Security News > 2015 > June

How companies can regain consumer trust after a data breach (Help Net Security)
2015-06-26 08:27

Americans have strong feelings about data breach notification, with 84 percent stating that the best way a company can regain their trust after a breach occurs is to notify them right away and provide...

Energy security pros: More competent, or just naive? (Help Net Security)
2015-06-26 07:23

Energy security professionals are extremely confident in their ability to detect a cyberattack on critical systems, with 86 percent stating they could detect a breach in less than one week. A sur...

The cloud, FedRAMP and FISMA compliance (Help Net Security)
2015-06-26 06:26

Many federal agencies and government contractors are migrating to cloud-based computing, a trend that will pick up speed as the cloud becomes more efficient, more affordable, and more secure. In fact,...

How to survive a compliance audit (Help Net Security)
2015-06-26 06:20

Ipswitch polled 313 IT professionals in United States with 59 percent noting that they were not fully prepared to undergo an audit. Additionally, 75 percent of respondents lacked confidence that colle...

Default SSH Key Found in Many Cisco Security Appliances (Threatpost)
2015-06-25 19:02

Many Cisco security appliances contain default, authorized SSH keys that can allow an attacker to connect to an appliance and take almost any action he chooses.

Samsung Program Disables Windows Update on PCs (Threatpost)
2015-06-25 18:01

Samsung's update mechanism for Windows PCs and laptops silently disables Windows Update, computing enthusiast Patrick Barker has discovered.

Yet Another Leaker -- with the NSA's French Intercepts (Schneier on Security)
2015-06-25 17:51

Wikileaks has published some NSA SIGINT documents describing intercepted French government communications. This seems not be from the Snowden documents. It could be one of the other NSA leakers,...

Expedia users targeted by phisher who gained access to their info (Help Net Security)
2015-06-25 16:11

An unknown number of Expedia customers have been getting emails from the company, warning them about fraudulent emails or SMSes they might receive or might have already received, asking them to share ...

Stored XSS Flaw Patched in Thycotic Secret Server (Threatpost)
2015-06-25 16:07

Thycotic, a maker of access-control and other security products, has patched a stored cross-site scripting vulnerability in one of its products that could enable an attacker to steal a victim's...

Stolen Government Agency Passwords Easy to Find Online (Threatpost)
2015-06-25 15:38

Analysts at Recorded Future said they found stolen credentials from 47 government agencies on a number of paste sites.