We need to learn from the attacks and attempts that have occurred in order to prepare for the future.
from Dark Reading: https://ift.tt/2YPLkJw
via IFTTT
We need to learn from the attacks and attempts that have occurred in order to prepare for the future.
from Dark Reading: https://ift.tt/2YPLkJw
via IFTTT
Backdoors, cryptominers, and ransomware were the most widely detected threats by the DHS Cybersecurity and Infrastructure Security Agency (CISA)’s intrusion prevention system EINSTEIN.
from Dark Reading: https://ift.tt/2NQU7V6
via IFTTT
Whether for business or pleasure, you’re on your own once you walk into the house with a new Internet of Things device. Here’s how to keep every one secure.
from Dark Reading: https://ift.tt/3ilAjax
via IFTTT
Databases can be had for as little as $100, on up to $1,100. Most, if not all, are being sold by the hacking group Shiny Hunters.
from Naked Security https://ift.tt/2BXRCOk
via IFTTT
The out-of-band update plugs two remote code execution bugs in the Windows Codecs library, including one rated as critical
The post Microsoft releases emergency update to fix two serious Windows flaws appeared first on WeLiveSecurity
from WeLiveSecurity https://ift.tt/2ZoOHWQ
via IFTTT
The out-of-band update plugs two remote code execution bugs in the Windows Codecs library, including one rated as critical
The post Microsoft releases emergency update to fix two serious Windows flaws appeared first on WeLiveSecurity
from WeLiveSecurity https://ift.tt/2ZoOHWQ
via IFTTT
We’ve seen an ugly trend recently of tech news stories and cybersecurity firms trumpeting claims of ransomware attacks on companies large and small, apparently based on little more than the say-so of the ransomware gangs themselves. Such coverage is potentially quite harmful and plays deftly into the hands of organized crime.
Often the rationale behind couching these events as newsworthy is that the attacks involve publicly traded companies or recognizable brands, and that investors and the public have a right to know. But absent any additional information from the victim company or their partners who may be affected by the attack, these kinds of stories and blog posts look a great deal like ambulance chasing and sensationalism.

Currently, nearly two dozen ransomware crime gangs have erected their own blogs to publish sensitive data from victims. A few of these blogs routinely issue self-serving press releases, some of which gallingly refer to victims as “clients” and cast themselves in a beneficent light. Usually, the blog posts that appear on ransom sites are little more than a teaser — screenshots of claimed access to computers, or a handful of documents that expose proprietary or financial information.
The goal behind the publication of these teasers is clear, and the ransomware gangs make no bones about it: To publicly pressure the victim company into paying up. Those that refuse to be extorted are told to expect that huge amounts of sensitive company data will be published online or sold on the dark web (or both).
Emboldened by their successes, several ransomware gangs recently have started demanding two ransoms: One payment to secure a digital key that can unlock files, folders and directories encrypted by their malware, and a second to avoid having any stolen information published or shared with others.
KrebsOnSecurity has sought to highlight ransomware incidents at companies whose core business involves providing technical services to others — particularly managed service providers that have done an exceptionally poor job communicating about the attack with their customers.
Overall, I’ve tried to use each story to call attention to key failures that frequently give rise to ransomware infections, and to offer information about how other companies can avoid a similar fate.
But simply parroting what professional extortionists have posted on their blog about victims of cybercrime smacks of providing aid and comfort to an enemy that needs and deserves neither.
Maybe you disagree, dear readers? Feel free to sound off in the comments below.
from Krebs on Security https://ift.tt/31Ciqys
via IFTTT
Malware used to download WastedLocker on target networks was hosted on legit websites belonging to one parent company, Symantec says.
from Dark Reading: https://ift.tt/2AkUYKE
via IFTTT
Follow-up sandbox research confirms Aisino knew about the malware in its tax software, though it’s still unclear whether it was culpable.
from Dark Reading: https://ift.tt/2NNzPvL
via IFTTT
A majority of organizations say the acceleration was driven by a need to support more remote employees.
from Dark Reading: https://ift.tt/2ZwNQUh
via IFTTT