Infosecurity News

UK Firms: Cloud Reluctance Foments Shadow IT Problem
British firms least likely to have a ‘cloud first’ strategy, says Intel Security

Santander Rolls Out 'Pay-by-voice' Banking
Users can now pay others by speaking to their app

#bsidessf2017: Fighting Email Phishing with a Custom IDS
Uber's Dan Borges on how the company uses custom email IDS to tackle email-based phishing

#RSAC: IBM's Watson Goes Commercial for Cybersecurity
The centerpiece of this platform is IBM QRadar Advisor with Watson, the first tool that taps into Watson’s corpus of cybersecurity insights.

Over One Million WordPress Sites Defaced
Users urged to patch with version 4.7.2

UK Hit by 188 Major Cyber Attacks in Three Months
NCSC boss warns of ‘step change’ in Russian aggression

Global Banks Hit by Watering Hole Blitz
Infamous Lazarus Group linked to attacks

Spanish Police Bust Premier League IPTV Pirates
Owned by two UK citizens, Y-Internet sold illegal IPTV with annual contracts to hotels, pubs, neighborhoods and individuals.

Active Directory Mismanagement Leaves Huge Numbers of Orgs Vulnerable
Many enterprises are overly exposing their AD administrator’s credentials.

Arby's Gets Roasted in Breach of 300K Payment Cards
The event involved malicious software installed on payment card systems at hundreds of its corporate-owned restaurant locations across the US.

UK Supreme Court Warns of Scam Subpoena Emails
Phishers try to socially engineer concerned netizens

Sports Direct Failed to Tell Staff of Data Breach
Retail giant reportedly spilled employee details last September

IT Leaders and Execs Pass the Buck on Cyber Response
Most believe they’ll be targeted over coming year, says BAE Systems

Invisible Attacks Breach Enterprises in 40 Countries
These targeted attacks use only legitimate software and target banks, telecoms and government organizations.

Majority of Websites Are Vulnerable to Hacking for Hire
Only 33% have no found vulnerabilities, showing significant needed improvement on enterprise security.

Sophos Adds Machine Learning with Invincea Purchase
Sophos has announced the intention to acquire Invincea and add machine learning-based predictive malware detection to its portfolio

Social Media Phishing Attacks Soar 500%
Proofpoint report highlights growing menace of angler phishing

Sentry MBA Tool Used in Attacks on Login Forms
Sentry MBA is a tool that allows the user to login to websites, using a non-traditional form of brute force

Polish Banking Sector Hit with System-wide Hack
The sector's own financial regulator was ironically the original source of the compromise.

Safer Internet Day: Half of UK Kids Have Online Concerns
But Microsoft claims UK users are most insulated in the world



