Infosecurity News

#InfosecNA18: Building a Security Awareness Program
Panelists share tips on creative ways to train employees on security awareness.

#InfosecNA18: Mitnick Talks Social Engineering and Attack Tactics
Social engineering continues to be a success as attack tactics work

Dutch Film Boss Sacked After €19m BEC Loss
Finance director also fired after failing to spot major scam

ICO Prosecution Leads to First Jail Sentence
Privacy watchdog sees data thief go to prison for six months

Cathay Pacific Admits Cyber-Attack Lasted Months
Airline reveals deeper cybersecurity malaise at the firm

Nordstrom Quick to Tell Employees of a Data Breach
After a data breach was detected at Nordstrom, co-president Blake Nordstrom contacted employees.

Facebook Bug Let Websites Access Private User Data
Facebook reportedly fixed a bug that granted websites access to user info and their contacts.

Countries Back the Paris Call to Secure Cyberspace
French president Emmanuel Macron launched the Paris Call for Trust and Security in Cyberspace at the UNESCO Internet Governance Forum.

Employees’ Poor Security Habits Getting Worse, Survey Finds
87% of millennials reuse passwords across both personal and professional accounts

Experts Slam Employee Microchip Plans
It’s claimed chips could improve security by restricting physical access

Most European Retailers Saw Fraud Rise This Year
Adyen study reveals growing interest in biometrics

Cyber-Attacks Are Top Business Risk in North America and Europe
World Economic Forum report reveals growing concern from private sector

WannaCry Still Alive, Reaches Almost 75,000 Victims
Ransomware is still the most widespread cryptor family

NIS Directive Gets Real After OES Deadline
So-called “operators of essential services” have now been identified

Chinese Head Fired After Cryptomining at School
Energy bills spiked after machines were covertly installed

Bank of England Stress Tests Financial Sector
Cyber-resilience exercise was held on Friday

Stealthy Crypto-Mining Malware Evades Detection
A coinminer goes undetected by using Windows Installer as an evasion technique, says Trend Micro.

Threat Actors Exploiting Red Team Tool JexBoss
The NCCIC issued a CERT alert warning of vulnerabilities in the JBoss application server.

IBM's Watson to Rank Threat Severity for NIST
With thousands of vulnerabilities reported each week, NIST will rely on AI to help with scoring.

Phishing Attempts Soar to 137 Million in Q3
Kaspersky Lab reveals tried-and-tested alongside new scam tactics



