Litany of cyber security weaknesses identified in NSW transport agency

Litany of cyber security weaknesses identified in NSW transport agency

Less than 8 per cent of Transport for NSW staff and 5 per cent of Sydney Trains staff had completed a cyber security training course as of January 2021. However, TfNSW has advised that it will implement mandatory annual training from July 2021 for all staff. Transport for NSW in February confirmed it had lost…

Critical RCE Flaw in ForgeRock Access Manager Under Active Attack – KK Hack Labs

Critical RCE Flaw in ForgeRock Access Manager Under Active Attack – KK Hack Labs

Cybersecurity agencies in Australia and the U.S. are warning of an actively exploited vulnerability impacting ForgeRock’s OpenAM access management solution that could be leveraged to execute arbitrary code on an affected system remotely.“The [Australian Cyber Security Centre] has observed actors exploiting this vulnerability to compromise multiple hosts and deploy additional malware and tools,”

Microsoft confirms it’s buying cybersecurity startup RiskIQ – TechCrunch

Microsoft confirms it’s buying cybersecurity startup RiskIQ – TechCrunch

Microsoft has confirmed it’s buying RiskIQ, a San Francisco-based cybersecurity company that provides threat intelligence and cloud-based software as a service for organizations. Terms of the deal, which will see RiskIQ’s threat intelligence services integrated into Microsoft’s flagship security offerings, were not disclosed, although Bloomberg previously reported that Microsoft will pay more than $500 million…

Ransomware: REvil’s websites become unreachable

Ransomware: REvil’s websites become unreachable

Washington: Websites run by the ransomware gang REvil suddenly became unreachable on Tuesday (Wednesday AEST), sparking widespread speculation that the group had been knocked offline. The Russia-linked cybercrime ring has collected tens of millions of dollars in ransom payments in return for restoring computer systems it has hacked. In recent weeks it claimed responsibility for…

Microsoft to acquire Cyber Threat detection business RiskIQ

Microsoft to acquire Cyber Threat detection business RiskIQ

Microsoft to acquire Cyber Threat detection business RiskIQ | IT Security News Android App Android App with push notifications Sponsors Endpoint Cybersecurity www.endpoint-cybersecurity.com – Consulting in building your security products– Employee awareness training– Security tests for applications and pentesting… and more. Daily Summary Categories CategoriesSelect Category(ISC)2 Blog  (323)(ISC)2 Blog infosec  (13)(ISC)² Blog  (387)2020-12-08 – Files for an ISC…

REvil’s Infrastructure Goes Offline – InfoRiskToday

REvil’s Infrastructure Goes Offline – InfoRiskToday

Cybercrime , Fraud Management & Cybercrime , Ransomware Researchers Question Why the Ransomware Gang’s Sites Went Dark Doug Olenick (DougOlenick) • July 13, 2021     REvil’s public shaming site, Happy Blog, is one of the components of the gang’s infrastructure that has gone offline. (Watch for updates on this developing story.) See Also: Live…

Cyber attacks spurred by staff working from home, says global financial watchdog

Cyber attacks spurred by staff working from home, says global financial watchdog

The surge of cyber attacks on the financial services sector, prompted by staff working from home, are likely to continue, the Financial Stability Board (FSB) says. The FSB, which coordinates financial guidelines for the G20 group of nations, said the pandemic-induced trend of working from home opened up new opportunities for cyber attacks. In their…

Trickbot Malware Returns with a new VNC Module to Spy on its Victims

Trickbot Malware Returns with a new VNC Module to Spy on its Victims

Trickbot Malware Returns with a new VNC Module to Spy on its Victims | IT Security News 13. July 2021 This article has been indexed from The Hacker News Cybersecurity researchers have opened the lid on the continued resurgence of the insidious TrickBot malware, making it clear that the Russia-based transnational cybercrime group is working…

Protecting Your Business Against Malware in the Cloud

Protecting Your Business Against Malware in the Cloud

There are multitudes of advantages that the cloud has to offer to companies. These include making the task of security management more accessible. However, there are still many gray areas associated with the cloud and its implications for an organization’s overall security. With the widespread implementation of cloud-based computing within enterprises, the conversation surrounding security management…