Trust
    • Threats and Vulnerabilities
      • Emerging Threats
      • Insider Threats
      • Risk Management
      • Threat Intelligence
      • Zero Day
  • News and Exclusives
    • Latest News
    • ISB Exclusive
    • Positive News
  • Who We Are
    • About Us
    • Information Security Buzz Expert Panel​
    • Write for Us
    • Media Pack
  • Contact Us
  • Newsletter
Subscribe
Information Security BuzzInformation Security Buzz
Home - Archives for ISB Editorial Staff - Page 21

ISB Editorial Staff

ISB Editorial Staff
  • Website

Expert Comments on Proof-of-Concept PLC Worm that could take down Power Plants and Utilities

ISB Editorial StaffMay 9, 20161 Min Read

A proof of concept worm demonstrated at BlackHat Asia shows that the programmable logic controller (PLC) worm could be a disaster for power plants and other utilities. David Meltzer, Chief Research Officer for Tripwire provides an insight below. David Meltzer, Chief Research Officer, Tripwire: “This research shows how serious the risk is to industrial environments.  While theoretically this could spread extremely quickly, organizations that follow good security practices can do much to mitigate these kinds of attacks today.” Meltzer explains, “Industrial firewalls that implement IEC62443 guidelines segment networks into zones that would prevent PLCs from broadly communicating with each other.  Following…

Read More

Encryption; Friend of Freedom, Guardian of Privacy

ISB Editorial StaffMay 9, 20163 Mins Read

The issue of government access to private encrypted data has been in the public eye since the San Bernardino shootings in December, 2015. When an iPhone was found the FBI requested that Apple write code to override the phone’s security features.  The FBI was ultimately able to decrypt the phone without Apple’s assistance.  However, the ensuing debate over encryption has just begun. High profile criminal and national security issues serve to shed light on an issue which is pervasive throughout the country.  Local governments presumably have thousands of devices they would like to decrypt for investigatory purposes as New York…

Read More

272 Million Email Accounts Hacked

ISB Editorial StaffMay 6, 20166 Mins Read

One of the biggest cyber attacks ever has left millions of email users at risk from being hacked. 272 million email accounts have been compromised, with Russian hackers obtaining user names and passwords. Gmail, Yahoo and Microsoft mail users are all thought to have been targeted, although the majority of the hack appears to have hit Mail.ru accounts. IT Security experts from ESET, MIRACL, Veracode, AlienVault, Imperva, Lieberman Software and Centrify  provide insight: Ondrej Kubovič, Security Specialist at ESET: “According to information provided by Hold Security, it seems to be a yet another large data breach, the origin of which was not found…

Read More

Ransom Aware: Kaspersky Lab Detected a 14 per Cent Increase in New Ransomware Modifications in Q1 2016

ISB Editorial StaffMay 6, 20164 Mins Read

Ransomware has overtaken news about APT attacks to become the main topic of the quarter. According to Kaspersky Lab’s Q1 malware report, the company’s experts detected 2,900 new malware modifications during the quarter, an increase of 14 per cent on the previous quarter. Kaspersky Lab’s database now includes about 15,000 ransomware modifications, and the number continues to grow. In the first quarter of 2016, Kaspersky Lab security solutions prevented 376,602 ransomware attacks on users, 17 per cent of which targeted the corporate sector. The number of attacked users increased by 30 per cent compared to Q4, 2015. One of the…

Read More

Google Being Given Access to NHS Data

ISB Editorial StaffMay 6, 20162 Mins Read

In light of Google being given access to NHS data, David Emm, principal security researcher at Kaspersky Lab commented below. David Emm, principal security researcher at Kaspersky Lab: The news of Google being given access to NHS data is an interesting development, not least because this agreement brings the issue from the theoretical ‘Are you happy with the NHS sharing data in principle?’ to ‘Are you happy for a commercial company (in this case Google) to have your data?’ In fact, a recent study by Kaspersky Lab found that UK consumers feel helpless about increasingly complex online threats to their…

