The state government of Maine has confirmed a MOVEit data breach that leaked extensive personally identifiable information of basically all 1.3 million residents.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Finding the right balance between security and performance should be the building block of every computer system architecture. This blog post identifies some basic concepts of monitoring system health in an IT infrastructure.
Security leak of manufacturing keys from major device producers (such as LG and Samsung) allows signing of malware apps, providing full access to an Android device, as the operating system trusts any signed app with complete system-level access.
Migration to the cloud presents many unique challenges in protecting your data. Cloud Access Security Brokers (CASBs) can help protect corporate data while embracing cloud applications and services.
Just days before the inauguration ceremony, the outgoing Biden administration issued a sweeping cybersecurity executive order aimed primarily at improving the defenses of federal agencies and their contractors.
Uber cybersecurity incident was the result of social engineering by teenage hacker. Network breach was a total compromise and that the attacker had full access to Uber's systems.
Social Data, a data broker that appears to have been scraping social media sites for information, has exposed 235 million personal profiles in a data leak.
Major Japanese Defense Contractors Admit to Data Breach Incidents Dating Back to Over Four Years Ago
Two major Japanese defense contractors recently admitted to data breaches back in 2015 and 2018 when they were infected with malware and possibly had their files stolen.
The infrastructure for the Qakbot malware botnet that has been a plague since 2007 has been dismantled by an FBI-led law enforcement action. The botnet was composed of over 700,000 infected computers, and is responsible for hundreds of millions of dollars in damages worldwide during its run.
The CircleCI security breach leaves most of its CI/CD platform clients with a pile of time-consuming cleanup of assorted keys, tokens and variables as they are forced to immediately rotate secrets.










