By owning a trusted CA, Russia can also now host as many man-in-the-middle attacks, which are generally privacy attacks. Additionally, state-sponsored hacking groups can produce certificates for devices meant to intercept traffic and view all of the encrypted communications.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Factors like the COVID-19 pandemic has eased people into the idea of quicker, passwordless authentication options. From protecting finger scan data to real-time facial recognition best practices, let’s explore how the biometrics industry is enhancing its security measures.
Is your vulnerability management team overwhelmed and demoralized by the need to play catch up with a ceaseless flood of vulnerabilities? Using security intelligence can enable risk-prioritized vulnerability management.
Use of Shadow IT by employees for communications can harm an organization’s security and its culture. It also signals to employers that something is not working.
The data shows that in 2020, almost half of all global ransomware attacks were targeted towards municipalities. Even with limited budgets and resources available, there are still many resource-efficient measurements they can take to protect themselves.
One of the greatest technology equalizers for a smaller retailer’s digital transformation this holiday season is a software-defined wide area network (SD-WAN) platform that provides the network foundation for greater business and IT agility, flexibility, and security.
With COVID-19, pivoting to near-universal work from home has opened new areas of risk. How do we conduct tabletop exercises to prepare our response to a security incident?
With the aid of technology, insider fraud has outranked all other forms of fraud for modern businesses, ironically the companies are also using it to pre-emptively stop fraudsters in their tracks.
The relentless march to the cloud is good news for CIOs concerned about ransomware. And once most enterprises have most of their infrastructure there, ransomware attacks will become an occasional annoyance, not a catastrophic disaster.
Over the next 10 years, we will see companies continue to replace their on-premise network and security appliances with a secured corporate network over the internet. Remote access solutions like zero trust network access (ZTNA) and secure access server edge (SASE) are here to stay.










