Security News

AttackIQ Informed Defense: Automated continuous security validation and remediation
2020-05-29 03:00

AttackIQ announced the launch of AttackIQ Informed Defense, the most significant product release in the company's history. The AttackIQ Informed Defense Architecture enables a transparent and completely manageable attacker kill chain testing methodology.

Website Security Provider Source Defense Raises $10.5 Million
2020-05-20 15:21

Client-side web security provider Source Defense this week announced raising $10.5 million in a Series A+ funding round. Founded in 2014, the company provides a website security solution aimed at delivering real-time protection against attacks originating at website supply-chain vendors.

Brit defense contractor hacked, up to 100,000 past and present employees' details siphoned off – report
2020-05-15 05:08

Britain's Ministry of Defence contractor Interserve has been hacked, reportedly leaking the details of up to 100,000 of past and current employees, including payment information and details of their next of kin. The Daily Telegraph reports that up to 100,000 employee details were stolen, dating back across a number of years.

U.S Defense Warns of 3 New Malware Used by North Korean Hackers
2020-05-13 08:04

Yesterday, on the 3rd anniversary of the infamous global WannaCry ransomware outbreak for which North Korea was blamed, the U.S. government released information about three new malware strains used by state-sponsored North Korean hackers. Called COPPERHEDGE, TAINTEDSCRIBE, and PEBBLEDASH, the malware variants are capable of remote reconnaissance and exfiltration of sensitive information from target systems, according to a joint advisory released by the Cybersecurity and Infrastructure Security Agency, the Federal Bureau of Investigation, and the Department of Defense.

How to increase cyber defense agility for the next lockdown
2020-05-08 04:00

SecOps teams are learning a valuable lesson: when you can't physically get onsite to make changes and upgrades to security infrastructure, your ability to deal with security threats slows significantly, and cyber defense agility is greatly reduced. With every day that passes during the current pandemic, the lack of cyber defense agility and lack of visibility into what goes on across a network is one of the biggest cybersecurity issues.

Agari Active Defense delivers actionable BEC intelligence through active threat actor engagement
2020-05-07 02:30

Agari, the market share leader in phishing defense solutions for the enterprise, unveiled Agari Active Defense with a new service that delivers actionable threat intelligence driven through active engagement with Business Email Compromise threat actors. Agari Active Defense - BEC Threat Intelligence Service is the only commercial offering on the market that delivers real-world cyber intelligence harvested from direct active engagements with email fraudsters attacking and scamming organizations.

24By7Security unveils CMMC Readiness Assessment Services for Defense contractors
2020-05-05 02:30

24By7Security is pleased to announce the launch of Readiness Assessment Services for Department of Defense contractors seeking preparedness for Cybersecurity Maturity Model Certification. In upcoming months, the Department of Defense will require that all contractors and suppliers doing business with the Defense Department comply with CMMC standards.

Review: Cybersecurity – Attack and Defense Strategies
2020-04-22 04:30

Yuri Diogenes, a professor at EC-Council University and Senior Program Manager at Microsoft, and Dr. Erdal Ozkaya, a prominent cybersecurity professional, advisor, author, speaker and lecturer, published the second edition of their acclaimed book "Cybersecurity - Attack and Defense Strategies". This book will teach you how to identify unusual behaviors within your organization and use incident response methods by applying blue team and read team strategies.

Accenture acquires Revolutionary Security to deliver advanced cyber defense management
2020-04-08 22:45

Revolutionary Security's portfolio of cybersecurity services includes assessment and testing, design and build of security programs and functions as well as security operations across its clients' IT and OT systems. Revolutionary Security leverages proprietary technology and methods to help mature the security capabilities of its clients and manage risk.

BlackBerry: Chinese cybercriminals target high-value Linux servers with weak defenses
2020-04-07 12:00

Linux malware is real and Advanced Persistent Threat groups have been infiltrating critical servers with these tools for at least eight years, according to a new report from BlackBerry. The RATs report describes how five APT groups are working with the Chinese government and the remote access trojans the cybercriminals are using to get and maintain access to Linux servers.