Security News > 2021

OneTrust acquires Convercent to bring ethics and compliance capabilities into the OneTrust platform
2021-04-06 09:35

Integrating Convercent into OneTrust further enhances the platform's foundation of trust through advanced ethics and compliance capabilities. With a team of 150 ethics and compliance experts, Convercent brings unparalleled experience in managing the world's most complex and advanced global ethics programs, including Airbnb, Under Armour, Kimberly-Clark, and TimeWarner.

What is operations-centric security?
2021-04-06 07:30

If you're a security operations center analyst, it might just save your sanity - and your network. Even if security analysts are savvy or lucky enough to investigate the right alerts and spot an emerging attack, there's no guarantee that they'll be that effective.

Zero Trust creator talks about implementation, misconceptions, strategy
2021-04-06 05:05

As further proof of the effectiveness of the model, Kindervag says that the zero-trust strategy is widely deployed in some of the world's most secure environments, which is why we've seen the NSA provide guidance on Zero Trust from their perspective recently. Among the pitfalls that organizations that opt to implement a zero-trust model should try to avoid he singles out two: thinking that Zero Trust is binary, and deploying products without a strategy.

Review: Group-IB Threat Hunting Framework
2021-04-06 05:00

Perform advanced threat hunting using logs from THF Huntpoint, email channel, traffic and behavior markers of each analyzed file from any source. THF Huntbox enables incident management, correlation of events and collaboration between analysts during threat hunting and IR activities.

MindAPI makes API security research and testing easier
2021-04-06 04:30

Security researcher David Sopas has published a new open-source project: MindAPI, a mind map with resources for making API security research easier. "After years of using it, I decided to implement my API security research experience and apply it on something that I could share not only with the infosec community, but also with developers."

58% of IT and security pros concerned about security in the cloud
2021-04-06 04:00

The Cloud Security Alliance and AlgoSec published research which queried nearly 1,900 IT and security professionals from a variety of organization sizes and locations, sought to gain deeper insight into the complex cloud environment that continues to emerge and that has only grown more complex since the onset of the pandemic. Respondents' leading concerns over cloud adoption were network security, a lack of cloud expertise, migrating workloads to the cloud, and insufficient staff to manage cloud environments.

99% of security pros concerned about their IoT and IIoT security
2021-04-06 03:30

Tripwire announced the results of a research report that assessed the security of connected devices across enterprise environments in 2021. Conducted by Dimensional Research, the survey evaluated the opinions of 312 security professionals that manage the security of internet of things and industrial internet of things devices across their organization.

The LPWAN market to reach $109.76 billion by 2025
2021-04-06 03:00

The low-power wide area networks market is expected to grow by $109.76 billion during 2021-2025, expanding at a CAGR of almost 58%, according to Technavio. The report throws light on the impact of the COVID-19 pandemic on the market and the new opportunities and challenges market players can expect.

'Anomalous surge in DNS queries' knocked Microsoft's cloud off the web last week
2021-04-06 02:41

It was a tsunami of DNS queries that ultimately took out a host of Microsoft services, from Xbox Live to Teams, for some netizens about an hour on April Fools' Day, Redmond has said. The web giant's Threat Analysis Group said it had detected in March a bogus security company SecuriElite reaching out to legit professionals via social media, such as LinkedIn and Twitter.

533 Million Facebook Users' Phone Numbers and Personal Data Leaked Online
2021-04-06 01:48

In what's likely to be a goldmine for bad actors, personal information associated with approximately 533 million Facebook users worldwide has been leaked on a popular cybercrime forum for free-which was harvested by hackers in 2019 using a Facebook vulnerability. The leaked data includes full names, Facebook IDs, mobile numbers, locations, email addresses, gender, occupation, city, country, marital status broken, account creation date, and other profile details broken down by country, with over 32 million records belonging to users in the U.S., 11 million users the U.K., and six million users in India, among others.