A decentralized identity is essentially a digital identity owned and controlled by a person or organization rather than a centralized authority.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Google's report of novel AI-enabled malware in the wild is a game changer if these capabilities are now being picked up by sophisticated attackers. It identifies two specific new malware families, "PROMPTFLUX" and "PROMPTSTEAL," that are the first to incorporate a "just in time" dynamic function creation feature that draws on an LLM.
Passwords are becoming more of a liability than the security asset they were intended to be. Should companies consider passwordless technologies for better benefits and cost savings?
Victory for Pharma Giant Merck in NotPetya Cyber Attack Suit Redefines “Act of War” Insurance Claims
Victory for Merck in the long-simmering suit on the 2017 NotPetya cyber attack means that cyber insurers now have much less ground to stand on when denying insurance claims on an "act of war" basis.
Just a few simple strings on malware are all it takes to defeat Cylance antivirus software. This is a crushing blow for those who predicted AI and machine learning are the future of antivirus protection.
The final amount of stolen crypto is still being tallied as investigations continue, but about 56 BTC (about $1.5 million) has been confirmed to be lost. General Bytes has over 15,000 bitcoin ATMs in circulation in over 100 countries.
CISA published an insight document for critical infrastructure organizations to prepare for the transition to new post-quantum cryptography standards that NIST will announce soon.
While financial services firms are approaching cloud security similarly to other industries and share the same concerns, they are being held to more stringent compliance regulations for privacy and data protection. They are also at higher risk for threats waged by opportunistic, money-motivated cybercriminals and nation-state hacktivists.
MGM's ransomware attack in September is expected to have $100 million negative impact for Q3 due to cleanup costs and lost business. The company believes that its cybersecurity insurance will cover nearly all of the ransomware attack's associated costs.
More than two dozen open source projects hosted on GitHub repositories had fallen victim to new malware ‘Octopus Scanner’ that allows cyber criminals to gain control over the code.










