International Cyber Expo International Cyber Expo

Editor's News

Vendors claim to be offering products and solutions in the governance, risk and compliance (GRC) space, but these rarely fit the analyst specification.   According to Paul Proctor, vice president, distinguished analyst and the chief of research for security and risk management at Gartner, there are plenty of vendors in the space who have their preference for some technologies, but often technologies do not fit into what it deems to be the GRC model.  ...

Read moreDetails

Major threats can be mitigated by using three simple tactics to manage user and data controls.   Speaking at the Gartner Security and Risk Management summit in London, Mark Nunnikhoven, vice president of cloud and emerging technologies at Trend Micro, highlighted breaches at Home Depot, Houston Astros, Adobe and Target, and said that the common theme was that they were all hit by an attacker who stole something, but were all major organisations who deployed security...

Read moreDetails

Dark web marketplace Silk Road was spotted due to misconfigured privacy software and a CAPTCHA which was broken by multiple access attempts.   According to a document released by consultant and former FBI agent Christopher Tarbell, analysis of the traffic being sent from the Silk Road website did not involve accessing any administrative area or “back door” of the site, as the website’s user login interface was fully accessible to the public and was accessed by username, password and...

Read moreDetails

Microsoft will release four bulletins next week, three of which will be rated as important.   With updates for Microsoft Windows, Internet Explorer, .NET Framework and Lync, this is the lightest patch Tuesday since January. Karl Sigler, threat intelligence manager at Trustwave, highlighted the first bulletin, which patches a remote code execution flaw, as being the highest priority to patch.   “This Internet Explorer bulletin marks the eighth patch Tuesday in a row that includes...

Read moreDetails

Cryptzone has acquired HiSoftware, a leading provider of governance, compliance and security solutions.   The provider of data security and identity and access management (IAM) solutions has added the product portfolio to enhance its robust capabilities in securing critical data in the cloud, on mobile devices and in customer data centres.   According to Cryptzone, the combined offering will be a complete suite of context-aware access control, data security and compliance solutions including HiSoftware’s Compliance...

Read moreDetails

Barclays has launched a revolutionary biometric scanner which identifies a user by the blood and veins in their finger.   Developed with technology from Hitachi, the Barclays Biometric Reader allows a user to scan their finger to access their online bank accounts and authorise payments within seconds, without the need for PIN, passwords or authentication codes.   Initially offered to Barclays Corporate Banking clients from next year, Ashok Vaswani, CEO Barclays Personal and Corporate Banking,...

Read moreDetails

LinkedIn has announced the roll out of three security and privacy tools to better protect user sessions, and ensure that account changes are recognised.   In a blog, Madhu Gupta, head of security, privacy and customer service products at LinkedIn, said that the three options would give members “as much choice and control as possible over your account and data”.   The first addition will offer a single page to see everywhere you’re signed in...

Read moreDetails

A massive cybercrime network which penetrated hundreds of blue-chip companies, Government institutions, research laboratories and critical infrastructure facilities was facilitated for 12 years by the incorporation of over 800 false companies registered in the UK.   According to research by Cybertinel, the espionage system was traced back to over 800 front companies registered in UK and to German individuals who operated the espionage network.   Named the ‘Harkonnen Operation’, the network performed numerous targeted penetrations...

Read moreDetails

North American non-profit community organisation, Goodwill Industries International, has confirmed that a malicious attack on third-party systems impacted its retail members.   In a statement, Goodwill Industries International confirmed that a third-party vendor’s systems were attacked by malware, which enabled attackers to access some payment card data of a number of the vendor’s customers. The impacted Goodwill members used the same affected third-party vendor to process credit card payments.   Goodwill said a forensic investigation found that...

Read moreDetails

“One day wonder” websites, which are only online for 24 hours, are responsible for attack sources and for command and control purposes.   According to research by Blue Coat, the majority of websites used for malicious attacks are alive for only 24 hours. Its analysis of more than 660 million unique hostnames requested by 75 million users over a 90-day period earlier this year found that 71 per cent of the hostnames (470 million) were...

Read moreDetails
Page 261 of 319 1 260 261 262 319