Security News > 2018 > April

The CISO as an Internal Security Evangelist
2018-04-10 08:38

NTT Security's John Petrie on Interacting With Board of DirectorsOne of the most important priorities for a CISO is having a place at the table with the board of executives, says John Petrie of...

Company insiders behind 1 in 4 data breaches – study
2018-04-10 08:38

Ransomware, external hackers dominate 2018 probe, natch The admins among you will be unsurprised to discover that, more than a quarter of the time, data breaches across the world originated...

Business-Critical Systems Increasingly Hit by Ransomware: Verizon 2018 DBIR
2018-04-10 07:39

Ransomware has become the most prevalent type of malware and it has increasingly targeted business-critical systems, according to Verizon’s 2018 Data Breach Investigations Report (DBIR). read more

Gmail is secure. Netflix is secure. Together they're a phishing threat
2018-04-10 07:02

Google doesn't recognise dots in email addresses, which creates an opportunity for evil A developer has discovered that Gmail's email handling creates a handy phishing vector to attack Netflix customers.…

Ransomware reigns supreme in 2018, as phishing attacks continue to trick employees
2018-04-10 04:01

Ransomware was the cause of 39% of malware-related data breaches, more than double that of last year, according to Verizon's annual Data Breach Investigations Report.

Sorry spooks: Princeton boffins reckon they can hide DNS queries
2018-04-10 02:02

'Oblivious DNS' decouples users from the sites they visit The Domain Name System (DNS) is a plain-text service that lets anyone who can see “the wire” capture a user's DNS traffic and work out...

You. FCC. Get out there and do something about these mystery bogus cell towers, huff bigwigs
2018-04-09 21:26

It's the Ruskies! Or maybe the FBI! Stingray secrecy rebounds Senior Congressmen have demanded "immediate action" over mysterious fake cell phone towers in Washington DC that they worry could be...

Patch or ditch Adobe Flash: Exploit on sale, booby-trapped Office docs spotted in the wild
2018-04-09 19:30

ThreadKit leverages flaw fixed in February In case you needed another reason not to open Adobe Flash or Microsoft Office files from untrusted sources: ThreadKit, an app for building documents that...

Under Armour Mobile App Breach: Lessons to Learn
2018-04-09 18:59

The recent data breach impacting 150 million user accounts of Under Armour's MyFitnessPal application and website offers important lessons for mobile app developers, security expert Joan Pepin...

Word Attachment Delivers FormBook Malware, No Macros Required
2018-04-09 18:35

A new wave of document attacks targeting inboxes do not require enabling macros in order for adversaries to trigger an infection chain that ultimately delivers FormBook malware.