Security News

Emergency Surveillance During COVID-19 Crisis
2020-03-20 11:25

Israel is using emergency surveillance powers to track people who may have COVID-19, joining China and Iran in using mass surveillance in this way. Today, we must ensure that any automated data systems used to contain COVID-19 do not erroneously identify members of specific demographic groups as particularly susceptible to infection.

Android Surveillance Campaign Leverages COVID-19 Crisis
2020-03-19 19:45

Amid numerous malicious attacks leveraging the current COVID-19 coronavirus crisis, security researchers have discovered an Android surveillance campaign targeting users in Libya. One of the COVID-19-themed attacks appears to be part of a larger mobile surveillance campaign operating out of Libya and targeting Libyan individuals, Lookout reveals.

Oh-so-generous ransomware crooks vow to hold back from health organisations during COVID-19 crisis
2020-03-19 11:47

Ransomware operators of DoppelPaymer and Maze malware stated that they will not target medical organisations during the current pandemic. Laurence Abrams, who runs the security news site Bleeping Computer, reports that he made contact with "The operators of the Maze, DoppelPaymer, Ryuk, Sodinokibi/REvil, PwndLocker, and Ako Ransomware infections to ask if they would continue targeting health and medical organizations during the outbreak."

Oh-so-generous ransomware crooks vow to hold back from health organisations during COVID-19 crisis
2020-03-19 11:47

Ransomware operators of DoppelPaymer and Maze malware stated that they will not target medical organisations during the current pandemic. Laurence Abrams, who runs the security news site Bleeping Computer, reports that he made contact with "The operators of the Maze, DoppelPaymer, Ryuk, Sodinokibi/REvil, PwndLocker, and Ako Ransomware infections to ask if they would continue targeting health and medical organizations during the outbreak."

Thought you were done after Tuesday's 115-fix day? Not yet: Microsoft emits SMBv3 worm-cure crisis patch
2020-03-12 19:49

Microsoft has released an out-of-band emergency patch for a wormable remote-code execution hole in SMBv3, the Windows network file system protocol. The SMB bug fix was a late addition to Microsoft's March edition of Patch Tuesday - after the security hole was accidentally disclosed by the Cisco Talos research team in a blog post recapping this month's updates: Cisco thought Microsoft had fixed the bug this week as part of March's Patch Tuesday, and alerted the world to the bug's presence to get people to install their updates.

RSAC 2020: Ransomware a ‘National Crisis,’ CISA Says, Ramps ICS Focus
2020-02-28 13:38

To that end, CISA has worked with the National Security Council, various federal agencies, industry stakeholders and organizations like the ICS Village to develop a set of core initiatives for 2020. Four, CISA will have a focus on developing detection and incident-response training blueprints.

What is driving the machine identity crisis?
2020-02-27 04:30

Every machine needs a unique identity in order to authenticate itself and communicate securely with other machines. Secure, reliable authentication is essential to protect machine-to-machine communication, yet protecting every machine identity across an enterprise can be a challenge.

Five reasons healthcare data security is at Ebola crisis levels
2019-11-13 13:48

Lots of PHI, low security, and multiple entry points make hospitals the perfect target for hackers and ransomware attacks are up 45% in Q3.

BEC explodes as attackers exploit email’s identity crisis
2019-10-09 04:00

850,000 domains worldwide now have DMARC records, a 5x increase since 2016, according to Valimail. However, less than 17% of global DMARC records are at enforcement — meaning fake emails that...

Addressing Opioid Crisis: A Call for Privacy Rule Changes
2019-08-08 20:03

State Attorneys General Want Changes in Regulation to Ease Sharing of DataThe National Association of Attorneys General is urging Congress to drop the "cumbersome, out-of-date privacy rules"...