Palo Alto Networks Releases IoCs for New Firewall Zero-Day

November 18, 2024 at 08:19AM The CISO Forum Virtual Summit sessions are now available for instant viewing. SecurityWeek offers extensive resources on various cybersecurity topics, including malware, ransomware, incident response, and risk management. Subscribe to their Daily Briefing Newsletter for the latest news and expert insights. Unsubscribe anytime. ### Meeting Takeaways: 1. **CISO Forum Virtual … Read more

Beyond Compliance: The Advantage of Year-Round Network Pen Testing

November 18, 2024 at 06:03AM IT leaders are urged to conduct more frequent network penetration testing to stay ahead of hackers, as compliance-focused approaches are insufficient. Automated testing solutions like vPenTest can reduce costs by over 60%, allowing companies to perform assessments quickly, maintain security year-round, and meet regulatory and insurance requirements efficiently. ### Meeting … Read more

Cyberattack Cost Oil Giant Halliburton $35 Million

November 11, 2024 at 08:30AM SecurityWeek offers comprehensive cybersecurity news, including insights on malware, data breaches, ransomware, and various security domains such as cloud, network, and IoT security. It features events, webcasts, and newsletters for staying updated on industry developments, along with resources for CISO strategies and funding in cybersecurity. ### Meeting Takeaways: 1. **Key … Read more

Microsoft Warns of Russian Spear-Phishing Attacks Targeting Over 100 Organizations

October 30, 2024 at 09:42AM The 2024 ICS Cybersecurity Conference in Atlanta offers sessions focused on various cybersecurity topics. Stay updated with cybersecurity news, webcasts, and virtual events through SecurityWeek. Subscribe to their email briefing for insights on threats and industry trends, with options to unsubscribe anytime. ### Takeaways from the 2024 ICS Cybersecurity Conference … Read more

New Fortinet Zero-Day Exploited for Months Before Patch

October 24, 2024 at 07:41AM The ICS Cybersecurity Conference is broadcasting live from Atlanta, offering remote sessions on various cybersecurity topics, including threats, incident response, and data protection. SecurityWeek provides news, webcasts, and virtual events focused on cybersecurity, and encourages subscriptions to their daily briefing newsletter for the latest insights. ### Takeaways from the Meeting … Read more

Chinese State Hackers Main Suspect in Recent Ivanti CSA Zero-Day Attacks

October 14, 2024 at 09:15AM The Zero Trust Strategies Summit sessions are now available on demand. SecurityWeek offers a wide range of cybersecurity topics and resources including news, webcasts, and events. Stay updated with their Daily Briefing Newsletter for insights on threats, incident response, and more. Unsubscribe anytime. ### Meeting Takeaways: 1. **Event Highlight:** – … Read more

The Perils of Ignoring Cybersecurity Basics

October 8, 2024 at 02:17PM CrowdStrike’s software update caused 8 million Windows devices to go offline, impacting hospitals, airlines, payment platforms, and emergency services. The issue stemmed from poor patch management and violated risk management policies. Experts recommend staged rollout of patches and diversifying operating systems to mitigate vulnerabilities, and note potential implications for cyber … Read more

How Shifts in Cyber Insurance Are Affecting the Security Landscape

September 18, 2024 at 10:01AM The soaring cost of cyberattacks drives cyber insurers to reassess underwriting and promote greater cyber resiliency. With cyber-insurance claims rising and evolving, insurers are imposing stricter requirements, such as segmented, encrypted, and immutable backups, on companies seeking coverage. This shift incentivizes businesses to prioritize cyber resiliency to safeguard against evolving … Read more

Fortune 50 biz coughed up record-breaking $75M ransom to halt leak of stolen data

August 2, 2024 at 08:11AM An unnamed Fortune 50 corporation paid a record $75 million to the ransomware gang Dark Angels to prevent terabytes of data from being leaked online. The gang targets one major victim at a time, files of businesses likely to pay up. Zscaler confirms the gang’s stealthy operations and suggests a … Read more

Would Making Ransom Payments Illegal Result in Fewer Attacks?

July 31, 2024 at 10:09AM According to Netwrix’s “2024 Hybrid Security Trends Report,” ransomware and other malware attacks are major security incidents. There’s debate about making ransomware payments illegal. While banning payments might eliminate cybercriminals’ incentive, it could lead to complex ethical and legal issues, including underreporting and disproportionate impact on small businesses. A multifaceted … Read more