Security News > 2021 > May

New infosec products of the week: May 21, 2021
2021-05-21 06:00

Designed to support modern security organizations increasingly delegating malware analysis to specific security operations or development security operations experts, the ReversingLabs Malware Lab solution equips these teams with a unified threat analysis engine and console to rapidly detect, classify, analyze, and respond to malicious files and associated Indicators of Compromise. Qualys CyberSecurity Asset Management brings security teams the automation they need.

Cybersecurity, emerging technology and systemic risk: What it means for the medical device industry?
2021-05-21 05:30

Attackers in the medical device arena don't yet need to increase their sophistication because the vast majority of fielded medical devices have extremely easy-to-exploit vulnerabilities. A personal goal of mine is that within 5 years, I can talk to any medical device developer about cybersecurity and find that they have comprehensive knowledge of all aspects of creating a secure device.

Toyota rear-ended by twin cyber attacks that left ransomware-shaped dents
2021-05-21 05:05

American businesses that receive payments in cryptocurrencies worth $10,000 or more will have to report those transactions to the Internal Revenue Service, the United States' Treasury mentioned on Thursday. This simply puts crypto-coins on the same footing as cash: the IRS says "Federal law requires a person to report cash transactions of more than $10,000," we note.

Three smart ways SMBs can improve cybersecurity
2021-05-21 05:00

SMBs shouldn't have to settle for less when it comes to their security. Your ultimate security goal should be reducing the chances of a threat impacting your business.

Top application security challenges: Bad bots, broken APIs, and supply chain attacks
2021-05-21 04:30

Vanson Bourne surveyed 750 application security decision makers responsible for their organization's application development and security to get their perspectives on data breaches, top application security vulnerabilities, and the most important product capabilities needed to defend against multi-vector application attacks. Overall, the findings indicate that more needs to be done to protect against application security threats, particularly newer threats like bot attacks, API attacks, and supply chain attacks.

Mobile stalkerware is on the rise
2021-05-21 04:00

Mobile stalkerware, which is software silently installed by stalkers onto victims' mobile devices without their knowledge, is on the rise, an ESET research finds. In 2019, ESET telemetry recorded almost five times more Android stalkerware detections than in 2018, and in 2020, almost 1.5 times more were recorded than in 2019.

Healthcare IoT Cybersecurity Firm Cynerio Raises $30 Million
2021-05-21 03:53

Healthcare IoT cybersecurity and asset management solutions provider Cynerio this week announced closing a $30 million Series B funding round. Cynerio was founded in 2017 and it has offices in Israel and New York.

C-level cybersecurity attitudes as enterprises embrace the everywhere workplace
2021-05-21 03:30

Ivanti unveiled the findings of a Frost & Sullivan study which investigates the impact of the COVID-19 pandemic on cybersecurity and compliance attitudes and behaviors in Singapore, Australia and New Zealand. More than 40 percent of the respondents in Australia and New Zealand stated that they focused more on cybersecurity to better protect their organization from attacks.

5G business smartphone shipments to grow steadily
2021-05-21 03:00

5G business smartphone shipments will grow at a CAGR of 28% over the 2021-2026 forecast period, according to a Strategy Analytics forecast. Worldwide BYOD 5G smartphone shipments will increase by 187% YoY, and corporate-liable shipments will increase by 649% YoY from 2020.

Microsoft Warns of Data Stealing Malware That Pretends to Be Ransomware
2021-05-21 01:46

Microsoft on Thursday warned of a "Massive email campaign" that's pushing a Java-based STRRAT malware to steal confidential data from infected systems while disguising itself as a ransomware infection. The new wave of attacks, which the company spotted last week, commences with spam emails sent from compromised email accounts with "Outgoing Payments" in the subject line, luring the recipients into opening malicious PDF documents that claim to be remittances, but in reality, connect to a rogue domain to download the STRRAT malware.