Security News

IT security spending to reach nearly $300 billion by 2026
2023-03-20 04:30

Worldwide spending on security solutions and services is forecast to be $219 billion in 2023, an increase of 12.1% compared to 2022, according to IDC. Investments in hardware, software, and services related to cybersecurity are expected to reach nearly $300 billion in 2026, driven by the ongoing threat of cyberattacks, the demands of providing a secure hybrid work environment, and the need to meet data privacy and governance requirements. These four industries will account for more than a third of all security spending in 2023.

Security response policy
2023-03-19 12:00

TechRepublic Premium Electronic communication policy This policy from TechRepublic Premium provides guidelines for the appropriate use of electronic communications. It covers topics such as privacy, confidentiality and security; ensures electronic communications resources are used for appropriate purposes; informs employees regarding the applicability of laws and company policies to electronic communications; and prevents disruptions to and misuse of company electronic communications .....

Eufy security cams 'ignore cloud opt-out, store unique IDs' of anyone who walks by
2023-03-17 19:30

A lawsuit filed against eufy security cam maker Anker Tech claims the biz assigns "Unique identifiers" to the faces of any person who walks in front of its devices - and then stores that data in the cloud, "Essentially logging the locations of unsuspecting individuals" when they stroll past. All three suits allege Anker falsely represented that its security cameras stored all data locally and did not upload that data to the cloud.

A New Security Category Addresses Web-borne Threats
2023-03-17 10:46

The guide, "Protection from web-borne threats starts with Browser Security Platform," details the characteristics and the capabilities of a potential solution, and explains how it compares to other security solutions and why it is needed. The guide calls for the recognition of an emerging security solution category, Browser Security Platform, which provides visibility into the browser's application layer.

Google Uncovers 18 Severe Security Vulnerabilities in Samsung Exynos Chips
2023-03-17 06:53

Google is calling attention to a set of severe security flaws in Samsung's Exynos chips, some of which could be exploited remotely to completely compromise a phone without requiring any user interaction. The 18 zero-day vulnerabilities affect a wide range of Android smartphones from Samsung, Vivo, Google, wearables using the Exynos W920 chipset, and vehicles equipped with the Exynos Auto T5123 chipset.

How healthcare CISOs can automate cloud security controls
2023-03-17 06:00

This article will outline some of the ways CISOs in the healthcare sector can automate cloud security controls and integrate those controls into standard deployment cycles. There are many cloud security frameworks and best practices.

Most security pros turn to unauthorized AI tools at work
2023-03-17 04:30

Security experts are increasingly resorting to unauthorized AI tools, possibly because they are unhappy with the level of automation implemented in their organization's security operation centers, according to a study conducted by Wakefield Research. Security pros are using AI tools without authorization.

The Biden administration may eye CSPs to improve security, but the real caveat emptor? Secure thyself
2023-03-16 20:37

Recent reports suggest the administration has concerns that major cloud service providers constitute a massive threat surface - one through which an attacker could disrupt public and private infrastructure and services. Chris Dorman, chief technology officer of cloud incident response firm Cado Security, said major cloud service providers are already the best at managing and securing cloud infrastructure.

Amazon Linux 2023: Create and execute cloud-based applications with enhanced security
2023-03-16 08:30

AWS has been offering Amazon Linux, a cloud-optimized Linux distribution, since 2010. Amazon Linux 2023 is provided at no additional charge.

How Mirel Sehic relies on simplicity to focus on product security
2023-03-15 12:10

For facility operators, this includes elevators, HVAC systems, PLC controls, valves, pumps, and a whole slew of systems that we don't think of as 'connected. Regarding attacks on operational technology systems, "You've lost access to your security feeds. Now, if it's a standard premium commercial building, you may say, 'okay, I need to fix that right away'. But what if it was a hospital? What if it was a data center? What are the implications, and is this an inconvenience or does it put lives in danger?".