Infosecurity News

Invisible Attacks Breach Enterprises in 40 Countries
These targeted attacks use only legitimate software and target banks, telecoms and government organizations.

Majority of Websites Are Vulnerable to Hacking for Hire
Only 33% have no found vulnerabilities, showing significant needed improvement on enterprise security.

Sophos Adds Machine Learning with Invincea Purchase
Sophos has announced the intention to acquire Invincea and add machine learning-based predictive malware detection to its portfolio

Social Media Phishing Attacks Soar 500%
Proofpoint report highlights growing menace of angler phishing

Sentry MBA Tool Used in Attacks on Login Forms
Sentry MBA is a tool that allows the user to login to websites, using a non-traditional form of brute force

Polish Banking Sector Hit with System-wide Hack
The sector's own financial regulator was ironically the original source of the compromise.

Safer Internet Day: Half of UK Kids Have Online Concerns
But Microsoft claims UK users are most insulated in the world

Just 5% of FTSE 100 Boards Feature a Cyber Expert
Even well-funded firms still too reactive with security, according to Deloitte

New Sage Ransomware Shares Delivery with Locky
The overlapping infrastructure is a reminder of how malware support and distribution is frequently reused.

Metasploit Update Extends Pen Testing to IoT
Popular open source framework gets a hardware bridge

Cyber Expert: Vendor FUD Distorts Online Threats
National Cyber Security Centre director warns of marketing hype over APTs

Secrets Management: the Must-Dos
Getting a handle on secrets management is one of the No. 1 challenges in modern IT security.

PKI: Essential for Medical IoT
PKI can help three common scenarios that leave these critical pieces of infrastructure wide-open to hackers.

Ransomware Cripples Ohio County Government for Days
The Licking County government offices, including the police force, the county auditor's office and the clerk of courts, have lost online access and landline telephones.

'Coworker' Phish Mails, Social Media Lures Fool Most Americans
68% of Americans were tricked by phishing emails that looked like they were from a coworker.

Auto-Provisioning for IoT Devices Tackles Security Gaps
DigiCert Auto-Provisioning is aimed at IoT device manufacturers, for provisioning digital certificates at scale.

Cellebrite Hack Highlights Dangers of State Snooping
Data extraction firm has a large target on its back

US Army Funds Cyber-center for Ukraine Military
The project comes amid concerns about Russian hacking within the Ukraine.

Email Config Error Led to NHS ‘Reply All’ Snafu
Some 500 million messages were sent in an hour

PCI Council Updates E-Commerce Guidance for Firms
New document contains tips on certificates and encryption



