Following Optus hack, the Telstra data breach appears to be limited to the signup process of a third-party rewards system for company staff, but two telcos losing personal information in two weeks has caused serious concern.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Businesses doing cross-border trade can benefit from following a set of best practices to understand the right markets to focus on, the unique elements of customer and fraudster behavior in those markets, and what customers expect from the online shopping experience.
More than two dozen open source projects hosted on GitHub repositories had fallen victim to new malware ‘Octopus Scanner’ that allows cyber criminals to gain control over the code.
Insider threats are on the rise. What's worse, these threats often fly under the radar for months before they're caught. To prevent an insider threat is to proactively identify and mitigate insider risks. Data and user monitoring tools can be critical by revealing how insiders use data in real-world workflows.
Cloud and mobility, including the blurred lines between personal and corporate devices has increased the complexity of identity and access management. Likewise, the surge in the sheer volume and variety of data has contributed to a more dynamic and multifaceted authorization process for enterprises.
When it comes to cybersecurity and privacy legislation, many organizations around the world are playing catch-up. Proper information governance can help with cybersecurity compliance.
In many ways, the benefit of cloud computing is also its main drawback. How can organizations keep their IT environments secure while leveraging the full benefits of a cloud-native approach?
Having a robust approach to cyber hygiene in healthcare organizations not only improves clinical cybersecurity and the efficiency of clinical operations, it also ultimately improves patient safety and privacy.
Popular domain registrar and web hosting company GoDaddy was slapped with an FTC order mandating a robust information security program for allegedly failing to stop data breaches and misleading customers about its cybersecurity practices.
There is now a new breed of highly sophisticated cyber criminals who are attracted by the huge financial gains made possible by highly targeted ransomware attacks. Today, with IoT being adopted across a wide variety of industries, it seems that it’s only a matter of time before cyber criminals take Internet of Things (IoT) devices hostage using ransomware, potentially placing hundreds of thousands of people at risk. In this article, we examine the rising threat of ransomware, the potential impact on the IoT environment and how we can avoid a global ransomware pandemic.










