SEC Sanctions 8 Firms for ‘Deficient Cybersecurity Procedures’

SEC Sanctions 8 Firms for ‘Deficient Cybersecurity Procedures’

Finance & Banking , Industry Specific , Security Operations Regulator Cites Email Takeovers, Inadequate Incident Response Dan Gunderman (dangun127) • September 1, 2021     (Photo: Securities and Exchange Commission via Flickr) The U.S. Securities and Exchange Commission sanctioned eight financial firms for alleged failures related to cybersecurity policies and procedures, each stemming from email…

Don’t use single‑factor authentication, warns CISA

Don’t use single‑factor authentication, warns CISA

The federal agency urges organizations to ditch the bad practice and instead use multi-factor authentication methods The Cybersecurity and Infrastructure Security Agency (CISA) has added the use of single-factor authentication to its brief list of bad practices that it considers to be exceptionally risky when it comes to cybersecurity. “Single-factor authentication is a common low-security…

What is Windows Hello? Microsoft’s biometrics security system explained

What is Windows Hello? Microsoft’s biometrics security system explained

Windows Hello is a biometrics-based technology that enables Windows 10 users (and those who update to Windows 11) to authenticate secure access to their devices, apps, online services and networks with just a fingerprint, iris scan or facial recognition. The sign-in mechanism is essentially an alternative to passwords and is widely considered to be a…

Microsoft warns about phishing campaign using open redirects – Malwarebytes Labs

Microsoft warns about phishing campaign using open redirects – Malwarebytes Labs

Microsoft warned about a massive credential phishing campaign using open redirects. Here’s how you can recognize these phishing mails. The Microsoft 365 Defender Threat Intelligence Team posted an article stating that they have been tracking a widespread credential phishing campaign using open redirector links. Open redirects have been part of the phisher’s arsenal for a…

QNAP works on patches for OpenSSL bugs impacting its NAS devices

QNAP works on patches for OpenSSL bugs impacting its NAS devices

Network-attached storage (NAS) maker QNAP is investigating and working on security updates to address remote code execution (RCE) and denial-of-service (DoS) vulnerabilities patched by OpenSSL last week. The security flaws tracked as CVE-2021-3711 and CVE-2021-3712, impact QNAP NAS device running QTS, QuTS hero, QuTScloud, and HBS 3 Hybrid Backup Sync (a backup and disaster recovery…

UNHCR ‘cautiously optimistic’ over working with Taliban

UNHCR ‘cautiously optimistic’ over working with Taliban

Filippo Grandi, the United Nations High Commissioner for Refugees, says there has been some “positive” contact with the Taliban. He told BBC World News the UNHCR had been dealing with the Taliban at both provincial and ground level. “I remember the interactions 25 years ago. If I compare those interactions with those that are happening…