International Cyber Expo International Cyber Expo

Editor's News

Only 40 per cent of retail and financial organisations feel that they could detect a data breach within a number of days.   According to research by Tripwire of 102 financial organisations and 151 retail organisations in the UK, 25 per cent of breaches go undetected for more than 24 hours, while 44 per cent admitted that their customer data could be better protected.   Speaking to IT Security Guru, Dwayne Melancon, chief technology officer...

Read moreDetails

Attackers can obtain access privileges and access protected data by using nothing more than knowledge of common Windows protocols, basic social engineering and readily available software.   According to research by Imperva, data breaches that are commonly associated with the “APT” theme are often achieved by relatively simple (and commonly available) means, using basic technical skills.   Amichai Shulman, CTO of Imperva, said: “There needs to be a fundamental shift in how we view APTs...

Read moreDetails

The board of directors of Target have removed Gregg Steinhafel as chairman and chief executive some six months after the major breach was reported.   According to Reuters, Target said that it wants new leadership to help restore consumer confidence in the retailer after the data breach affected around 70 million customers. A 35-year veteran of the company, Steinhafel had been CEO since 2008 and is now replaced him with Chief Financial Officer John Mulligan...

Read moreDetails

A new vulnerability in the open authentication framework OAuth is not the new Heartbleed, but it is affecting major websites.   According to Symantec, this is not the next Heartbleed, but it is a security flaw in the implementation of OAuth by service providers. Also named Covert Redirect, this takes advantage of third-party clients susceptible to an open redirect and requires an attacker to find a susceptible application as well as acquire interaction and permissions from...

Read moreDetails

CipherCloud has launched a free tool to give businesses visibility into all of the cloud applications in use across the organisation. According to the company, Cloud Discovery solution allows users to discover, analyse and risk score the different cloud applications being used by employees, including most-used and high-risk based on user access and volume – providing greater visibility and allowing them to take action where necessary. Paige Leidig, ‎chief marketing officer and senior vice president...

Read moreDetails

IT Security Guru announced the winners of its inaugural Infosec awards last night.   After asking attendees and exhibitors to nominate themselves via the IT Sec Guru Twitter account using the hashtag #GuruHigh5, we asked for nominations for the best stand, best newcomer, best giveaway, best speaker and most newsworthy vendor, the nominations were collected and the winners announced as the following:   Best stand – Pen Test Partners Best giveaway – Tripwire for the...

Read moreDetails

Despite Microsoft ending support for XP a month ago, Microsoft has announced that it has released an out-of-band patch to fix the zero-day flaw in Internet Explorer.   Dustin Childs, group manager of response communications at Microsoft Trustworthy Computing, said that it made the decision to issue the security update for Windows XP as even though it is no longer supported by Microsoft and it continues to encourage customers to migrate to a modern operating...

Read moreDetails

Wifi boosters have been revealed to be particularly unsecure.   Speaking at an event in London, Paul Vlissidis, technical director of NCC Group, said that the main challenge with the Internet of Things (IoT) was as there was “a problem with all equipment and sharing on the network”.   Highlighting a plug wifi booster for the home, Vlissidis said that people would typically use them around the home and outside to boost their signal but...

Read moreDetails

Wireless security is at a critical stage, and research has found that of 81,743networks surveyed, around 30 per cent were using either the known-broken Wired Equivalent Privacy (WEP) algorithm, or no security encryption at all. In an exercise, James Lyne, global head of security research at Sophos, used wifi scanners on a bicycle in an project named “warbiking” and found that 52 per cent of networks were using WiFi Protected Access (WPA). “Our experiment found...

Read moreDetails

Vast data stores and small-sized removable media is enabling whistle-blowers and will enable more in future.   Speaking in his keynote address at Infosecurity Europe, Mikko Hypponen, chief research officer at F-Secure, said that whistle-blowing has “been around forever” and arms insiders who believe that they can fix their wrong-doings, which can be serious or something more “down-to-earth”, like employers mis-treating employees.   He said: “Chelsea Manning would have needed a truck to steal information,...

Read moreDetails
Page 284 of 319 1 283 284 285 319