BadUSB attacks have proliferated in the last year for a simple reason — they work as long as curiosity is part of human nature. The impact of BadUSB is tantamount to allowing an unknown hacker to sit at an employee’s unlocked computer and directly attack the network from the inside.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Cryptocurrency is increasingly being added to businesses' balance sheets because it helps to reach new customers, and it provides a way to avoid many fees. As with any financial asset, the question of how to secure it is moving to the forefront of the CFO’s mind.
The evolution of software-defined vehicles (SDVs) has led to exciting innovation in the automotive industry, but it has also brought challenges surrounding vehicle safety and security. Unlike traditional vehicles, which relied on mechanical systems with limited software, SDVs are “software on wheels.”
New paper tackles the two conflicting challenges that complicate compliance with regulations: fear of failing an audit versus the costs of running effective programs.
Banco Santander, a Spanish multinational bank, has suffered a third-party data breach after a threat actor accessed a database managed by an external vendor.
Bangladesh has initiated a lawsuit against Rizal Commercial Banking Corp for the 2016 cyber heist of US$81 million, supported by the Federal Reserve Bank of New York.
Barnes & Noble was hit by a suspected ransomware attack that prevented customers from accessing their libraries and exposed their personal information, including email addresses and transaction history.
Barracuda ESG zero-day attacks by Chinese state-sponsored threat actors compromised multiple U.S. state, local, and tribal government email servers. Over 200,000 private and government organizations worldwide depend on Barracuda email security gateway (ESG) appliances.
The British Broadcasting Corporation (BBC) has notified the UK's Information Commissioner's Office (ICO) and the Pensions Regulator of an employee data breach affecting 25,000 BBC Pension Scheme members.
Supply chain security is in the news once again as a cyber attack on Zellis, a UK-based payroll provider, has led to the compromise of numerous organizations. Among the biggest names impacted by the attack are the BBC, British Airways and major UK drugstore chain Boots.










