Security News > 2020 > March

Monday review – the hot 22 stories of the week
2020-03-30 09:41

From the return of the Martinelli WhatsApp hoax to the takedown of hacker forum Deer.io - and everything in between. It's roundup time.

COVID-19: Hackers Begin Exploiting Zoom's Overnight Success to Spread Malware
2020-03-30 07:17

As people increasingly work from home and online communication platforms such as Zoom explode in popularity in the wake of coronavirus outbreak, cybercriminals are taking advantage of the spike in usage by registering new fake "Zoom" domains and malicious "Zoom" executable files in an attempt to trick people into downloading malware on their devices. "The recent, staggering increase means that hackers have taken notice of the work-from-home paradigm shift that COVID-19 has forced, and they see it as an opportunity to deceive, lure, and exploit. Each time you get a Zoom link or document messaged or forwarded to you, I'd take an extra look to make sure it's not a trap."

First-ever SANS Women in Cybersecurity survey reveals significant mentorship gaps
2020-03-30 06:00

As women take more senior positions in the field of cybersecurity, there's a shortage of women available to mentor others. That's according to the results of the SANS Institute's first survey on Women in Cybersecurity, here, which found while mentoring is a hugely important part of career progression, only seven per cent of those polled had been mentored by another woman.

Should you hire a specialized cybersecurity recruiter?
2020-03-30 05:30

Finding skilled cybersecurity professionals to fill organizations' increasing needs is becoming more difficult by the day due to the wide cybersecurity workforce skills gap. Steve Velasco, a senior cybersecurity recruiter at NinjaJobs, a community of information technology veterans devoted to helping companies find vetted, experienced cybersecurity professionals, says that while there certainly seems to be shortage in cyber talent, that shortage is usually tied to geography - and especially so when it comes to incident response, DevSecOps, threat intelligence and penetration testing.

AppTrana Offers Protection to Online Businesses During Coronavirus Outbreak
2020-03-30 05:22

Cybersecurity company Indusface that holds expertise in keeping applications over the internet secure has decided to step up and do our bit to the society. During this unprecedented time, Indusface has announced to support organizations affected by COVID-19 by offering professional cybersecurity protection to their online businesses at free of cost for at least a month.

Debunking vulnerability management myths for a safer enterprise
2020-03-30 05:00

Let's look at and debunk the top vulnerability management myths, so that enterprises may opt to change their practices in ways that make fortifying cyber defenses and reducing risks significantly easier. New vulnerability management solutions make scanning at scale significantly faster and easier without impacting network performance, so there is really no good reason why enterprises should put networks at risk unnecessarily.

Why we need to secure IoT connections sooner than later
2020-03-30 04:30

In this podcast, Mike Nelson, Vice President of IoT Security at DigiCert, talks about the growing insecurity of IoT devices and what we should do about it. We read a lot about bad password practices, and hard-coded credentials, and hackers being able to gain access because they go in and they are able to discover the password and the user manuals of IoT - IoT instruction manuals.

Seven key cybersecurity trends for 2020 by world-leading professionals
2020-03-30 04:00

As the number of smart devices in private households increase, so do the opportunities for cybercriminals to attack, according to TÜV Rheinland. Experts view these key cybersecurity trends as critical to understand in 2020.

Organizations not properly set up to manage risk, coronavirus pandemic reveals
2020-03-30 03:30

The COVID-19 pandemic is just the latest in a line of recent risk events showing how organizations are not properly set up to manage risk, especially fast-moving ones. "Traditional approaches fail because they can't effectively deal with fast-moving and interconnected risks. Pandemic is a rapidly developing type of risk that needs a dynamic risk management set-up," said Malcolm Murray, vice president and fellow, research for the Gartner Audit and Risk practice.

Whitepaper: Cloud security risks and how to mitigate them
2020-03-30 03:00

So how do we explain the ever-increasing number of data breaches? According to Cloud Security Risks & How to Mitigate Them.Insufficient access management and account hijacking.