Infosecurity News

Orgs Are Holding Back on Cloud-Based Security
Enterprises are adopting the cloud much faster than their security teams can keep up with – and misunderstanding about cloud environments is pervasive.

Organizations Failing at Timely Detection of Threats
More than two-thirds of organizations said that even if they detected a major incident, they would be unable to contain it within that same time frame.

#CyberUK: NCSC Says Diversity Will Aid a Safer Britain
A safer digital Britain will be built on innovation, agility and a diverse workforce

Cyber-Criminals Could Earn CEO-Level Salary: Report
Bromium study highlights problems facing police

Vevo YouTube Channels Suffer Music Video Hack
A number of high-profile music videos defaced, according to reports

#CyberUK18: Bank of England Calls for More Cyber Translators
Cybersecurity experts should look to be better translators of issues to the board

NCSC: UK Firms Face Rising Supply Chain Cyber-Threat
GCHQ body warns that online attacks continue to rise

Insiders Blamed for Over a Quarter of Breaches
Verizon report highlights risk of human error and misuse

Brazilian Criminals Use HTTP Injectors to Gain Free Mobile Internet Access
The injectors modify HTTP headers on network requests with malicious code; the code then tricks captive portals into connecting to the internet.

17% of Workers Fall for Social Engineering Attacks
More than a quarter (27%) of recipients clicked the link in mock phishing mails.

Fraudsters Are Stealing Corporate Funds with Tampered Debit Cards
An elaborate fraud is bent on draining the bank accounts of large corporations.

GDPR Privacy Policy Fail: Only 34% of EU Sites Compliant
Firms need to up their game ahead of deadline next month

Consumer Crypto-miners Soar 4000% in Q1
Malwarebytes sees nefarious mining activity continue to hit users and businesses

Cisco Protocol Abused by Nation State Hackers
Over 160,000 systems remain vulnerable, says Talos

Raróg Crypto-Miner Allows Affordable Criminality
It mines unsuspecting victim machines for Monero and other virtual currencies, but its most unusual characteristic is how cheap it is.

One-Fifth of Open-Source Serverless Apps Have Critical Vulnerabilities
According to PureSec's audit, most vulnerabilities and weaknesses were caused by human error.

Sears/Delta Card Breach Widens to Include Best Buy
The culprit is a cybersecurity breach at third-party software provider, [24]7.ai, which provides online automated chat.

Echoes of Mirai: New IoT Botnet Targets Financial Firms
Recorded Future warns of likely IoTroop activity in January

Hospitals Exposed by Connected Devices
Trend Micro warns of growing attack surface and supply chain risk

Breached Records Fall 25% as Cloud Misconfigurations Soar
Cyber-criminals focused on ransomware in 2017, says IBM



