Security News > 2017 > August

Unwanted Hotel Guests: Russia's Fancy Bear (InfoRiskToday)
2017-08-14 14:48

FireEye Says the Hackers Are Launching Sneaky Hotel Wi-Fi AttacksFireEye says Russia's Fancy Bear hackers are targeting hotel guests with a sneaky attack that leaves no traces and steals network...

Anthem Breach Lesson: Why Granular Access Control Matters (InfoRiskToday)
2017-08-14 14:17

Healthcare organizations can learn important lessons - including the need for granular data access control - from the costly proposed settlement of the breach lawsuit against health insurer...

Enterprise security culture: Why you need it, and how to create it (Help Net Security)
2017-08-14 14:00

Security awareness is a term that most information security professionals are familiar with – security culture a little less so. “Security awareness training is based on a behavioural theory that...

Millions of Endpoints Exposed via RDP: Report (Security Week)
2017-08-14 13:58

There are 4.1 million Windows endpoints online that would accept communication via the Remote Desktop Protocol (RDP) in one way or another, a recent Rapid7 report reveals. read more

Motivation roulette: Is pseudo-ransomware a term? (Help Net Security)
2017-08-14 13:30

It used to be so simple. Attack campaigns were relatively simple to determine, for example when we detailed the recent Shamoon campaign it was clear that this was intended to disrupt the victim....

STIX and TAXII: Sharing cyber threat intelligence (Help Net Security)
2017-08-14 13:00

In this podcast recorded at Black Hat USA 2017, Allan Thomson, CTO at LookingGlass Cyber Solutions, talks about STIX and TAXII. STIX (Structured Threat Information Expression) is a language for...

Dubious Report Highlights Known Risks of Cloud-Based Multiscanners (Security Week)
2017-08-14 12:34

Over the past week, a debate has spurred over a report from security services firm DirectDefense, claiming that Carbon Black’s endpoint detection and response (EDR) solution, Cb Response, is a...

How Just Opening A Malicious PowerPoint File Could Compromise Your PC (The Hackers News)
2017-08-14 11:45

A few months back we reported how opening a simple MS Word file could compromise your computer using a critical vulnerability in Microsoft Office. The Microsoft Office remote code execution...

Bank Robbery Tactic (Schneier on Security)
2017-08-14 11:03

This video purports to be a bank robbery in Kiev. He first threatens a teller, who basically ignores him because she's behind bullet-proof glass. But then the robber threatens one of her...

VMware Patches 'Hard-to-Exploit' DoS Vulnerability (Security Week)
2017-08-14 10:00

An update released by VMware for its NSX-V network virtualization solution patches an important denial-of-service (DoS) vulnerability. The security hole, tracked as CVE-2017-4920, exists in the...