Eight in 10 IT Pros Believe Their Organization Is Next to Suffer a Breach

|
94% of IT pros have experienced a data breach at some point in time 79% are worried their current employer could be next Employee data breaches most commonly occur through external email services such as Gmail and Outlook New research indicates that IT professionals are overwhelmingly pessimistic about their organization’s ... Read More

Companies Should Tell Workers It’s OK to Confess to Security Mistakes, Stanford Professor Says

|
88% of data breaches are caused by human error Employees between the ages of 18 and 30 are five times more likely to admit to errors that compromised cybersecurity IT reps can leverage integrated Risk Management and Analytics to address misconfigurations and vulnerabilities, including human-triggered ones A new study indicates ... Read More
Hackers Shame Newcastle University on Twitter After Infecting it with Ransomware

Hackers Shame Newcastle University on Twitter After Infecting it with Ransomware

A notorious ransomware gang has taken to Twitter to shame the UK’s Newcastle University after infecting its systems with data-crippling malware. The criminals are threatening to release the university’s data publicly if their demands aren’t met. The public research university reported the attack as a “cyber incident” which took place ... Read More

IT Leaders Grossly Overestimate the Maturity of Their Vulnerability Management Programs

|
84% of companies say their vulnerability management is efficient Researchers find a significant disconnect between perception and reality Organizations must update and automate remediation processes Most companies place a lot of trust in their vulnerability management programs, with 84% of IT leaders rating them as "mature." However, a deeper dive ... Read More
Ransomware Attack Halts Border Crossing for Four Hours in Argentina

Ransomware Attack Halts Border Crossing for Four Hours in Argentina

In a rare occurrence, ransomware operators have managed to halt border crossing into and out of Argentina for four hours after infecting the National Direction of Migration with data-crippling malware. Government officials reportedly refused to negotiate with the hackers. According to the country’s cybercrime agency, Unidad Fiscal Especializada en Ciberdelincuencia, ... Read More
US Phone Service Exposes Millions of Messages Between Inmates and Their Friends and Families

US Phone Service Exposes Millions of Messages Between Inmates and Their Friends and Families

Telmate, a company that facilitates monitored inmate communications with the outside world, has exposed a large database containing tens of millions of call logs, private messages, and personal information about inmates and their contacts. Bob Diachenko, a security researcher with Comparitech, discovered the unsecured database on August 13 and immediately ... Read More

A Third of Companies Expose Unsafe Network Services to the Internet, Research Reveals

|
Data storage, remote access and network administration are most prevalent services exposing sensitive data Unsafe services are linked to other security issues in the digital supply chain Ukraine, Indonesia, Bulgaria, Mexico and Poland are among countries with the highest rate of domestically hosted systems running unsafe services A third of ... Read More

76% of Security Pros Admit Securing Their Cloud Environments Is a Struggle

|
Most security professionals have difficulty maintaining security configurations in the cloud 22% still assess their cloud security posture manually Security pros confess they need more automated enforcement Organizations face shortcomings in monitoring and securing their cloud environments, according to a survey of 310 security professionals ... Read More
Feds Propose ‘911’ Emergency Call for Reporting Security Flaws; Experts Warn It’s Easier Said Than Done

Feds Propose ‘911’ Emergency Call for Reporting Security Flaws; Experts Warn It’s Easier Said Than Done

CISA drafts directive to create a vulnerability disclosure policy for government websites and apps Agency seeks to centralize the effort via a standard vulnerability disclosure platform service next spring Cybersecurity veteran Katie Moussouris warns that the success of the directive largely hinges on triage and response The Cybersecurity and Infrastructure ... Read More
American Payroll Association Forgets to Patch Web Portal, Hackers Skim Credit Cards and Passwords Off Site

American Payroll Association Forgets to Patch Web Portal, Hackers Skim Credit Cards and Passwords Off Site

• American Payroll Association uncovered unusual activity on the site dating back to May 13 • Hackers exploited vulnerability to deploy card-skimming techniques and steal credit card data • Identity thieves gained access to login information (i.e. username and password) and individual payment card information • APA notice suggests IT ... Read More