Category: Security

Security is more important than ever. Cybersecurity has been a problem from the start of IT and it will be till the end. It all started with endpoint and network security, but today, we are also facing with cloudsecurity and managing employees to incorporate good security practices.

All these new technologies that help us innovate also helps cybercriminals and state sponsored hackers to get new tools they can use to get access to our systems, and in a worst case scenario, access to our most valuable data and business secrets. Also, with new legislation in place like GDPR, you need to make sure everything is secure, otherwise you just don’t lose your reputation, but you can also be fined by the government. Protecting IT-environments is more important than ever.

Endpoint Security

Your first line of defense is usually endpoint protection. The devices your employees work with need to be protected against ransomware and other malware which can bring lots and lots of trouble. This nowadays the most basic form of protection and many of the bigger vendors and suites can help you achieve this.

Network security

Network security is a bit more advanced, where you can manage which traffic goes across your network. You can also connect different networks together with e.g. SD-WAN. So, you can run protection software and share data between multiple locations. The trend we see in network protection on the datacenter side is to lock down the traffic by only allowing known, benevolent traffic sources. Regarding office networking, we see new initiatives like ZScaler coming up, where you tunnel all your staff over the network of ZScaler so they can analyse the traffic and block patterns that they marked as malicious. Especially for companies with employees that travel a lot, this is a smart solution.

Cloud security

Many thought that bringing workloads to the cloud would reduce their responsibility of doing security. It is now clear that this is not the case. Most cloud vendors practice the “shared responsibility” approach. This means that big hyperscalers can offer a first line of defense against well known threats and port scanners. For the more sophisticated attacks that are directly pointed at your servers, you need to have your protection in place.

Researchers IBM and VU Amsterdam discover major CPU vulnerability

Researchers IBM and VU Amsterdam discover major CPU vulnerability

A new CPU vulnerability affects all known computer architectures. The so-called GhostRace exploit makes it possible to steal data from the system memory of PCs with chips from Intel, AMD, Arm and IBM. VUSec, the Systems & Network Security Group at the Dutch university VU Amsterdam, shares a ... Read more

date14 hours ago
ExpertExpert talks Cookie stealing kits represent yet another cookie headache

Cookie stealing kits represent yet another cookie headache

In the never-ending game of whack-a-mole between cybersecurity teams and malicious actors, cookie hijacking is a trending threat. As teams get smarter about using secure passwords and multi-factor authentication, hackers are using cookies to gain unauthorized access to sessions and accounts. As ... Read more

date14 hours ago
Malware scanner jeopardizes more than 10,000 WordPress sites

Malware scanner jeopardizes more than 10,000 WordPress sites

Two critical vulnerabilities in WordPress plugins from miniOrange will never receive a patch. More than 10,000 websites use the Malware Scanner plugin to detect attackers. However, the tool itself is exploitable by malicious actors. The vulnerability in Malware Scanner was found by WordPress res... Read more

date3 days ago
Chrome able to block 25 percent more phishing attempts

Chrome able to block 25 percent more phishing attempts

Google is improving phishing and malware protection for Chrome users. Websites are now monitored in real-time. This was necessary after Google found that malicious websites existed for an average of 10 minutes. An update to the Safe Browsing feature, launched in 2005, should better protect Chro... Read more

date4 days ago
BlackBerry: Critical infrastructure most attacked late 2023

BlackBerry: Critical infrastructure most attacked late 2023

Organizations that are part of critical infrastructure face the most cyber attacks in September-December 2023. That's according to BlackBerry researchers. Attacks mainly targeted the government, financial services, healthcare and communications sectors. In total, these sectors suffered 62% of th... Read more

date5 days ago
ChatGPT plugins leak sensitive data

ChatGPT plugins leak sensitive data

The critical vulnerabilities allowed unauthorized access to third-party accounts and sensitive user data. This was discovered by researchers at Salt Security. ChatGPT plugins provide interaction capabilities with third-party services. They perform tasks for users on platforms such as GitHub, Goo... Read more

date5 days ago
Four-year sentence for hacker of LockBit ransomware group

Four-year sentence for hacker of LockBit ransomware group

A cybercriminal has been sentenced to four years in prison. The man deployed LockBit ransomware software and was involved in the activities of the ransomware group. A key member of the LockBit ransomware group has been sentenced to four years in prison, Canadian broadcaster CTV News reports. A ... Read more

date5 days ago
1 2 3 271