Category: Security

Security is more important than ever. Cybersecurity has been a problem from the start of IT and it will be till the end. It all started with endpoint and network security, but today, we are also facing with cloudsecurity and managing employees to incorporate good security practices.

All these new technologies that help us innovate also helps cybercriminals and state sponsored hackers to get new tools they can use to get access to our systems, and in a worst case scenario, access to our most valuable data and business secrets. Also, with new legislation in place like GDPR, you need to make sure everything is secure, otherwise you just don’t lose your reputation, but you can also be fined by the government. Protecting IT-environments is more important than ever.

Endpoint Security

Your first line of defense is usually endpoint protection. The devices your employees work with need to be protected against ransomware and other malware which can bring lots and lots of trouble. This nowadays the most basic form of protection and many of the bigger vendors and suites can help you achieve this.

Network security

Network security is a bit more advanced, where you can manage which traffic goes across your network. You can also connect different networks together with e.g. SD-WAN. So, you can run protection software and share data between multiple locations. The trend we see in network protection on the datacenter side is to lock down the traffic by only allowing known, benevolent traffic sources. Regarding office networking, we see new initiatives like ZScaler coming up, where you tunnel all your staff over the network of ZScaler so they can analyse the traffic and block patterns that they marked as malicious. Especially for companies with employees that travel a lot, this is a smart solution.

Cloud security

Many thought that bringing workloads to the cloud would reduce their responsibility of doing security. It is now clear that this is not the case. Most cloud vendors practice the “shared responsibility” approach. This means that big hyperscalers can offer a first line of defense against well known threats and port scanners. For the more sophisticated attacks that are directly pointed at your servers, you need to have your protection in place.

‘Automation and DevSecOps ensure the fastest cloud migrations’

‘Automation and DevSecOps ensure the fastest cloud migrations’

In the past year, cloud adoption has grown by 25 percent. Nearly three-quarters of IT organizations run the majority of their workloads in the cloud. The fastest growers are embracing DevSecOps and security automation. That's what Palo Alto Networks concludes in a recent survey. Annually, Palo A... Read more

date2 years ago
Researchers Bypass MFA system Protecting Box Accounts

Researchers Bypass MFA system Protecting Box Accounts

Varonis Threat Labs discovered a way to bypass multi-factor authentication (MFA) for Box accounts that use an SMS code for login verification. Cybersecurity researchers this week revealed details of a bug in Box's multi-factor authentication (MFA) mechanism. Malicious actors could exploit the fa... Read more

date2 years ago
REvil hacking group arrested by Russian intelligence agency

REvil hacking group arrested by Russian intelligence agency

REvil has been busted. The Russian government launched a manhunt for members of the hacking group. The FSB, a Russian intelligence agency, announces that 14 members were arrested and charged. The FSB searched dozens of homes and detained 14 people. The intelligence agency seized 426 million rubl... Read more

date2 years ago
‘More external WordPress plugins with vulnerabilities in 2021’

‘More external WordPress plugins with vulnerabilities in 2021’

In a recent study, Risk Based Security concludes that the number of third-party WordPress plugins with vulnerabilities has increased significantly in the past year. According to the security specialists, 10,359 vulnerabilities were discovered in 2021 among providers of WordPress plugins. A total... Read more

date2 years ago
Cyber attack takes down Ukrainian government websites

Cyber attack takes down Ukrainian government websites

The attack warned Ukrainians to "be afraid and expect the worst" Ukraine was the victim of a “massive” cyber-attack this week, with the websites of several government departments including the ministry of foreign affairs and the education ministry knocked out. Ukrainian officials told Reu... Read more

date2 years ago
‘Companies often struggle to implement zero trust policies’

‘Companies often struggle to implement zero trust policies’

Most companies consider implementing a zero trust policy, but struggle with its actual implementation. In a survey by Fortinet, over half of the companies indicate difficulties translating a zero trust vision into practical measures and solutions. Especially the lack of consistent authentication... Read more

date2 years ago
1 146 147 148 149 150 276