Cybersecurity Is Critical, but Breaches Don’t Have to Be Disasters

November 21, 2024 at 10:05AM The rise in cybersecurity breaches, despite heavy investments, emphasizes the need for resilience over mere prevention. Companies should view breaches as learning opportunities, adopting strategies like daily stress tests, self-healing systems, and collective defense. A culture of resilience enhances recovery, fosters customer trust, and positions organizations competitively against evolving threats. … Read more

Kansas Water Facility Switches to Manual Operations Following Cyberattack

September 24, 2024 at 08:07AM Arkansas City’s water treatment facility switched to manual operations following a cyberattack discovered on September 22. City manager Randy Frazer assured residents that the water supply remained safe with no disruption to service. Enhanced security measures are in place, and authorities are working to return operations to normal. This incident … Read more

Post-CrowdStrike Fallout: Microsoft Redesigning EDR Vendor Access to Windows Kernel

September 13, 2024 at 02:39PM Microsoft is redesigning anti-malware products’ interaction with Windows kernel to prevent a repeat of the global IT outage caused by a faulty CrowdStrike update. This will involve new platform capabilities in Windows 11, focusing on security and resilience goals. Microsoft aims to enforce Safe Deployment Practices for updates to avoid … Read more

Over a Third of Cyberattacks Result in Job Losses

September 13, 2024 at 02:20PM In the past year, over half of organizations experienced cyber threats, with larger companies being more susceptible. These incidents led to job losses, as reported by 37% of surveyed UK IT professionals. Databarracks’ Data Health Check highlighted the impact of cyber-attacks on downtime and data loss, particularly for larger businesses. … Read more

Unexpected Lessons Learned From the CrowdStrike Event

July 25, 2024 at 02:44PM Many organizations are facing global IT issues due to a defect in CrowdStrike’s Falcon sensor content update, impacting operations across sectors. This event highlights the importance of improving cyberattack response capabilities. Lessons include evaluating detection speed, prioritizing recovery, executing business continuity plans effectively, and addressing supply chain risks to enhance … Read more

FS-ISAC Announces Appointments to Global Board of Directors

June 21, 2024 at 04:36PM FS-ISAC announced its 2024 Board of Directors, adding four new directors and re-electing two incumbents. Kris Fador, CISO for Bank of America, was named Chair. The Board oversees global activities and coordinates with related boards. The new directors bring expertise in cybersecurity and resilience. FS-ISAC thanked outgoing directors and welcomed … Read more

White House Issues National Security Memorandum for Critical Infrastructure

May 3, 2024 at 05:33AM The White House issued a new national security memorandum focused on protecting critical infrastructure from cyber and physical threats. Replacing a decade-old policy, the memorandum addresses malicious cyber activities, strategic competition, and advancements in AI. It involves refining government roles, promoting a risk-based approach, leveraging federal agreements, and designating CISA … Read more

Preparing for Cyber Warfare: 6 Key Lessons From Ukraine

April 17, 2024 at 10:14AM The conflict in Ukraine enters its third year, with cyber operations emerging as a pivotal battleground. Recent cyberattacks have targeted state agencies and financial institutions, underscoring the severity of the digital onslaught. Organizations must prioritize disaster recovery preparedness, personnel safety, backup strategies, cybersecurity training, defense mechanisms, incident response planning, and … Read more

How to make your web apps resistant to social engineering

April 16, 2024 at 10:28AM Social engineering poses a significant threat to organizations, with up to 98% of cyber-attacks involving some form of social engineering. Protecting digital assets, including web applications, is crucial. Strategies to mitigate social engineering risks include end user training, least privilege access, multi-factor authentication, security audits, and incident response plans. Additionally, … Read more

Accelerating into 2024 with NEOM McLaren Formula E Team

January 11, 2024 at 01:06PM Trend Micro’s partnership with NEOM McLaren Formula E team for the 2024 season promises to deliver innovation and resilience. The collaboration aims to leverage cutting-edge technology in both racing and cybersecurity. This initiative embodies a shared commitment to performance, security, and environmental sustainability in driving future innovation. The meeting notes … Read more