Ten years since the first corp ransomware, Mikko Hyppönen sees no end in sight

May 8, 2024 at 03:35AM Ransomware has plagued the information security landscape for a decade, with attacks increasingly targeting corporations for big payouts. Mikko Hyppönen, chief research officer at WithSecure, warns that the rise in attacks and the value of Bitcoin has created lucrative opportunities for criminals. Despite this, the security industry offers a promising … Read more

RSA Conference 2024 – Announcements Summary (Day 1)

May 7, 2024 at 08:42AM The 2024 RSA Conference in San Francisco featured numerous technology announcements. Arctic Wolf introduced a risk assessment tool and integration with SSE solutions. ArmorCode launched an AI Correlation feature. Cisco announced Splunk integrations. Checkmarx unveiled an AI security offering. Various companies released new products and services, enhancing AI and security … Read more

CyberNut Emerges From Stealth With K-12 Security Awareness Training Solution

May 6, 2024 at 09:15AM CyberNut, a Miami-based startup, has unveiled a security awareness training platform tailored for K-12 schools to combat data breaches. The AI-powered tool uses gamification to train teachers, staff, and students to identify and report phishing attacks. The company recently secured an $800,000 pre-seed funding round and is already working with … Read more

It Costs How Much?!? The Financial Pitfalls of Cyberattacks on SMBs

May 6, 2024 at 08:03AM Cybercriminals target small- and medium-sized businesses (SMBs) due to their limited resources, making them vulnerable to attacks. With cyberattacks leading to financial losses and operational disruptions, investing in a managed endpoint detection and response (EDR) solution, such as Huntress Managed EDR, supported by a 24/7 Security Operations Center, can help … Read more

New Guide Explains How to Eliminate the Risk of Shadow SaaS and Protect Corporate Data

May 3, 2024 at 06:57AM SaaS applications are dominant in the corporate world, but they pose new security risks. LayerX’s guide “Let There Be Light: Eliminating the Risk of Shadow SaaS” addresses the challenges of unauthorized SaaS app usage, suggesting mitigation practices and comparing security controls. It recommends secure browser extensions as the most comprehensive … Read more

The Cybersecurity Checklist That Could Save Your M&A Deal

May 1, 2024 at 10:05AM Mergers and acquisitions (M&A) are on the rise globally, with M&As in the US up 130% to $288 billion, and 56% globally to $453 billion. The exchange of sensitive data during M&As creates cybersecurity challenges, making cybersecurity critical for protecting confidential data and maintaining customer trust. A detailed cybersecurity checklist … Read more

FCC Fines Wireless Carriers for Sharing User Locations Without Consent

April 30, 2024 at 11:22AM The Federal Communications Commission fined AT&T, Sprint, T-Mobile, and Verizon a total of nearly $200 million for illegally sharing customers’ location data without consent, following an investigation that began in 2019. The carriers face penalties for failing to protect sensitive real-time location information and violating federal laws. Carriers have the … Read more

Change Healthcare hacked using stolen Citrix account with no MFA

April 30, 2024 at 10:19AM UnitedHealth confirmed that Change Healthcare’s network was breached by the BlackCat ransomware gang, causing severe operational disruptions and $872 million in financial damages. The company admitted to paying a ransom to protect people’s data post-compromise. CEO Andrew Witty’s testimony revealed the attack’s details and the remediation efforts taken after the … Read more

Why Using Microsoft Copilot Could Amplify Existing Data Quality and Privacy Issues

April 30, 2024 at 08:22AM Gartner reports that 55% of organizations are using or testing Generative AI, with Microsoft 365’s Copilot being a popular choice due to its seamless integration and data protection. However, the US Congress has banned its usage, and Gartner advises caution due to potential data security flaws and AI amplifying existing … Read more

AT&T, Verizon, Sprint, T-Mobile US fined $200M for selling off people’s location info

April 29, 2024 at 07:26PM The FCC fined AT&T, Verizon, Sprint, and T-Mobile US almost $200 million for selling subscribers’ location data to data brokers. The telcos were ordered to pay between $12 million and $80 million. FCC boss Jessica Rosenworcel emphasized the sensitivity of the data being sold and the carriers’ failure to protect … Read more