Security News
The collaboration will allow the integration of Tanium's behavior-based detection offering, Tanium Signals, with OpenCTI, helping organizations to store, organize and visualise intelligence information in real-time. Organizations will be able to feed the Tanium platform with the latest and relevant intelligence data provided by OpenCTI, providing them with the ability to aggregate several sources of threat intelligence.
Understanding today's most important cyber threats is the first step toward protecting any organization from attack. Protecting an organization from attack requires more than just knowledge of the most common cyber threats.
How next-gen cloud SIEM tools can give critical visibility to companies for effective threat hunting
When the move to the cloud was dramatically exacerbated by companies rapidly shifting to remote work, these tools fell short of supplying clear visibility into multiple environments and technology layers. The need to quickly adapt and scale to the new reality provided the perfect opportunity to accelerate the push to cloud, but outdated traditional security information and event management tools are not able to efficiently collect and process the high volume of telemetry generated by the multiple cloud services adopted as part of this push.
LogRhythm announced it has acquired MistNet, a cloud-based analytics platform that delivers vast network visibility and accurate threat detection. The acquisition will allow LogRhythm to deliver intelligent, machine-learning based detection and response capabilities that incorporate network detection, user and entity behavior analytics, endpoint detection and response data, and additional MITRE ATT&CK detections to solve current and emerging security and risk problems.
With the growing threat of fraud fueled by the digital acceleration that took place in 2020, Experian revealed five emerging fraud threats facing businesses in 2021. To help businesses prepare for fraudulent activity in 2021, there are five fraud threats businesses should be aware of this year.
Google has banned the conservative social networking app Parler from the Google Play Store for not removing posts that incite violence in the US. In a statement to BleepingComputer, Google stated that Parler was removed after repeated violations of policies that require Google Play apps to moderate user-generated content. Google Play Store policies require apps that display user-generated content to moderate and remove content that violates Google's policies, including threats of violence and harassment.
Website owners are receiving emails threatening to ruin their reputation if they do not post a five-star review for a cryptocurrency exchange. Today, BleepingComputer received an extortion email through our contact form demanding we post a 5-star review and perform two likes/shares for the coinmama.com cryptocurrency exchange.
Website owners are receiving emails threatening to ruin their reputation if they do not post a five-star review for a cryptocurrency exchange. Today, BleepingComputer received an extortion email through our contact form demanding we post a 5-star review and perform two likes/shares for the coinmama.com cryptocurrency exchange.
In October 2020, KrebsOnSecurity looked at how a web of sites connected to conspiracy theory movements QAnon and 8chan were being kept online by DDoS-Guard, a dodgy Russian firm that also hosts the official site for the terrorist group Hamas. New research shows DDoS-Guard relies on data centers provided by a U.S.-based publicly traded company, which experts say could be exposed to civil and criminal liabilities as a result of DDoS-Guard's business with Hamas.
Healthcare organizations continue to be a prime target for cyberattacks of all kinds, with ransomware incidents, Ryuk in particular, being more prevalent. The advisory aimed to prepare organizations for ransomware attacks with Ryuk and Conti by providing tactics, techniques, and procedures specific to incidents with these malware strains.