Latest articles for CSO magazine

NASA CIO allows HPE contract to expire, refuses to sign-off on authority to operate

In the wake of continued security problems, NASA’s CIO is sending a no-confidence signal to Hewlett Packard Enterprise, which received a $2.5 billion contract in…

NASA CIO allows HPE contract’s authority to operate to expire

In the wake of continued security problems, NASA’s CIO is sending a no-confidence signal to Hewlett Packard Enterprise, which received a $2.5 billion contract in…

Experts challenge Skyhigh’s patent for cloud-based encryption gateway

Skyhigh announced today that it has received a patent for its technology, which moves that encryption gateway into a hosted environment. Enterprises looking to protect sensitive…

High-end banking malware hits Brazil

Brazil just can’t catch a break. We’ve already seen flesh-eating bacteria in the water, athletes getting robbed on the streets, and police officers holding up…

Cerber ransomware earns $2.3mil with 0.3% response rate

The fast-growing Cerber ransomware earned nearly $200,000 in July despite a payment rate of just 0.3 percent as a result of its affiliate distribution model,…

Where does text message spam come from? NUVOs

The major mobile networks account for 90 percent of all legitimate text message traffic — but only 38 percent of blocked spam messages. The rest…

Samsung both denies and admits mobile payment vulnerability

Security researcher Salvador Mendoza demonstrated a flaw in Samsung Pay at Black Hat last week, in which the tokens used to secure transactions could be…

Report: Only 3 percent of U.S. companies pay attackers after ransomware infections

Almost half of all companies have been the victims of a ransomware attack during the past 12 months, according to a new report. And while…

Insurers working to fill cyberinsurance data gaps

Insurance companies typically have decades of data, if not more, on which to base their risk estimates. That’s not the case with cyber risk, however.…

Experts: SentinelOne ransomware guarantee no replacement for cyberinsurance

Earlier this week, SentinelOne announced that it will reimburse customers for up to $1 million if they are hit by a ransomware attack, but some…

EMV transition involves many moving parts

The shift from magnetic stripe to chip-based payment cards was first announced in 2011, with a deadline of October 2015, but most merchants still have…

Many popular wireless keyboards completely unprotected

Earlier this year, security researchers went to their local OfficeMax, Staples and other office supply stores and bought a bunch of wireless keyboards. “We’re in…

Health care organizations 114 times more likely to be ransomware victims than financial firms

Health care organizations were 114 times more likely to hit by ransomware infections than financial firms, and 21 times more likely than educational institutions, according…

New HIPAA guidance addresses ransomware

The U.S. Department of Human Services has released new guidance for health care organizations that focuses on the growing threat of ransomware, stresses the need…

Companies failing to plan for many cyber dangers

Only 22 percent of companies have a comprehensive plan in place to deal with major cybersecurity incidents, according to a new survey from KPMG and…

Fake Olympic tickets and Zika news apps scam users

These days not a headline goes by without some cybercriminal jumping all over it. Now, with the Olympics coming up and travelers wary of the…

Merchants slow to migrate to EMV, see rising fraud costs

The cost of paying for fraudulent credit card transactions, previously covered by the credit card companies, shifted to the retailers themselves last October — unless…

Rio Olympics pose security risks to travelers

Police officers held up a sign saying “Welcome to Hell” at the Rio airport last week, according to local and international news reports, and the…

Dangerous keyboard app has more than 50 million downloads

The Flash Keyboard app has been downloaded more than 50 million times — but is capable of some extremely dangerous behaviors.”It looked like it was…

Study: Encryption use increase largest in 11 years

Enterprise use of encryption saw the largest increase over the past year in over a decade, according to a report released today by the Ponemon…

BYOD can pose privacy risks to employees

Companies that use remote device management software to oversee employee devices used for business have the ability to collect a lot more information than employees…

Concerns about security, information sharing up among industrial control system security pros

Security managers working with industrial control systems are increasingly concerned about security, and worried about insufficient information sharing in the industry, according to a new…

Spearphishing attacks target boards

With great power comes great responsibility — and also a great big target painted on your head. At least, that’s the case lately with corporate…

Boards ready to fire over bad security reporting

If CISOs don’t do a good job of communicating, 59 percent of board members said that the security executives stand to lose their jobs, according…

Study: Most companies can’t protect confidential documents

A majority of companies don’t have the technology in place to keep employees from sharing confidential documents, according to a study released today. In particular,…

US phone users least likely to switch after security breach

Globally, 47 percent of consumers would switch their mobile phone carrier in the event of a security breach, up 7 percent from last year, but…

Shaming is a step forward, but more work is needed for faster smartphone patching

Shaming carriers and smartphone manufacturers into applying patches faster is a step forward, but a lot more needs to be done to improve security of…

Surescripts opts for easier, faster UBA deployment

Surescripts is not a data science company. But as the largest health information network in the country, they’ve gotten good at handling Big Data. And…

93% of phishing emails are now ransomware

As of the end of March, 93 percent of all phishing emails contained encryption ransomware, according to a report released today by PhishMe. That was…

Laptop updaters riddled with security holes

A recent test of pre-installed updater software on 10 laptops showed that every single one had security problems.”We went and bought about 10 laptops,” said…