Concerns over mobile app privacy and security have grown so much that the FTC recently voted to specifically include mobile apps in the Health Breach Notification Rule (HBNR). Recent settlements also highlight the FTC’s aggressive action toward organizations that fail to prioritize digital privacy and security.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Generative AI (GenAI) has prompted fears about data security and privacy, but it may also be the tool that organizations have been looking for to improve security and privacy through better data handling.
Vendor relationships with B2B sharing economy companies are more transactional and often the workforce is also less meticulously vetted. The biggest risk most vendors face today (and one that CIOs are increasingly wary of) when leveraging B2B sharing services is cybersecurity.
Recent events like the SolarWinds breach are stark reminders that to safely migrate operations to the cloud, organizations need to have a thorough plan ahead of time that is centrally focused on governance and security.
A recent confirmed T-Mobile hack has been attributed to Salt Typhoon, the Chinese cyber espionage team that also breached Verizon and AT&T earlier in the year. That means the hackers were able to penetrate all three of the country's major mobile carriers in 2024.
Samsung has disclosed a year-long data breach impacting UK online store customers. The cybersecurity incident which took placed in July 2019 - June 2020 was only disclosed in November 2023.
ChatGPT will put information that is shared by users into its training model. It was reported that Samsung employees have fed it some source code and other sensitive data.
Software Bill of Materials (SBOMs) are catching on as companies seek better visibility in software supply chains and need accurate information for vulnerability disclosure requirements. But maintaining an accurate SBOM isn’t a quick and easy task. Here’s what to keep in mind when building an SBOM.
Researchers discovered that scammers used Popular TikTok profiles to push scam apps to underage children on Apple and Google Play stores earning over $500,000.
Love is in the Cloud as millions of people are looking to meet their match online. However, Cupid isn't the only one taking aim at people seeking love on dating apps during this time of year. Catfishers and scammers are on the prowl, taking advantage of those looking for love.










