SECURITY HEADLINES
The CISObyte Blog
Data and privacy regulations may redistribute capital to the people of China, but they further centralize control of wealth, data, and power in Xi’s communist party. – cisobyte.com
“Alibaba (BABA), meanwhile, was hit earlier this year with a record $2.8 billion fine for behaving like a monopoly.”
Unhappy Halloween: Ransomware attackers target candy manufacturer. – cisobyte.com
Make sure you have good backups ready. Hackers will attack the backups, to, so ensure that offline backups are stored and available, and verify that restored data is intact and not infected.
California SB-41 Privacy: genetic testing companies. – cisobyte.com
The Legislature finds and declares all of the following: “There is growing concern in the scientific community that outside parties are exploiting the use of genetic data for questionable purposes, including mass surveillance and the ability to track individuals without their authorization.”
Public Networks, Public Traffic, Public Behavior: Internet Privacy and the 4th Amendment. – cisobyte.com
05/21/2020 | The Fourth Amendment to the United States Constitution states, “[The] right of the people to be secure in their persons, houses, papers, and effects, against unreasonable searches and seizures, shall not be violated, and no Warrants shall issue, but upon probable cause, supported by Oath or affirmat…
Thunderspy: Intel Thunderbot ports vulnerable to hands-on hacking. | cisobyte.com
05/12/2020 | Any device left unattended with a hacker should be considered compromised. Learn what steps you can take to mitigate a few, but not all of the vulnerabilities.
Maze Ransomware attack to cost Cognizant $50m+ | cisobyte.com
05-01-2020 | 50 million is the expected low side for unforeseen costs due to legal and consulting fees, incident investigation, service restoration, and remediation.
Using Employee Risk Scores to Guide Security Initiatives | cisobyte.com
05-01-2020 | CISOs are developing and using employee risk scores to determine where more user training and better automated defense is needed.
LabCorp Sued by Investors for Deficient Cybersecurity Measures | cisobyte.com
04-30-2020 | An effective 3rd-party risk management program can protect your company from possible reputational, operational, and litigation damages.
Update Teams Today to Avoid Malicious GIFs | cisobyte.com
04-29-2020 | A vulnerability involving compromised subdomain hosting malicious GIFs has been patched in Microsoft Teams.
Patching WordPress Plugin Vulnerabilities; or, how I learned to love “update all” | cisobyte.com
04-28-2020 | A cross-site request forgery attack is used to send malicious requests from a valid user to an application. Vulnerability in Real-Time Find and Replace WordPress plugin.
I still get the Patch Tuesday emails | cisobyte.com
04-27-2020 | Be aware of your software vulnerabilities and have regularly scheduled patching and maintenance to mitigate them.