EASA Part IS
What is EASA? EASA stands for the European Union Aviation Safety Agency. It is a regulatory body established by the European Union to ensure a high and uniform level of safety in civil aviation across Europe. The EASA framework provides a comprehensive set of rules and guidelines governing the design, ... Read More
IATA Cyber Regulations
The International Air Transport Association (IATA) Cyber Security Regulations represent a set of guidelines and standards aimed at enhancing cybersecurity resilience within the aviation industry. These regulations are critical for ensuring the safety, security, and operational continuity of a highly interconnected global sector. What Are IATA Cyber Security Regulations? IATA, ... Read More
OT Cybersecurity Framework
What is the OT Cybersecurity Framework? The OT Cybersecurity Framework or OT CSF is a foundational Operational Technology (OT) risk framework that covers all aspects of the OT environment. OT encompasses systems and devices that interact with the physical world, including industrial control systems (ICS), building automation systems, transportation systems, ... Read More

NIST NVD “Under Construction”
In recent weeks, NIST’s National Vulnerability Database (NVD) has been experiencing a slowdown. Since February 15, 2024, a prominent notice has adorned the NVD’s main page, signaling disruptions in vulnerability management. It reads: “NIST is currently working to establish a consortium to address challenges in the NVD program and develop ... Read More

Made-In-China Hack Infiltrates the US Government
A hacking campaign, which began in mid-May, saw Chinese hackers infiltrating US government email accounts, including those of federal agencies such as the State Department and the Department of Commerce. While the breach campaign impacted unclassified systems and was reportedly small in scale, the targeted attacks on specific high-level individuals ... Read More
CJIS
What is the CJIS framework? The CJIS (Criminal Justice Information Services) framework is a comprehensive set of security policies and guidelines established by the Federal Bureau of Investigation (FBI) in the United States. It aims to ensure the confidentiality, integrity, and availability of sensitive criminal justice information, including fingerprint records, ... Read More

EU-U.S. Data Privacy Framework: Is Adequate Good Enough?
The European Union has approved a new agreement regarding the privacy of individuals’ personal information transmitted across the Atlantic, in an effort to address European concerns about surveillance by American intelligence agencies. According to the European Commission, the EU-U.S. Data Privacy Framework provides a sufficient level of protection for the ... Read More

Anonymous Sudan Or Anonymous Russia?
Anonymous Sudan gained notoriety with its distributed denial of service (DDoS) attacks, targeting Microsoft in June. Earlier this year, the group was linked to a string of cyber attacks against Israel, Sweden, and other nations. The enigmatic, highly skilled group claimed to be acting on behalf of oppressed Muslims, launching ... Read More

Over 100,000 ChatGPT User Account Credentials For Sale on the Dark Web
This week, researchers at Group-IB discovered that upwards of 100,000 ChatGPT user accounts were up for sale on the dark web market over the last year. The type of malware used to gain stolen credentials is known as information-stealing malware. What is Information-Stealing Malware? Information-stealing malware, otherwise known as info ... Read More

Ransomware Causes St. Margaret Health’s Permanent Closure
The recent closure of St. Margaret’s Health, a hospital in Illinois, serves as a powerful reminder of the security challenges that small and rural hospitals face. In truth, the decision to permanently cease operations was influenced by various factors, including COVID-19 and staffing shortages. But the impact of a ransomware ... Read More