Though it is not yet a matter of official policy, inside sources indicate CISA is weighing a three-day deadline for fixing critical vulnerabilities in federal government systems that have been observed being exploited elsewhere.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Israel may become a big export player for both offensive and defensive cyber weapons used for cyber espionage as it now takes as little as four months for approval of sale.
DHS is now requesting that the U.S. Congress grant it extraordinary administrative subpoena powers so that it can request ISPs to turn over the contact information for the owners of industrial control systems.
Remote work has put more pressure on the technology that companies have in place. What is important heading into 2021 is that we look at what went well, what has to change, and what lessons we can learn.
Microsoft/Marsh survey examines whether Asia’s confidence in its cyber resilience stems from truly strong defensive postures, or a misunderstanding of the threat landscape.
The threat of cyber attacks on connected cars is getting very real as report shows majority of new smart vehicles from top 10 auto manufacturers are vulnerable and will be connected to Internet.
Cloud computing has evolved rapidly and brought new risks to cloud security. Companies need to find ways to securely use multiple cloud services and applications.
A data breach on consumer lender TMX and its subsidiaries Titlemax, Titlebucks, and Instaloan leaked the personal information, including social security numbers, of 4.8 million customers.
Holiday Shopping ID Theft Survey revealed that consumers are more concerned about retail data breaches, are more aware of identity protection services, and has embraced online shopping largely due to the pandemic.
APIs power the digital experiences of consumers today. However, as API use increases, so do security risks because APIs are easy to deploy but hard to control.










