While we often think about malicious users when we speak of insider threats, the "real" problem lies with users that may unintentionally be putting their organizations at risk. This includes users that get phished, bypass controls for convenience or efficiency, and connect their own devices to the corporate networks.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Hot Topic has suffered a data breach affecting 57 million retail customers stemming from a compromised cloud account without multi-factor authentication (MFA).
Hackers have listed 860GB of private source code and assets stolen from Target’s Gitea self-hosted software development platform for sale on an underground hacking forum.
We look at the ease of use, reliability and strength of Apple's iPhone X new Face ID security feature. Should you keep your face (password) to yourself?
Alibaba's security team was the first to discover the Log4j vulnerability. Though Alibaba Cloud was not compromised, the company is nevertheless facing consequences for failing to notify Chinese regulators within two days as required by new laws passed in September 2021.
Simply confirming that phone numbers are linked to WhatsApp accounts can be a security risk. Confirming that a number is registered and active makes it more valuable and more of a priority to spammers, scammers and hackers. The security flaw can also expose someone using the app in a country where it is banned.
SaaS solutions are widely used and are mission-critical for their users. As such, they should be treated with the utmost importance, just like their mission-critical non-SaaS business applications. Solutions are now available for vendor-agnostic SaaS backup.
The average cost of data breach has hit an all-time high, up almost 10% from last year to $4.24 million. That average cost increases greatly when remote workers are involved (to $4.96 million).
Voicemail Phishing Attacks Threatens 100,000 Inboxes, Leaving Remote Workers Particularly Vulnerable
100,000 inboxes of remote workers have recently fallen victim to voicemail phishing attacks that could successfully bypass secure email gateways and DMARC authentication protocol.
Technologies like AI and Machine Learning can give companies a competitive lead in terms of information security and data safety. How can these technologies support cybersecurity?










