Infosecurity News

#Infosec17 Coe: Relationship Building is Key to Managing Risk
IAAF chairman says breached firms could benefit from being more transparent

#Infosec17: GDPR Compliance: Carrot is Better Than the Stick, Says ICO STO
Opportunity GDPR compliance affords from a data protection standpoint could inspire companies more than the threat of fines

#Infosec17 Dangers and Dependencies of Open Source Modules Detailed
Open source modules can contain major security problems, and are often relied upon by thousands of dependents.

Healthcare the Top-Targeted Vertical for Cybercrime
Reconnaissance, lateral movement and exfiltration detections have all increased by more than 265%.

North American, Global Workforce Gap to Hit 1.8m by 2022
A full 68% of cyber-workers in North America believe the workforce shortage is due to a lack of qualified personnel.

#Infosec17 Blockchain Could Be Next 'Cybersecurity Frontier' by 2025
KPN CISO argues there’s much work to be done before then

#Infosec17: Paxman Talks Trust at Infosecurity Europe
Veteran broadcaster dubious about Russian election hacking allegations

#INFOSEC17 Malwarebytes: WannaCry was Amateur Attackers Using Sophisticated Exploit
The WannaCry ransomware was ‘amateur’, but using a sophisticated exploit was the reason for its success.

Turla Uses Instagram in Latest Campaign Wave
Turla has been targeting governments and diplomats for years, but using social media to connect with the C&C is new.

#Infosec17 IoT Testing Must Focus on the Entire Ecosystem
Rapid7 explains importance of holistic approach to testing
#INFOSEC17: Ransomware and IoT are Greatest Cyber-Threats of 2017
In the Infosecurity Europe keynote discussion about risks, threats and adversaries, Rik Ferguson, VP Security Research at Trend Micro and advisor to Europol and James Lyne, security researcher at Sophos, talked about the latest cyber-risks.

80% of NGFWs Fail to Detect Evasions
In independent testing, the average security effectiveness rating was 67.3%.

#Infosec17: Security Doesn’t Work if it “Doesn’t Work for People”
Time for a shift in thinking if we are to improve user behavior

#Infosec17: Botnets & Their DDoS Attacks Are Our Collective Problem
DDoS attacks are all too commonly thought of as “someone else’s” problem, but botnets are all too easily formed

More Payloads Appear for EternalBlue NSA Weapon
It is likely that we will see yet more additional payloads for the tool.

DoD Files Found on Publicly Accessible Amazon Server
Booz Allen Hamilton blames human error

IDC: Most Orgs Mount Ineffective Security Investigations
Firms experience an average of 40 actionable incidents per week, but only a quarter (27%) think they are coping.

Kmart Point of Sale Hacked with 'Undetectable' Malware
In Kmart's second breach in three years, chip-and-PIN card readers significantly contained the fallout.

250K Photos Leaked in Cosmetic Surgery Extortion Attack
The Fancy Bear/APT28 hacking group, using the nickname "Tsar Team,” is behind the attack, according to reports.

Fireball Malware Infects 20% of Corporate Networks Worldwide
Fireball is adware, and can be turned into a fully functioning malware downloader.



