Infosecurity News
Active Directory Mismanagement Leaves Huge Numbers of Orgs Vulnerable
Many enterprises are overly exposing their AD administrator’s credentials.
Arby's Gets Roasted in Breach of 300K Payment Cards
The event involved malicious software installed on payment card systems at hundreds of its corporate-owned restaurant locations across the US.
UK Supreme Court Warns of Scam Subpoena Emails
Phishers try to socially engineer concerned netizens
Sports Direct Failed to Tell Staff of Data Breach
Retail giant reportedly spilled employee details last September
IT Leaders and Execs Pass the Buck on Cyber Response
Most believe they’ll be targeted over coming year, says BAE Systems
Invisible Attacks Breach Enterprises in 40 Countries
These targeted attacks use only legitimate software and target banks, telecoms and government organizations.
Majority of Websites Are Vulnerable to Hacking for Hire
Only 33% have no found vulnerabilities, showing significant needed improvement on enterprise security.
Sophos Adds Machine Learning with Invincea Purchase
Sophos has announced the intention to acquire Invincea and add machine learning-based predictive malware detection to its portfolio
Social Media Phishing Attacks Soar 500%
Proofpoint report highlights growing menace of angler phishing
Sentry MBA Tool Used in Attacks on Login Forms
Sentry MBA is a tool that allows the user to login to websites, using a non-traditional form of brute force
Polish Banking Sector Hit with System-wide Hack
The sector's own financial regulator was ironically the original source of the compromise.
Safer Internet Day: Half of UK Kids Have Online Concerns
But Microsoft claims UK users are most insulated in the world
Just 5% of FTSE 100 Boards Feature a Cyber Expert
Even well-funded firms still too reactive with security, according to Deloitte
New Sage Ransomware Shares Delivery with Locky
The overlapping infrastructure is a reminder of how malware support and distribution is frequently reused.
Metasploit Update Extends Pen Testing to IoT
Popular open source framework gets a hardware bridge
Cyber Expert: Vendor FUD Distorts Online Threats
National Cyber Security Centre director warns of marketing hype over APTs
Secrets Management: the Must-Dos
Getting a handle on secrets management is one of the No. 1 challenges in modern IT security.
PKI: Essential for Medical IoT
PKI can help three common scenarios that leave these critical pieces of infrastructure wide-open to hackers.
Ransomware Cripples Ohio County Government for Days
The Licking County government offices, including the police force, the county auditor's office and the clerk of courts, have lost online access and landline telephones.
'Coworker' Phish Mails, Social Media Lures Fool Most Americans
68% of Americans were tricked by phishing emails that looked like they were from a coworker.