Category: Security

Security is more important than ever. Cybersecurity has been a problem from the start of IT and it will be till the end. It all started with endpoint and network security, but today, we are also facing with cloudsecurity and managing employees to incorporate good security practices.

All these new technologies that help us innovate also helps cybercriminals and state sponsored hackers to get new tools they can use to get access to our systems, and in a worst case scenario, access to our most valuable data and business secrets. Also, with new legislation in place like GDPR, you need to make sure everything is secure, otherwise you just don’t lose your reputation, but you can also be fined by the government. Protecting IT-environments is more important than ever.

Endpoint Security

Your first line of defense is usually endpoint protection. The devices your employees work with need to be protected against ransomware and other malware which can bring lots and lots of trouble. This nowadays the most basic form of protection and many of the bigger vendors and suites can help you achieve this.

Network security

Network security is a bit more advanced, where you can manage which traffic goes across your network. You can also connect different networks together with e.g. SD-WAN. So, you can run protection software and share data between multiple locations. The trend we see in network protection on the datacenter side is to lock down the traffic by only allowing known, benevolent traffic sources. Regarding office networking, we see new initiatives like ZScaler coming up, where you tunnel all your staff over the network of ZScaler so they can analyse the traffic and block patterns that they marked as malicious. Especially for companies with employees that travel a lot, this is a smart solution.

Cloud security

Many thought that bringing workloads to the cloud would reduce their responsibility of doing security. It is now clear that this is not the case. Most cloud vendors practice the “shared responsibility” approach. This means that big hyperscalers can offer a first line of defense against well known threats and port scanners. For the more sophisticated attacks that are directly pointed at your servers, you need to have your protection in place.

Cloudflare blocks gigantic HTTPS DDoS attack

Cloudflare blocks gigantic HTTPS DDoS attack

Cloudflare detected a DDoS attack of 15.3 million HTTPS requests-per-second (rps) -- one of the largest HTTPS attacks ever observed. DDoS attackers use botnets to flood a victim's server with HTTP or HTTPS requests. In 2021, Cloudflare detected a record attack of 17.2 million HTTP requests per ... Read more

date2 years ago
CrowdStrike extends Falcon for public cloud environments

CrowdStrike extends Falcon for public cloud environments

CrowdStrike added functionality to Falcon CWP and Falcon Horizon. The features focus on securing public cloud environments. The updates should make it easier for companies to protect public cloud environments. CrowdStrike Falcon CWP, an agent-based solution for detecting and blocking threats to ... Read more

date2 years ago
The European wind energy industry is facing a slew of cyberattacks

The European wind energy industry is facing a slew of cyberattacks

Since the start of the crisis in Ukraine, cyberattacks on three European wind-energy businesses have prompted fears that Russian-friendly hackers are attempting to wreak havoc in a sector that stands to profit from attempts to reduce reliance on Russian oil and gas. The hacked firms haven't offi... Read more

date2 years ago
‘Number of ransomware attacks rises by nearly 80 percent’

‘Number of ransomware attacks rises by nearly 80 percent’

Ransomware attacks are on the rise. In a new survey by Sophos, two out of three organizations say they were hit in the past year. Security provider Sophos questioned thousands of IT professionals worldwide. The State of Ransomware 2022-report sheds light on a growing problem. Ransomware persists... Read more

date2 years ago
Bug bounty platform Intigriti raises 21 million euros

Bug bounty platform Intigriti raises 21 million euros

Intigriti's bug bounty platform is catching on. The Dutch company raised 21 million euros in its most recent investment round. Intigriti's platform targets two audiences: hackers and organizations. For organizations, the platform offers all the technical requirements for a bug bounty programme.... Read more

date2 years ago
‘Zero-day exploits will continue to be popular in 2022’

‘Zero-day exploits will continue to be popular in 2022’

Zero-day exploits remain the most attractive attack vector for cybercriminals. This is made evident by yearly reports from Google Project Zero and security specialist Mandiant. The yearly reports of Google Project Zero and Mandiant try to answer why zero-day attacks are so interesting for cyberc... Read more

date2 years ago
Lapsus$ steals source code from T-Mobile

Lapsus$ steals source code from T-Mobile

Criminal group Lapsus$ successfully attacked T-Mobile in March of this year. According to research by security blog KrebsOnSecurity, Lapsus$ gained access to T-Mobile's internal systems on several occasions. T-Mobile's US subsidiaries were likely affected. In a response to KrebsOnSecurity, T-Mo... Read more

date2 years ago
Sophos integrates SOC.OS into XDR and MTR solutions

Sophos integrates SOC.OS into XDR and MTR solutions

Sophos announces the acquisition of SOC.OS. The company develops a solution that reads and filters alerts from multiple security solutions. Noise is reduced, allowing the most important alerts to surface. SOC.OS was founded in 2020, following a split from BAE Systems Digital Intelligence. The te... Read more

date2 years ago
‘REvil hackers are making a comeback’

‘REvil hackers are making a comeback’

REvil appears to be making a comeback. Security experts discovered a dark web leak page that shows similarities to the methods of the disbanded hacking group. Security researchers pancak3 and Soufiane Tahiri found a dark web blog used to publish new and older REvil attacks. The blog calls on in... Read more

date2 years ago
Dutch hackers win Pwn2Own by cracking industrial ICS systems

Dutch hackers win Pwn2Own by cracking industrial ICS systems

Thijs Alkemade and Daan Keuper discovered important vulnerabilities in three widely used industrial ICS systems during hacking competition Pwn2Own. Thijs Alkemade and Daan Keuper work for Computest, a security firm based in the Netherlands. The duo participated in hacking competition Pwn2Own an... Read more

date2 years ago
1 129 130 131 132 133 278