While mainly made up of vendors, the Operational Technology Cyber Security Alliance aims to offer security best practices for infrastructure operators and industrial partners.
from Dark Reading: https://ift.tt/31C71uE
via IFTTT
While mainly made up of vendors, the Operational Technology Cyber Security Alliance aims to offer security best practices for infrastructure operators and industrial partners.
from Dark Reading: https://ift.tt/31C71uE
via IFTTT
The Nok Nok App SDK for Smart Watch is designed to let businesses implement FIDO-based authentication on smartwatches.
from Dark Reading: https://ift.tt/2MDz1dm
via IFTTT
Business-to-business payments provider Billtrust is still recovering from a ransomware attack that began last week. The company said it is in the final stages of bringing all of its systems back online from backups.
With more than 550 employees, Lawrence Township, N.J.-based Billtrust is a cloud-based service that lets customers view invoices, pay, or request bills via email or fax. In an email sent to customers today, Billtrust said it was consulting with law enforcement officials and with an outside security firm to determine the extent of the breach.
“Our standard security and back-up procedures have been and remain instrumental in our ability to execute the ongoing restoration of services,” the email reads. “Out of an abundance of caution, we cannot disclose the precise ransomware strains but will do so as soon as prudently possible.
In an interview with KrebsOnSecurity on Monday evening, Billtrust CEO Steven Pinado said the company became aware of a malware intrusion on Thursday, Oct. 17.
“We’re aware of the malware and have been able to stop the activity within our systems,” Pinado said. “We immediately started focusing on control, remediation and protection. The impact of that was several systems were no longer available to our customers. We’ve been fighting the fight, working on restoring services and also digging into the root cause.”
A report from BleepingComputer cites an unnamed source saying the ransomware strain that hit Billtrust was the BitPaymer ransomware, but that information could not be confirmed.
One of Billtrust’s customers has published a day-by-day chronology of the attack and communications from the company here (h/t @gossithedog).
Pinado said Billtrust had restored most of its systems, and that it was in the process now of putting additional security measures in place. He declined to discuss anything related to the ransomware attack, such as whether the company paid a ransom demand in exchange for a key to unlock files scrambled by the malware, although he allowed Billtrust does have cybersecurity insurance for just such occasions.
Billtrust recently teamed up with Visa to launch the Billtrust Business Payments Network, an effort to digitize payments between businesses.
Cloud service providers are a favorite target of attackers who deal in ransomware. In August, Wisconsin-based PerCSoft paid a hefty ransom to get out from beneath an attack that separated hundreds of dental offices from their patient records.
In July, attackers hit QuickBooks cloud hosting firm iNSYNQ, holding data hostage for many of the company’s clients. In February, cloud payroll data provider Apex Human Capital Management was knocked offline for three days following a ransomware infestation.
On Christmas Eve 2018, cloud hosting provider Dataresolution.net took its systems offline in response to a ransomware outbreak on its internal networks. The company was adamant that it would not pay the ransom demand, but it ended up taking several weeks for customers to fully regain access to their data.
from Krebs on Security https://ift.tt/32DuVHB
via IFTTT
In cybersecurity, the combination of men, women and machines can do what neither can do alone — form a complementary team capable of upholding order and fighting the forces of evil.
from Dark Reading: https://ift.tt/31EhkOV
via IFTTT
The VPN company said that one of its 3,000 servers in a third-party data center was open to exploitation through a misconfigured management tool.
from Dark Reading: https://ift.tt/2W1UuzC
via IFTTT
An open Elasticsearch database exposed hundreds of thousands of hotel booking reservations, compromising data from full names to room numbers.
from Dark Reading: https://ift.tt/2MDJDsw
via IFTTT
A good security team helps the business help itself operate more securely — soliciting input while adhering to a unified strategy, vision, goals, and priorities.
from Dark Reading: https://ift.tt/2qttVHI
via IFTTT
The disks are part of the command centres that run the country’s nuclear missile deterrent on behalf of SACCS.
from Naked Security https://ift.tt/35ZYLs2
via IFTTT
How much of our stuff is going to the cloud? Probably a lot more than you realize. Let’s look at the risks and how to mitigate them.
from Naked Security https://ift.tt/35W24As
via IFTTT
The company says that the incident, going back to March 2018, affected only 1 out of its 3,000 servers
The post NordVPN reveals breach at datacenter provider appeared first on WeLiveSecurity
from WeLiveSecurity https://ift.tt/33YlxPb
via IFTTT