Security News > 2021

People are the weakest link in data breaches, but can they be held accountable?
2021-04-07 04:30

At the same time, only one in six respondents expressed confidence in their organization's current security investments. These findings are in line with another research which discloses that even with more investment in enterprise security programs, the cost to business from successful breaches and attacks continues to worsen.

11 Useful Security Tips for Securing Your AWS Environment
2021-04-07 04:22

Want to take advantage of excellent cloud services? Amazon Web Services may be the perfect solution, but don't forget about AWS security. SecuriCAD's attack simulations and automated threat modeling enable you to automatically build, visualize and simulate attacks on a virtual model of your AWS environment.

Massive increase in endpoint attacks, rising rate of encrypted malware and new exploits targeting IoT
2021-04-07 04:00

Q4 2020 also brought a 41% increase in encrypted malware detections over the previous quarter and network attacks hit their highest levels since 2018. "The attacks are coming on all fronts, as cybercriminals increasingly leverage fileless malware, cryptominers, encrypted attacks and more, and target users both at remote locations as well as corporate assets behind the traditional network perimeter. Effective security today means prioritising endpoint detection and response, network defences and foundational precautions such as security awareness training and strict patch management."

WhatsApp-based wormable Android malware spotted on the Google Play Store
2021-04-07 03:36

Cybersecurity researchers have discovered yet another piece of wormable Android malware-but this time downloadable directly from the official Google Play Store-that's capable of propagating via WhatsApp messages. Disguised as a rogue Netflix app under the name of "FlixOnline," the malware comes with features that allow it to automatically reply to a victim's incoming WhatsApp messages with a payload received from a command-and-control server.

Not all eSignature solutions are necessarily right for business
2021-04-07 03:30

The popularity of eSignature solutions has skyrocketed in the last year, as part of companies' digital transformation efforts in the COVID-19 environment. Not all eSignatures are necessarily right for business.

IT security budgets to increase over the next 12 months
2021-04-07 03:00

IT security budgets increase to include more UEM and biometrics. The study, which polled 400 CISOs across EMEA, found that the average IT security budget last year was over €64 million, and 81% expect this to increase over the next 12 months.

Critical Auth Bypass Bug Found in VMware Data Center Security Product
2021-04-07 02:38

A critical vulnerability in the VMware Carbon Black Cloud Workload appliance could be exploited to bypass authentication and take control of vulnerable systems. Carbon Black Cloud Workload is a data center security product from VMware that aims to protect critical servers and workloads hosted on vSphere, the company's cloud-computing virtualization platform.

DefenseStorm expands security for financial institutions with CyberFraud
2021-04-07 02:30

DefenseStorm announced the addition of CyberFraud to its product offerings, providing an integrated solution for Information Security and BSA/AML Fraud departments in a single platform to prevent losses and protect account holders. The DefenseStorm GRID provides investigation tools for deep analysis, links threats across multiple accounts and sources, gathers evidence for SAR reporting, enables on-the-fly strategy configuration and streamlines dashboard reporting.

Facebook Says Hackers 'Scraped' Data of 533 Million Users in 2019 Leak
2021-04-07 02:15

Facebook said Tuesday that hackers "Scraped" personal data of some half-billion users back in 2019 by taking advantage of a feature designed to help people easily find friends using contact lists. A trove of information about more than 530 million Facebook users was shared over the weekend at a hacker forum, prompting the leading social network to explain what happened and call on people to be vigilant about privacy settings.

Siemens PCBflow enables secure collaboration between PCB designers and manufacturers
2021-04-07 02:15

Siemens introduced PCBflow, an innovative cloud-based software solution which bridges the gap between the electronics design and manufacturing ecosystems. PCBflow extends Siemens' Xcelerator portfolio with a secure environment for printed circuit board design teams to interact with a variety of manufacturers, and by rapidly performing a range of design-for-manufacturing analyses in the context of each manufacturers' process capabilities, which helps customers accelerate design-to-production handoff.