Category: Security

Security is more important than ever. Cybersecurity has been a problem from the start of IT and it will be till the end. It all started with endpoint and network security, but today, we are also facing with cloudsecurity and managing employees to incorporate good security practices.

All these new technologies that help us innovate also helps cybercriminals and state sponsored hackers to get new tools they can use to get access to our systems, and in a worst case scenario, access to our most valuable data and business secrets. Also, with new legislation in place like GDPR, you need to make sure everything is secure, otherwise you just don’t lose your reputation, but you can also be fined by the government. Protecting IT-environments is more important than ever.

Endpoint Security

Your first line of defense is usually endpoint protection. The devices your employees work with need to be protected against ransomware and other malware which can bring lots and lots of trouble. This nowadays the most basic form of protection and many of the bigger vendors and suites can help you achieve this.

Network security

Network security is a bit more advanced, where you can manage which traffic goes across your network. You can also connect different networks together with e.g. SD-WAN. So, you can run protection software and share data between multiple locations. The trend we see in network protection on the datacenter side is to lock down the traffic by only allowing known, benevolent traffic sources. Regarding office networking, we see new initiatives like ZScaler coming up, where you tunnel all your staff over the network of ZScaler so they can analyse the traffic and block patterns that they marked as malicious. Especially for companies with employees that travel a lot, this is a smart solution.

Cloud security

Many thought that bringing workloads to the cloud would reduce their responsibility of doing security. It is now clear that this is not the case. Most cloud vendors practice the “shared responsibility” approach. This means that big hyperscalers can offer a first line of defense against well known threats and port scanners. For the more sophisticated attacks that are directly pointed at your servers, you need to have your protection in place.

New exploit in Windows 10 makes everyone an admin

New exploit in Windows 10 makes everyone an admin

A new vulnerability in Windows 10 allows hackers to become administrators. Microsoft has fixed the vulnerability with a security update. CVE-2022-21882 was discovered in December by security expert RyeLv. The vulnerability allows hackers to call the relevant user-level GUI API to make kernel cal... Read more

date2 years ago
‘Social media fraudsters pocketed 690 million euros’

‘Social media fraudsters pocketed 690 million euros’

95,000 US residents fell victim to social media fraud in 2021. The total damage amounts to 770 million dollars (690 million euros). The Federal Trade Commission (US market watchdog) shares the news in a report. One in four of all fraud victims was misled by an ad or post on social media. The com... Read more

date2 years ago
Malware attacks via Excel XLL files rose by nearly 600 percent

Malware attacks via Excel XLL files rose by nearly 600 percent

Cyber attacks based on Microsoft Excel add-in files (.XLL) increased by nearly 600 percent in 2021. In a new report, security researchers at HP Wolf Security disclose how the file type is being exploited. Excel add-in files (.XLL) allow DLL files to be opened within Excel sheets. Cybercriminals ... Read more

date2 years ago
‘Log4j in VMware Horizon is being exploited by access brokers’

‘Log4j in VMware Horizon is being exploited by access brokers’

BlackBerry security researchers conclude that hacking group Prophet Spider is actively exploiting a Log4j vulnerability in unpatched VMware Horizon servers. In December 2021, VMware published a patch to fix a Log4j vulnerability in VMware Horizon. A month later, a UK government security team war... Read more

date2 years ago
Sophos introduces ZTNA for secure user and device connections

Sophos introduces ZTNA for secure user and device connections

Sophos is introducing a Zero Trust Network Access (ZTNA) portfolio. Zero trust principles and far-reaching integration with Sophos Intercept X's endpoint security are key to the release. With the arrival of Zero Trust Network Access (ZTNA), Sophos wants to offer a transparent and scalable securi... Read more

date2 years ago
Critical Linux vulnerability affects all major distributions

Critical Linux vulnerability affects all major distributions

Security researchers have found vulnerabilities in Linux PolicyKit (also known as Polkit). The vulnerabilities allow hackers to gain complete access to affected machines and upload malicious code. The issue has since been patched. According to Qualys researchers, the so-called PwnKit exploit man... Read more

date2 years ago
Log4J hackers continue targeting VMware Horizon servers

Log4J hackers continue targeting VMware Horizon servers

VMware is rushing to convince customers to apply the latest security guidance. According to several cybersecurity companies monitoring the situation, attackers are still targeting VMware Horizon servers through Log4J vulnerabilities.  Two weeks ago, the UK's National Health Service (NHS)... Read more

date2 years ago
1 146 147 148 149 150 278