As containers take off, so do security concerns
Containers offer a quick and easy way to package up applications and all their dependencies, and are popular with testing and development.According to a recent…
Corebot cleverly written botnet malware with growth potential
There’s a new botnet malware on the loose, called Corebot, that researchers believe has the potential to develop into a significant threat.The malware was first…
Travel apps riddled with security flaws
The top 10 travel apps in the iOS and Android app stores are all riddled with security flaws, according to a new report from Bluebox…
Roundabout Targeting
Consumer devices are the most vulnerable point for bank cyberattacks By Maria Korolov Cybercriminals who attack banks are more likely to focus on their online…
Attackers go on malware-free diet
To avoid detection, some hackers are ditching malware and living “off the land” — using whatever tools are already available in the compromised systems, according…
MIT scores worst in cybersecurity
In a cybersecurity survey of 485 large colleges and universities, the Massachusetts Institute of Technology came in at the bottom of the list.In a report…
Security experts mostly critical of proposed threat intelligence sharing bill
This fall, the Senate is expected to take another look at the Cybersecurity Information Sharing Act, or CISA, but many security experts and privacy advocates…
Report: breached records count down this year
The number of individual records compromised by data breaches has declined by 41 percent during the first half of this year, compared to the same…
EMV transition will still leave security gaps
This October, US merchants and payment providers are scheduled to switch to new, more secure, chip-based payments. But financial transactions aren’t going to become safer…
Ashley Madison still a top lure for scammers and crooks
The Ashley Madison breach has been a Christmas-in-August present for spammers and scammers of all kinds, and your company could be the next target.Here are…
Court: FTC can take action on corporate data breaches
The US Court of Appeals has ruled that the FTC mandate to protect consumers against fraudulent, deceptive and unfair business practices extends to oversight of…
Study: 81% of large health care organizations breached
In the past two years, 81 percent of hospitals and health insurance companies have had a data breach, according to a report released by KPMG.”These…
Intel: Criminals getting better at data exfiltration
Enterprises tend to be highly focused on keeping attackers out of their systems, but most of the actual damage happens not when the bad guys…
The Web’s ten most dangerous neighborhoods
Wouldn’t it be convenient if all the spam and malware sites were all grouped together under one top-level domain — .evil, say — so that…
CSO burnout biggest factor in infosec talent shortage
The real cause of the talent shortage in the information security field isn’t a lack of new people entering the profession, but retention and churn…
Amazon dumps Flash, and the Web is better off
Amazon will stop accepting Flash ads on its advertising network on Tuesday, and it will help make the entire Web more secure, security experts say.According…
Phishing is a $3.7-million annual cost for average large company
The average 10,000-employee company spends $3.7 million a year dealing with phishing attacks, according to a new report from the Ponemon Institute.The report, which surveyed…
Most corporate risk due to just 1% of employees
Just 1 percent of employees are responsible for 75 percent of cloud-related enterprise security risk, and companies can dramatically reduce their exposure at very little…
LG phones most exposed to new Certifi-gate vulnerability
More than 70 percent of Android phones from LG have a plugin installed that exposes them to the Certifi-gate remote support app vulnerability, where a…
Fraud rate doubles as cybercriminals create new accounts in users’ name
To get more value out of stolen personal information, cybercriminals doubled their rate of account creation fraud this summer, according to a report report from…
Virtualization doubles the cost of security breach
When a security incident involves virtual machines in either a public or private cloud environment, the recovery costs double compared to that of a traditional…
Tips for protecting your business against cyber extortion
CrytoLocker is malware cyber criminals use to encrypt the contents of a computer until users pay up.But that’s only one type of cyber extortion, according…
DRM could be making a comeback in the enterprise
Digital rights management might be coming back to the enterprise, experts say, as long as usability issues don’t get in the way.You might remember the…
Report: ISIS-related cyber war reaches Alabama
The war against Islamic State has resulted in a cyber attack on US soil, and other such attacks are likely, according to a new report…
DDoS attacks double as criminals leverage home routers, WordPress plugins
The number of distributed denial-of-service attacks in the second quarter of this year was more than double that of last year, according to a new…
CISOs facing boards need better business, communication skills
As information security becomes a more important topic of interest for corporate boards, CISOs are increasingly asked to step up and brief boards on cyber…
New IP address blacklist based on Web chatter
Traditionally, blacklists of malicious IP addresses are assembled using honeypots and intrusion detection systems but a new approach, analyzing chatter on the dark and open…
Darkhotel expands targets, ups sophistication, leverages Hacking Team exploit
Darkhotel — the elite spying group discovered luxury hotels’ Wi-Fi networks last year — is back with new targets, new defensive capabilities, and a new…
Darkhotel expands targets, ups sophistication, leverages Hacking Team exploit
Darkhotel — the elite spying group discovered luxury hotels’ Wi-Fi networks last year — is back with new targets, new defensive capabilities, and a new…
Report: IoT is the next frontier for ransomware
LAS VEGAS — The growth of the Internet of Things will offer new ransomware opportunities for cybercriminals, according to a report released Thursday by Symantec.Researchers…