Infosecurity News

#RSAC: The Most Dangerous New Attack Techniques
Annual panel at the RSA Conference identifies a number of areas of concern, including improper session handling and an evolution of ransomware

#RSAC: The Rise of the Chief Product Security Officer
Experts at the RSA Conference outline the role, challenges and opportunities for the emerging job category of the chief product security officer (CPSO)

#RSAC: Cyber-threat Landscape “the Worst It’s Ever Been” Due to Nation-State Behaviors
Iran, Russia, North Korea and China are becoming increasingly reckless in their actions

#RSAC: What Makes a Security Program Measurably More Successful?
Wendy Nather and Wade Baker have a few data-driven ideas about which activities actually help to make security programs work and which ones have less impact

USPS Reportedly Uses Clearview AI to Spy on Americans
US Postal Service reportedly uses facial recognition tech to identify unknown targets in investigations

Cyber-bully Supermodel Dropped by 3 Stores
Chrissy Teigen’s apology for previous cyber-bullying not enough to stop retailers from ditching her products

Nigeria Suspends Official Charged with Defrauding US
Governor’s aide suspended following arrest over unemployment benefits fraud

HMRC Investing Heavily in Cybersecurity Training for Staff, Official Figures Show
The Art of Hacking was the most popular course for HMRC security staff

Web App Bugs Drove Multiple Breaches Per Firm in 2020
Barracuda Networks claims bad bots are the main challenge

Exchange Server Attackers Launched Scans Within Five Minutes of Disclosure
Cheap cloud services support threat actor efforts

Colonial CEO Reportedly Confirms $4.4 Million Ransom Payment
Firm speaks out about attack

#RSAC: The Security Risks of Cryptocurrency
While it's not likely that cryptocurrency will replace the US dollar as a reserve currency in the short term, RSA Conference session details cryptocurrency security risks and mitigations

#RSAC: The Lasting Impact of the COVID Pandemic on Privacy
A year of lockdown, remote work and remote learning could well be the spark that helps to define a new era of user privacy, according to a panel of experts at the RSA Conference

#RSAC: SolarWinds CEO Provides New Details into Attack and Response
Sudhakar Ramakrishna gives details of investigations into the supply chain attack

UHS Data Breach Lawsuit Proceeds
Data breach lawsuit against healthcare provider gets the go-ahead but only for one patient

Splunk to Acquire TruSTAR
California tech company Splunk announces plan to snap up cloud-native security firm

DarkSide Gang Retires on $90m
Wallet containing Bitcoin worth over $90m is reportedly ransomware gang’s ill-gotten gains

#DTX: Security Pros Must Focus on Human Behaviors to Address Cyber-challenges
There's more the industry can do to prevent social engineering attacks and scams

Regulator Fines QR Code Provider Which Spammed Customers
St Albans company sent 84,000 nuisance emails

RDP Hijacked for Lateral Movement in 69% of Attacks
Sophos report warns that dwell time is up to 11 days



