China has announced new requirements for companies that might pose a "national security" threat, chiefly those that have large stockpiles of personal data that might wind up being transferred overseas.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A new and quickly growing segment of fraud scams, so-called "targeted links," blend in elements of digital marketing such as targeted advertising and participation in legitimate ad networks.
US and UK have dispatched cyber warfare advisors to Ukraine to prepare for potential cyber attacks. The prospect is not unprecedented, as Russia has disabled Ukrainian power stations before.
The past year has shown organizations that uncertainty and a transformed reality are the new normal in business. Organizations have had to respond in real-time to shift their cybersecurity strategies and keep up with an expanding IT infrastructure, the explosion of IoT devices, and a new wave of threats from more sophisticated attackers.
Today, machine identities exceed the number of human identities in the enterprise. With strong identity governance and visibility over every smart device, bot and service, organizations can proactively identify and mitigate unauthorized access and other threats.
Alibaba's security team was the first to discover the Log4j vulnerability. Though Alibaba Cloud was not compromised, the company is nevertheless facing consequences for failing to notify Chinese regulators within two days as required by new laws passed in September 2021.
UK law enforcement has shared over half a million compromised passwords found in cloud storage with Have I Been Pwned. The headline item is that over one-third of these passwords (about 225 million) have not been logged before.
We know that cybersecurity will make or break the digital business. Faced with relentless growth in cyberattacks, coupled with the complexity of today’s digital ecosystem, how should your business respond?
After an apparent refusal to pay a ransom demand, Russian hackers have leaked a sampling of 13 million records of UK police data to the dark web in retaliation. The records were stolen from a police contractor.
Natural gas supplier Superior Plus suffered a ransomware attack that knocked its systems offline although customer safety and security and personal data were not affected.










