Category: Security

Security is more important than ever. Cybersecurity has been a problem from the start of IT and it will be till the end. It all started with endpoint and network security, but today, we are also facing with cloudsecurity and managing employees to incorporate good security practices.

All these new technologies that help us innovate also helps cybercriminals and state sponsored hackers to get new tools they can use to get access to our systems, and in a worst case scenario, access to our most valuable data and business secrets. Also, with new legislation in place like GDPR, you need to make sure everything is secure, otherwise you just don’t lose your reputation, but you can also be fined by the government. Protecting IT-environments is more important than ever.

Endpoint Security

Your first line of defense is usually endpoint protection. The devices your employees work with need to be protected against ransomware and other malware which can bring lots and lots of trouble. This nowadays the most basic form of protection and many of the bigger vendors and suites can help you achieve this.

Network security

Network security is a bit more advanced, where you can manage which traffic goes across your network. You can also connect different networks together with e.g. SD-WAN. So, you can run protection software and share data between multiple locations. The trend we see in network protection on the datacenter side is to lock down the traffic by only allowing known, benevolent traffic sources. Regarding office networking, we see new initiatives like ZScaler coming up, where you tunnel all your staff over the network of ZScaler so they can analyse the traffic and block patterns that they marked as malicious. Especially for companies with employees that travel a lot, this is a smart solution.

Cloud security

Many thought that bringing workloads to the cloud would reduce their responsibility of doing security. It is now clear that this is not the case. Most cloud vendors practice the “shared responsibility” approach. This means that big hyperscalers can offer a first line of defense against well known threats and port scanners. For the more sophisticated attacks that are directly pointed at your servers, you need to have your protection in place.

Fortinet updates FortiSASE; SASE from a single vendor

Fortinet updates FortiSASE; SASE from a single vendor

Fortinet has announced updates to its single-vendor Secure Access Service Edge (SASE) product FortiSASE. The new functionality should help companies secure hybrid workers. The rise of hybrid working means companies need to pay more attention to employee security, including when they move more fr... Read more

date1 year ago
Microsoft makes major change to Excel due to rising malware attacks

Microsoft makes major change to Excel due to rising malware attacks

The effort aims to stop attackers from abusing various Office document formats as an infection vector. The company has announced that Excel will block untrusted XLL add-ins by default in Microsoft 365 tenants worldwide. Excel XLL files are dynamic-link libraries (DLLs) that expand the functional... Read more

date1 year ago
ExpertExpert talks Four Steps to Take Your API Security to the Next Level

Four Steps to Take Your API Security to the Next Level

APIs, or application programming interfaces, are an essential part of modern software development. They enable applications and services to communicate with each other, providing a way for different pieces of software to work together. Using APIs, a single backend service can serve a multitude of c... Read more

date1 year ago
Acer confirms 160 GB data leak

Acer confirms 160 GB data leak

Acer has confirmed a 160 GB data leak of documents from repair employees. The data leak became public after cybercriminals posted an example on a hacker forum. According to BleepingComputer, cybercriminals recently managed to capture a large amount of data from the computer manufacturer. The dat... Read more

date1 year ago
CrowdStrike and Dell Technologies team up to secure businesses

CrowdStrike and Dell Technologies team up to secure businesses

CrowdStrike and Dell Technologies will jointly provide solutions that allow businesses to better secure themselves against cyber threats. These include solutions for preventing, detecting and responding to the threats. According to CrowdStrike and Dell, the new partnership should provide compani... Read more

date1 year ago
Business-grade routers hit by Hiatus malware

Business-grade routers hit by Hiatus malware

Business-grade DrayTek routers are under attack by the Hiatus malware campaign. The successfully attacked routers are transformed into "listening posts" that can intercept email and steal files. Security experts at Lumen note that the Hiatus malware campaign has been active since July 2022. The ... Read more

date1 year ago
Nearly all companies have misconfigurations in cloud environments

Nearly all companies have misconfigurations in cloud environments

Nearly all organizations (98.6 percent) are experiencing worrisome misconfigurations that pose significant risks to data and infrastructure. According to research by Zscaler, the increasing use of cloud technology is leading to more and more vulnerability problems. In the study, Zscaler finds th... Read more

date1 year ago
Study attacks EU cloud security label that excludes US vendors

Study attacks EU cloud security label that excludes US vendors

The study was commissioned by a US non-profit industry group dedicated to "open markets". This week Reuters reports that a study commissioned by a tech lobbying group concludes that a proposed EU cloud security certification regime that could exclude US tech giants like Amazon, Google, Microsoft... Read more

date1 year ago
Hackers hit British retailer WH Smith

Hackers hit British retailer WH Smith

The cyberattack resulted in the theft of some company data. On Thursday, UK retail group WH Smith announced that it had been the victim of a cyberattack. The company did not disclose the exact nature of the attack, but the official "notice of cybersecurity incident" it issued to the London Stock... Read more

date1 year ago
Microsoft releases security updates for Intel CPU vulnerabilities

Microsoft releases security updates for Intel CPU vulnerabilities

Microsoft has released out-of-band security updates to tackle the 'Memory Mapped I/O Stale Data (MMIO)' information disclosure vulnerabilities affecting Intel CPUs. The vulnerability, initially disclosed by Intel on June 14, 2022, warned that processes running in a virtual machine could gain acc... Read more

date1 year ago
1 73 74 75 76 77 278