Category: Security

Security is more important than ever. Cybersecurity has been a problem from the start of IT and it will be till the end. It all started with endpoint and network security, but today, we are also facing with cloudsecurity and managing employees to incorporate good security practices.

All these new technologies that help us innovate also helps cybercriminals and state sponsored hackers to get new tools they can use to get access to our systems, and in a worst case scenario, access to our most valuable data and business secrets. Also, with new legislation in place like GDPR, you need to make sure everything is secure, otherwise you just don’t lose your reputation, but you can also be fined by the government. Protecting IT-environments is more important than ever.

Endpoint Security

Your first line of defense is usually endpoint protection. The devices your employees work with need to be protected against ransomware and other malware which can bring lots and lots of trouble. This nowadays the most basic form of protection and many of the bigger vendors and suites can help you achieve this.

Network security

Network security is a bit more advanced, where you can manage which traffic goes across your network. You can also connect different networks together with e.g. SD-WAN. So, you can run protection software and share data between multiple locations. The trend we see in network protection on the datacenter side is to lock down the traffic by only allowing known, benevolent traffic sources. Regarding office networking, we see new initiatives like ZScaler coming up, where you tunnel all your staff over the network of ZScaler so they can analyse the traffic and block patterns that they marked as malicious. Especially for companies with employees that travel a lot, this is a smart solution.

Cloud security

Many thought that bringing workloads to the cloud would reduce their responsibility of doing security. It is now clear that this is not the case. Most cloud vendors practice the “shared responsibility” approach. This means that big hyperscalers can offer a first line of defense against well known threats and port scanners. For the more sophisticated attacks that are directly pointed at your servers, you need to have your protection in place.

Aqua Security’s Trivy now scans multiple container platforms

Aqua Security’s Trivy now scans multiple container platforms

Aqua Security, a startup for container security, indicates that its open source tool Trivy for scanning container images for vulnerabilities is now suitable for multiple container platforms. New additions include the Mirantis Docker Enterprise Platform and Harbor. With the rise of containers, th... Read more

date4 years ago
Trend Micro zero-days abused by hackers

Trend Micro zero-days abused by hackers

Hackers have attempted to exploit two zero-day vulnerabilities in Trend Micro solutions. The company reported this earlier this week in an statement. The Japanese security firm released patches on Monday to address the two vulnerabilities. The patch resolved three other issues, which were basica... Read more

date4 years ago
‘TrojAI framework can test cyber attacks on AI models’

‘TrojAI framework can test cyber attacks on AI models’

Researchers at John Hopkins University in the United States have developed a set of TrojAI tools for 'arming' AI models against cybercriminal attacks. The aim of the framework is to discover how AI models based on machine learning can best be protected against attacks. Nowadays, AI can no longer... Read more

date4 years ago
Phishers adapt to surge in home workers due to corona virus

Phishers adapt to surge in home workers due to corona virus

A significant increase in phishing campaigns has been observed by Mimecast Threat Intelligence, as more people worldwide are working from home. The campaigns would try to take advantage of the situation in order to capture login data by imitating services that are currently used a lot from home. ... Read more

date4 years ago
Intel CPUs vulnerable to new ‘snoop’ attack

Intel CPUs vulnerable to new ‘snoop’ attack

A software engineer from AWS found a new vulnerability in existing Intel CPUs that allows attackers to extract data from the cache. The attack, described as Snoop-assisted L1 Data Sampling (Snoop for short) would work on a significant set of processors of the American company. Pawel Wieczorkiewi... Read more

date4 years ago
‘Malware campaign is hacking cybercriminals’

‘Malware campaign is hacking cybercriminals’

Hackers are getting a taste of their own medicine, according to a recent malware campaign discovered by security specialist Cyberreason. Well-known hacker tools are hijacked with the njRat trojan. However, the trojan not only gives access to hackers' systems, but also to systems that they in turn c... Read more

date4 years ago
WordPress is working on automatic updates for themes and plugins

WordPress is working on automatic updates for themes and plugins

Vulnerabilities in certain plugins and themes on WordPress were regularly in the news in recent months, as it allowed hackers to access certain sites. In the fight against hackers, WordPress is now working on a feature that can automatically install updates to improve security faster. Where them... Read more

date4 years ago
Hackers spread malware with fake coronavirus world map

Hackers spread malware with fake coronavirus world map

Cybercriminals deploy a fake world map application showing the number of COVID-19 infections worldwide. Visitors are then infected with malware that tries to steal credentials and other sensitive data. The security company Reason Cybersecurity discovered the method of spreading malware. By infec... Read more

date4 years ago
1 200 201 202 203 204 278