Security News

Skype, Slack and Signal Vulnerable to Critical Framework Bug
2018-01-24 19:21

The team behind the popular open-source framework Electron warns a remote code execution flaw could compromise user privacy.

Critical Flaw Hits Popular Windows Apps Built With Electron JS Framework
2018-01-24 12:33

A critical remote code execution vulnerability has been reported in Electron—a popular web application framework that powers thousands of widely-used desktop applications including Skype, Signal,...

Framework Aims to Improve Patient Data Matching
2018-01-18 19:48

A new framework aims to improve patient safety and data integrity by helping healthcare entities to more consistently and accurately match patients with all their information, developers Kirk...

What Makes ONC's 'Trusted Exchange Framework' So Complex?
2018-01-16 20:47

Federal regulator's recently issued draft for a "trusted exchange framework" aimed at propelling nationwide, secure, interoperable, query-based health data exchange is a complex proposal that...

Is ONC's 'Trusted Exchange Framework' Doable?
2018-01-10 22:03

CISOs, CIOs, Weigh the Pros and Cons of ONC's Security ProposalsWhile a draft "trusted exchange framework" unveiled last week by federal regulators includes proposed components that could raise...

Analysis: Security Elements of 'Trusted Exchange Framework'
2018-01-05 21:48

Some Proposals More Specific Than What's Required Under HIPAAFederal regulators have released a draft of a trusted health information exchange framework with some detailed security components that...

Significant Changes Coming to  NIST Cybersecurity Framework
2017-12-15 17:18

The latest ISMG Security Report focuses on the significant changes found in the latest version of the U.S. government's Framework for Improving Critical Infrastructure Cybersecurity, commonly...

NIST Publishes Second Draft of Cybersecurity Framework
2017-12-08 15:46

The National Institute of Standards and Technology (NIST) announced this week that it has published a second draft of a proposed update to the “Framework for Improving Critical Infrastructure...

Comparing Threat-centric vs. User-centric Security Frameworks
2017-11-14 14:33

Threat-centric security frameworks need to be supplemented with an approach based on user behavior, which is becoming a critical parameter in understanding organizations' risk postures,...

PCI Council Developing Software Framework
2017-11-14 14:33

The PCI Security Standards Council is creating a payments software framework, including two new standards that can evolve as the software rapidly changes, Troy Leach, the council's CTO, explains...