With the number of machines rising to vastly surpass the number of people using them, machine identity management has recently garnered attention from IT leaders all over the world, especially among organizations undergoing a digital transformation.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Red Canary researchers said Silver Sparrow macOS malware infecting about 40,000 Macs using both Intel and ARM chips could deliver malicious payloads at a moment's notice.
Malwarebytes has debunked the common belief that Macs are safer, reporting that malware threats targeting Mac computers had almost doubled that of Windows machines in 2019.
Leading U.S. retailer Macy’s recent data breach is sparking concerns that the upcoming holiday shopping season could be filled with similar types of data breaches at other retailers.
Magecart attackers compromised at least 374 e-commerce sites running end-of-life Magento in a day, including planting 19 backdoors on a single website through SQL injection on a vulnerable plugin.
Recent research shows a sharp increase in Magecart attacks with a peak experienced in July when 962 sites were hit in one day and 17,000 domains infected through misconfigured Amazon S3 buckets.
Magecart cybercrime group appears to have broaden their supply chain attacks to target more sites by going after third-party advertising vendors that works with media or entertainment websites.
Researchers recorded the largest Magecart attack that compromised over 2,000 Magento stores and exposed the private and financial details of over 10,000 customers.
Magic Circle law firm Allen & Overy has confirmed a cyber attack claimed by the Russian LockBit ransomware group, which demanded a ransom and threatened to leak stolen data.
Cloud infrastructure provider Digital Ocean severed ties with the marketing automation provider Mailchimp after a security breach exposed its customer email addresses.










