Live Webinar | Data Classification: The Foundation of Cybersecurity ComplianceWebinar.
Thank you for registering with ISMG
Complete your profile and stay up to date
The Employee Benefits Security Administration of the United States Department of Labor (“EBSA”) recently published guidance regarding cybersecurity best practices for recordkeepers and service providers responsible for plan related information technology systems and data for ERISA-covered plans, including 401k and other pension plans. The EBSA counseled that a plan’s service providers should implement the following…
Cybercrime , DDoS Protection , Fraud Management & Cybercrime Proofpoint Reports Group Rebrands as Fancy Lazarus, Lowers Ransom Amount Doug Olenick (DougOlenick) • June 11, 2021 Traditional ransomware attacks may have taken over the news cycle, but Proofpoint researchers say the malicious actors who presents themselves as the North Korean-backed Lazarus advanced persistent…
Australia has decided that six-year-old children need education on cyber-security, even as it removes other material from the national curriculum. A newly revised draft of the national curriculum for children aged five to sixteen, launched yesterday, added a new strand titled “Considering privacy and security” that “involves students developing appropriate techniques for managing data, which…
Governance & Risk Management , IT Risk Management , Patch Management The Flaw in Windows Graphics Component Can Enable Web-Based Attacks Akshaya Asokan (asokan_akshaya) • February 26, 2021 Microsoft has patched a critical vulnerability in Windows that can be exploited by tricking users to visit websites that use a malicious font. The flaw…
3rd Party Risk Management , Endpoint Security , Governance & Risk Management Exchange Hacks, Insider Threats and More Anna Delaney (annamadeline) • March 26, 2021 Clockwise, from top left: Nick Holland, Anna Delaney, Mathew Schwartz and Tom Field Four editors at Information Security Media Group discuss the latest cybersecurity…
Cyberwarfare / Nation-State Attacks , Fraud Management & Cybercrime , Fraud Risk Management Microsoft: Russians Used Malicious Messages Portrayed as Coming From USAID Scott Ferguson (Ferguson_Writes) • May 28, 2021 Here’s an example of a phishing email masquerading as a message from USAID. (Source: Microsoft) A Russian group that was behind the massive…