Microsoft appears to be erecting new barriers for partners who want to deploy Microsoft products on certain other cloud computing providers, like AWS or Google Cloud Services in proposed reform to their Partner Licensing Agreement (SPLA).
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
The surveillance concerns surrounding TikTok are legitimate, yet they are no more legitimate than the spyware potential of countless Chinese IoT devices.
A threat actor is selling the personal information of over 440,000 Life360 customers stemming from a database leak from an unsecured login API endpoint.
15 million Canadians’ sensitive personal information was exposed in LifeLabs data breach and the company is now facing a civil lawsuit seeking $1.14 billion dollars in damages.
Lift and Shift is the cheapest and easiest cloud migration method. Organizations should consider the different application components and how they interact with each other to determine the best approach.
Report focuses on what open source software is most commonly deployed in both private and public organizations, with an eye toward better evaluating potential vulnerabilities and where security support should be concentrated.
A massive supply chain attack on LiteLLM open-source AI gateway has exposed the authentication secrets of over 2,500 organizations and more than 434,000 CI/CD pipelines.
Leading insurer Lloyd's of London has issued a dire warning about a potential cyber attack scenario on one of the world's major payments systems, estimating that the global cost would total about $3.5 trillion and that much of the recovery cost would not be covered by insurance policies.
Lloyd’s of London has issued a bulletin indicating that its cyber insurance products will no longer cover the fallout of cyber attacks exchanged between nation-states. This definition extends to operations that have "major detrimental impact on the functioning of a state."
Lloyd's of London has told its global network of insurer groups that new or renewed cyber insurance coverage policies must exclude nation-state attacks as of March 31, 2023.










