> TODAY'S SUMMARY (2 articles)
This week in cybersecurity, Cisco issued critical patches for a zero-day vulnerability in its email gateway that had been actively exploited. Additionally, the Revolut data breach came to light, revealing unauthorized access and the impersonation of a government agency as part of the attack. The incident underscores the ongoing threat of social engineering and phishing tactics. Furthermore, the latest Security Affairs newsletter highlighted various security trends and articles, emphasizing the importance of staying updated on emerging threats. Overall, organizations must prioritize patch management and employee training to mitigate risks from both technical vulnerabilities and human factors.
|
// AI-powered summary generated at 12:00
The Defense Advanced Research Projects Agency (DARPA) plans to increase investment in cybersecurity research by 50% over the next five years and focus more on offensive cyberwar capabilities, according to the head of the agency.
Infosecurity has reported on the value of stolen credit and debit card credentials several times this year, but now a security researcher has analyzed the value of individual credentials such as your birthday or mother's maiden name – that's right, they all have a value.
Information security professionals collaborating to outsmart hackers was cited as the most effective way to preempt hacker attacks, according to a survey of Wisegate members.
Microsoft is giving IT administrators a break for Thanksgiving, with only four security bulletins for this month’s Patch Tuesday.
With the rise in cyberattacks against industrial targets, the Institute of Electrical and Electronics Engineers (IEEE), the professional association responsible for developing IT and other industry standards, is revising its information security protocols for industrial control systems.
Two days after Anonymous threatened to attack the Israeli government, the servers of much of Israel's government systems were down yesterday. Although some Anonymous supporters crowed their victory on security forums, the government said that the problem was server-based.
Research just released by Tufin claims that the cost of manually auditing firewall – a process that is often required as a regulatory compliance issue – is hidden and extraordinarily high.
Infosecurity has learned that Patricia Titus, formerly global chief information security officer (CISO) of Unisys, will depart the Blue Bell, Penn.-based IT services company to join Symantec in the same role.
Despite the proliferation of personal mobile devices in the workplace, the network access control (NAC) market for those devices is still immature, observed Andrew Kellett, senior analyst with Ovum research firm.
Research just completed by Computer Aid claims to show that 33% of major firms have decommissioned computers containing data which are completely unaccounted for.
Rochdale Council has been found guilty of breaching the Data Protection Act after it lost an unencrypted USB stick containing the details of more than 18,000 residents.
Companies are less aware and engaged in government critical infrastructure protection (CIP) programs this year compared with 2010, according to a Symantec survey.
Reports are coming in that Pavel Vrublevsky, the co-founder of Chronopay, the Russian e-money service used a large number of web sites in the former Eastern bloc, has been refused bail.
Unknown hackers are reported to have downed the landline and cellular networks n Gaza and the West Bank, the Palestinian telecoms minister has announced.
Research from ISACA claims to show that the number of organization's allowing staff to bring their own devices to the workplace is increasing.
More than one-third of US companies are poorly prepared for advanced persistent threats (APT), according to a report by the Enterprise Strategy Group (ESG).
Dolphin HD, an advanced web browser for the Android platform, is reported to be relaying details of web sites accessed on the device it is installed on to a remote server.
Secunia, the independent IT security research agency, has become the latest to start rewarding researchers for information on security vulnerabilities. The firms joins the likes of Barracuda Networks and Google's Chrome operation in this regard.
The Center for a New American Security (CNAS) has released a report recommending that the US Department of Defense adapt its national security strategy to embrace the new science of predictive failure. At the same time, the report also suggests that the DoD needs to raise its game in terms of intell...
Check Point has announced it is in the process of acquiring Dynasec, a privately held Israeli compliance solutions firm that was founded back in 2004. Sources suggest the purchase price is in the region of $10 to $20 million, although no figures have been confirmed by either party.