Infosecurity News

Cyber OpSec: A Critical Piece in the Battle for Security
Bad guys use operational security to avoid detection and retain attack infrastructure; good guys use it to deny adversaries critical information.

European Data Protection Supervisor Rejects Privacy Shield
Deal should not be ratified in current form, says Buttarelli

Over 5,000 FTSE 100 Log-ins Found on Darknet
Anomali research finds widespread reuse of corporate credentials

CEO Sacked After $56 Million Whaling Attack
First major casualty of new breed of email scam

Data from 360 Million MySpace Accounts Stolen
Info can be purchased on criminal forums.

Tumblr Breach Hit 65 Million as Pattern Emerges
Could there be a link between this and LinkedIn, MySpace breaches?

Brazil Offers High Security Risk for Businesses
BitSight found that companies based in Brazil have the lowest aggregate Security Rating, while companies in the UK, Germany and the United States have the highest.

DHL Customers Phished Using South African Gov Website
A South African government website is being hacked to host the malicious phishing URL.

Defense Department Runs the US Nuclear Arsenal Using Floppy Disks
More than 75% of the US IT budget goes to maintaining legacy IT systems that are up to 50 years old.

Swift Hackers Linked to ‘North Korean’ Lazarus Group
Symantec claims a Philippine bank may be group’s fourth known victim

UK Banking Customers Could be Forced to Pay for Fraud
Liability shift mooted for those with poor online security

Data Leak Puts Ulster Prison Staff in Danger
Email containing personal details sent to wrong person

Ransomware Targets Millions by Spoofing Nordic Telco Telia
The primary target for the attack is Sweden, but additional campaigns may follow, replicating the same model.

SANS Maps SAP Security to CIS Critical Security Controls
As cyber-attacks targeting SAP continue to grow, organizations need to secure their SAP landscape as part of an overall security posture.

ICSA Labs Launches New IoT Certification Program
Firm hopes to make it easier to seek out secure products

Microsoft to Ban Commonly Used Passwords
Dynamic list is continually updated

Carding Site ‘Owner’ Extradited After Making Millions
Macedonian accused of operating Codeshop.su now in US custody

UK Government Agrees to Snoopers’ Charter Review
David Anderson will look into proposed bulk data collection powers

DDoS-for-Hire Services Go Up on Fiverr for 5 Bucks
The $5 DDoS-for-hire services bill themselves as “stressor” services to “help test the resilience of your own server.”

52% of Consumers Want Biometrics and Other Post-Password Options
Good news for Google's Project Abacus, 80% of consumers believe biometric authentication is more secure than traditional passwords.



