Security News > 2020

US Government Website Defaced With Pro-Iran Message
2020-01-06 09:48

Breaking into a website, or seizing its domain name and redirecting the domain, is rarely a long-lasting attack, but it usually causes embarrassment, and, at a technical level, highlights gaps in website security. Iran's online attack capabilities are well developed, and using hack attacks avoids bullet-and-missile exchanges against the U.S., with many experts noting that Iran would be unlikely to win such a fight.

'Serious' Cyber Attack Hits Austrian Ministry
2020-01-06 09:32

Austria's foreign ministry has been targeted by a "Serious cyber attack", officials said, warning another country could be responsible. The attack, which began Saturday, was continuing on Sunday and "Experts say it could last several days," a foreign ministry spokesman told AFP. The interior and foreign ministries issued a statement about the attack which started shortly before 11.00 pm on Saturday.

Rowhammer rides again as FPGA attack, RSA again reportedly up for sale, anti-theft kit to nuke laptops, etc
2020-01-06 06:58

The team at Tencent Keen Security Lab has done it again: hacking Tesla's Model S, in which the security shop's parent company has a significant stake. One Dell of a start to 2020 for RSA. It seems security company RSA's days as a part of the Dell family of brands may be numbered.

Popular Mideast App Accused of Spying Back on Google Play
2020-01-06 06:21

The popular UAE-developed mobile application ToTok has returned to the Google Play Store after it was removed on claims it was being used for government spying, the company said Saturday. Google and Apple removed the app from their online marketplaces last month after The New York Times reported ToTok allowed the UAE government to track the conversations, movements and other details of people who installed it on their phone.

Cyber Insurance: Important Lessons for New Markets
2020-01-06 06:18

One of the biggest challenges for CISOs is deciding an indemnity limit on cyber insurance, says Bhishma Maheshwari, executive vice president at insurance broker Marsh India. "A lot of times when we meet the CISOs ... their biggest challenge is how do we arrive at the limit of insurance to buy. Since it is essentially a contingent capital which you are buying, to arrive at the right kind of limit is very important," Maheshwari says in an interview with Information Security Media Group.

Modern security product certification best practices
2020-01-06 06:00

IT security product manufacturers are required to achieve government mandated, standards-based certifications to get their product in market. When it comes to cybersecurity product development, the industry is agile by design, but security product certification methods haven't kept pace with modern development methods and release cycles.

Five cyber risks that will define 2020
2020-01-06 05:30

Here are five cyber risks that will endanger company data in 2020. To be sure, this threat category is uniquely nuanced, as things like intentional data theft, accidental sharing, and other data disclosure methodologies combine to create a robust threat that companies will need to address in 2020.

RSA Conference 2020 USA: What you can expect at this year’s event
2020-01-06 05:00

It's that time of year: RSA Conference 2020 USA is coming up in February. RSA Conference is in its 29th year, having grown and evolved to serve the changing needs of the members of the whole cybersecurity community.

Automotive cybersecurity incidents doubled in 2019, up 605% since 2016
2020-01-06 04:30

Upstream Security's 2020 Automotive Cybersecurity Report shares in-depth insights and statistics gleaned from analyzing 367 publicly reported automotive cyber incidents spanning the past decade, highlighting vulnerabilities and insights identified during 2019. The number of automotive cybersecurity incidents has increased dramatically: Since 2016, the number of annual incidents has increased by 605%, with incidents more than doubling in the last year alone.

First international smart home standard ensures secure connectivity between devices
2020-01-06 00:00

The Open Connectivity Foundation announced that products from BSC Computer GmbH, COMMAX, Haier, LG Electronics, Resideo, Samsung Electronics and SURE Universal will complete OCF 2.1 certification in 2020, ensuring robust and secure connectivity between devices. "In the near future, smart homes and buildings will have typically over 200 different products improving comfort, security and energy usage. Having all of these powered by mains cables or batteries which need to be regularly changed or re-charged is simply not practical," said Jörg Hofmann, CEO, BSC Computer GmbH. "By introducing the EnOcean energy harvesting wireless standard into the OCF world, BSC Computer has enabled simple addition of multiple 'peel and stick' maintenance-free sensors and switches into their smart buildings via the BSC smart secure gateway, a major expansion and improvement of the excellent interoperable OCF eco-system."