Security News

US introduces bills to secure critical infrastructure from cyber attacks
2021-05-19 14:56

The U.S. House Committee on Homeland Security has passed five bipartisan bills on Monday to bolster defense capabilities against cyber attacks targeting U.S. organizations and critical infrastructure. The five bipartisan bills are also designed to make it easier to defend networks from cyber attacks using critical security vulnerabilities such as those abused in campaigns targeting vulnerable Microsoft Exchange Server and Pulse Connect Secure devices earlier this year.

Identifying and addressing critical OT asset vulnerabilities in 24/7 industrial operations
2021-05-18 06:00

Vulnerability management in OT continues to be one of the biggest challenges in securing industrial control systems. OT systems, which encompass the ICS, are computer-based control systems that automate and provide safety protection for personnel and equipment in the industrial, commercial buildings, avionics and other IoT-intensive industries.

Is 85% of US Critical Infrastructure in Private Hands?
2021-05-17 11:00

Thus availablity, except out of very very small excursions from "Normal" does not exist in the corporate world. The result as the US finds out more and more regularly, is critical infrastructure outages so often they are now considered "Normal".

IronNet and Dragos join forces to help secure critical infrastructure
2021-05-13 23:15

IronNet Cybersecurity and Dragos announced that they are launching a new joint initiative designed to help ensure the security of the nation's critical infrastructure through an integrated IT-OT approach to cybersecurity. The IronNet and Dragos joint initiative spans both companies' respective technical and business domains and is focused on integrating the IronNet IronDome and the Dragos Neighborhood Keeper threat intelligence sharing and community-wide visibility solutions in order to increase the overall security posture of organizations - and enable them to focus on core business and digital transformation efforts.

Five Critical Password Security Rules Your Employees Are Ignoring
2021-05-13 13:00

In February 2021, Keeper surveyed 1,000 employees in the U.S. about their work-related password habits - and discovered that a lot of remote workers are letting password security go by the wayside. Here are 5 critical password security rules they're ignoring.

Sierra Wireless launches XR Series of multi-network 5G routers for business-critical apps
2021-05-13 00:15

Sierra Wireless launched the next evolution in routers with its new XR Series of multi-network 5G routers. The XR Series delivers the full performance of 5G across any network whether used for mobile applications or primary, temporary, or backup fixed wireless connectivity.

What the pipeline attack means for critical infrastructures
2021-05-12 06:20

The big news in critical infrastructure security is the ransomware-triggered shutdown of the Colonial gasoline pipeline - the largest such pipeline in the USA. The attack has been attributed to the DarkSide ransomware group. Even without evidence that the attack has migrated into ops, the organization might shut everything down in an abundance of caution, like they did in the Norsk Hydro attack in 2019.

Colonial Pipeline attack reminds us of our critical infrastructure's vulnerabilities
2021-05-11 21:18

Cybersecurity expert discusses the many ways attackers could have gotten access to the Colonial Pipeline company and reminds us why the threat always looms. TechRepublic's Karen Roby spoke with Vyas Sekar, a professor in electrical and computer engineering at Carnegie Mellon University, about the Colonial Pipeline ransomware attack by the hacker group Darkside.

Microsoft Patch Tuesday: 55 Vulnerabilities, 4 Critical, 3 Publicly Known
2021-05-11 18:45

Microsoft's monthly security patch release for May 2021 includes cover for 55 documented vulnerabilities, some serious enough to expose Windows users to remote code execution attacks. Microsoft on Tuesday shipped another massive Patch Tuesday bundle with cover for at least 55 documented security vulnerabilities affecting products in the Windows ecosystem.

VMware Patches Critical Flaw Reported by Sanctioned Russian Security Firm
2021-05-07 10:50

VMware has patched another critical vulnerability reported by Positive Technologies, a Russian cybersecurity firm that was sanctioned recently by the United States. Positive Technologies is one of the several Russian tech firms sanctioned in April by the U.S. for allegedly supporting Kremlin intelligence agencies.