Read More

New Global Botnet Campaign ‘JAKU’ Unveiled

ISB Editorial StaffMay 6, 20162 Mins Read

Forcepoint Security Labs Special Investigations team has discovered and documented a global botnet affecting thousands of victims – we call this investigation “JAKU”. What is JAKU? JAKU is the name of the investigation by the Forcepoint Security Labs Special Investigations team into a botnet campaign. Obscured by the noise of thousands of seemingly indiscriminate botnet victims, the JAKU campaign performs a separate, highly targeted operation. JAKU has approximately 19,000 victims at any one time spread over 134 countries! JAKU has a truly global footprint but we found concentrations of Command and Control servers and victims in APAC. Victims were observed…

Read More

Don’t Wave the White Flag: Practical Steps to Avoid and Stop Ransomware Before It’s Too Late

ISB Editorial StaffMay 6, 20165 Mins Read

Another day, another hospital shut down by ransomware. And while going back to pen and paper and avoiding anything connected to the web may start to sound like a valid option, it’s not a realistic one. You can’t just throw in the towel or wave the white flag. However, there are a few practical steps you can take to avoid being taken down by ransomware and shut it down if your company falls victim. Avoiding Ransomware There are several techniques a company can use to avoid ransomware and some of the methods being actively discussed include changing your computer’s language to…

Read More

The Anatomy of a Banker Malware – Unraveling Marcher

ISB Editorial StaffMay 6, 20163 Mins Read

Recently, the Check Point research team had the opportunity to analyze a mobile banker malware attack from end-to-end. Our team managed to lay hands on the infiltration vector, the malware itself, and the attacker’s Command and Control (C&C) servers. This attack gave us a rare chance to understand the full flow of an attack from infiltration to theft. The malware we observed is the notorious Marcher banker. This malware has greatly evolved since it first appeared in 2013, targeting Russian Google Play users by stealing their credit card information. It has developed a capability to steal bank credentials as well,…

Read More

Samsung Smart Home System Easily Hackable

ISB Editorial StaffMay 5, 20165 Mins Read

A report from a University of Michigan & Microsoft research team demonstrates how Samsung’s SmartThings platform may be especially vulnerable to hackers. Security experts from Rapid7, prpl Foundation and Veracode provide an insight below. Deral Heiland, Research Lead, Rapid7: The University of Michigan research conducted on the Samsung Smart home IoT solutions points out several key issues that span well past Samsung and potentially impacts a large quantity of smart technology. Three important areas were pointed out during this research.     Excessive access rights of the primary Mobile application     Insecure 3rd party application with excessive access rights…

Read More

Instagram Security Flaw Discovered

ISB Editorial StaffMay 5, 20162 Mins Read

Young bounty hunter discovered a security vulnerability in Instagram, which allowed him to delete account information, Paul Farrington, Senior Solution Architect at Veracode explore the value of bounty programmes.. Paul Farrington, Senior Solution Architect at Veracode: “That once again a young adult was able to learn techniques picked up from YouTube and online articles to successfully hack a high profile brand continues to demonstrate the value of Bounty programmes and responsible disclosure to companies. “For while in this case, no users’ content was at risk as the bug was found as part of a bounty programme, organisations can’t all rely on…

Read More
Previous 1 … 19 20 21 22 23 … 41 Next
ISB-Bora-Side-Bar

No se ha podido establecer conexión. Error 429

 
ISB-Bora-Side-Bar
Black ISB Logo

Information Security Buzz is an independent resource that provides the experts’ comments, analysis, and opinion on the latest Cybersecurity news and topics

X (Twitter) LinkedIn Facebook RSS

Working With Us

  • About Us
  • Advertise With Us
  • Contact Us

Write For Us

  • How To Contribute

The Pages

  • Privacy Policy
  • Cookie Policy
  • AI Policy
  • Terms & Conditions
  • Copyright Notice

Information Security Buzz and all its contents are copyright © 2014-2025. All rights reserved. All third-party trademarks are recognized.

Type above and press Enter to search. Press Esc to cancel.

Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}