Subscribe to Email Updates

Subscribe

All about Virtualization and Cloud Security | Recent Articles:

One-third of All Vulnerabilities Rated High Risk

Dec 05 by George V. Hulme

First the good news: according to a published report there were more than 16,000 software vulnerabilities disclosed during the first nine months of this year. Now, that’s quite a few vulnerabilities that could enable attackers, exploits, and malware to scurry onto an enterprise environment. However, it is 7 percent fewer vulnerabilities than 2017.

Read More

2018 Sees API Breaches Surge With No Relief in Sight

Dec 04 by Ericka Chickowski

Last year the OWASP Top 10 committee was prophetic in at least one of its inclusions in the update to its industry benchmark list. For the first time, the group included insecure APIs as one of the most common attack vectors that developers need to avoid adding to their code when creating software. Looking back on 2018, you can see why they sounded the warning.

Read More

Marriott Suffers Second-Biggest Data Breach in History, after 2013 Yahoo Hack

Dec 03 by Filip Truta

Mariottt International has suffered what can be considered one of the largest data breaches in history, trailing only the 2013 Yahoo breach. The world’s largest hotel chain said some 500 million customer records were compromised.

Read More

‘Tis the Season—for a Phishing Frenzy

Dec 03 by Ericka Chickowski

This year’s online holiday shopping season was kicked off to tremendous fanfare, as deal hunters went crazy last week with record-breaking spending. According to USA Today, holiday sales on Cyber Monday topped $7.9 billion in just the US alone. Meanwhile, mega retailer Amazon reported that Cyber Monday was the single biggest global shopping day in its company history—people ordered more than 18 million toys from Amazon on Cyber Monday and Black Friday combined.

Read More

Think Your Organization Has a Healthy Cybersecurity Culture?

Nov 30 by George V. Hulme

If your organization has a healthy cybersecurity culture, consider yourself lucky — less than five percent of organizations do.

Read More

Study Ranks Healthcare and Insurance as Worst Custodians of Personal Data

Nov 29 by Filip Truta

Phishing remains a key attack vector for bad actors to compromise not just individual user accounts, but also to establish a foothold in the entire infrastructure of a given organization. This is possible because attackers know one thing very well: a company’s first line of defense, its staff, is also its weakest security layer.

Read More

Ransomware – A Growing Menace for Healthcare Providers

Nov 28 by Filip Truta

In May 2017, the WannaCry ransomware took copious amounts of data hostage and demanded hefty sums in exchange for the decryption keys. The contagion, allegedly the work of North Korean hackers, spread like wildfire, infecting countless systems worldwide and dealing billions of dollars in damages. Some victims ceded to the attackers’ demands, but few got their data back.

Read More

The BYOD Paradox: Personal Devices Expose Businesses to Cyber-Risk, But Employees Don’t Want Bosses Controlling Their Gadgets

Nov 27 by Filip Truta

BYOD programs have had a mixed track record over the years. Some say they increase mobility, flexibility, efficiency and collaboration, leading to a more productive workforce overall. Other businesses still shun the practice outright.

Read More

Building a Multi-Cloud Strategy? Be Sure to Address the Security and Management Challenges

Nov 26 by Razvan Muresan

Many organizations today are adopting a multi-cloud strategy, using services from several cloud providers and deploying offerings such as software-as-a-service (SaaS), platform-as-a-service (PaaS), and infrastructure-as-a-service (IaaS) to meet a variety of business needs.

Read More

Lack of Political Leadership in UK Jeopardizes Cyber Security of Critical Sectors, Report Says

Nov 23 by Luana Pascu

The lack of political leadership to face targeted attacks is contributing to the poor job the UK is doing on its national security strategy, says a UK government report discussing the cyber security of the nation’s critical national infrastructure.

Read More

Not a New Technique in Operation Shaheen Attack

The advanced attack targeting Pakistan described by Cylance mentions an evasion technique that incapacitates the security solutions provided by 8 vendors. Bitdefender products have been successfully blocking this threat since 2016. We conducted our own analysis of this malware and we have new findings to share.

Read More

Microsoft’s Data Collection Approach Violates GDPR, Hefty Fine Awaits

Nov 21 by Luana Pascu

EU data protection legislation aims to give users more control over their personal data, and threatens companies with fines for collecting data without user consent and for data breaches. Countless companies have been struggling to become GDPR compliant, but it seems major tech players may not have taken it seriously. After Facebook and Google drew criticism for violating EU’s data protection law, it is now Microsoft’s turn to take the heat.

Read More

Cloud Security




Subscribe to Blog Updates

Latest Tweets