The CFAA case of Van Buren v. U.S. has concluded with a decision resulting in a clarification of how crimes involving "authorized access" are defined.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
In a hybrid identity environment, Active Directory professionals need a good understanding of Azure Active Directory (AAD) roles, applications, and multifactor authentication (MFA) to effectively secure the environment.
Brands need to safeguard their social presence, protect their customers’ data and avoid account takeover fraud after massive data leaks like Facebook’s.
A little over half of the $4.4 million Colonial Pipeline ransomware payment has been recovered by the FBI, and in the process some questions about the source of the attack may have been answered.
China-based game developer exposed personal information and transaction records of nearly 6 million Battle for the Galaxy players in an unsecured ElasticSearch data leak.
The COVID-19 pandemic presented a moment of truth for companies in business resilience. The need for digital-first businesses that are customer-centric, data-driven, and deliver fast time to value which was an option is now an imperative.
The Metropolitan Transportation Authority says that Chinese hackers breached three computers in the New York subway via Ivanti’s Pulse Connect Secure VPN critical vulnerabilities.
Comprehensive IoT security requires an integrated group of device management services, including secure device commissioning, certificate management, a mechanism for providing firmware updates over the air, and strong authentication and authorization capabilities.
The DOJ elevated the priority of ransomware attacks, comparing them to terrorism and directing U.S. Attorneys to coordinate investigations through the ransomware task force.
A new password leak, the largest to date, contains over 8.4 billion credentials among which may have been the account used to get into Colonial Pipeline's network.










