Independent

IndependentKrebs

Fake Emergency Search Warrants Draw Scrutiny from Capitol Hill

Credit to Author: BrianKrebs| Date: Thu, 31 Mar 2022 22:54:45 +0000

On Tuesday, KrebsOnSecurity warned that hackers increasingly are using compromised government and police department email accounts to obtain sensitive customer data from mobile providers, ISPs and social media companies. Today, one of the U.S. Senate’s most tech-savvy lawmakers said he was troubled by the report and is now asking technology companies and federal agencies for information about the frequency of such schemes.

Read More
ComputerWorldIndependent

How to stop worrying and love zero trust

Credit to Author: Mike Elgan| Date: Thu, 31 Mar 2022 03:00:00 -0700

Countless articles have been published in the past few years about zero trust, most of them explorations and expositions for security professionals.

But I want to write for remote workers on the other side of the so-called “trust” equation — the people who will deal with the changes and inconveniences as zero-trust strategies are implemented and refined over the next few years.

Welcome to this jargon-free explanation of zero trust.

To read this article in full, please click here

Read More
ComputerWorldIndependent

How Russia’s invasion of Ukraine affected the cyber threat landscape


Since Russia’s invasion of Ukraine last month and consequential sanctions against the Kremlin, the threat of cyberattacks in the U.S. and abroad has been looming. While the threat of attacks on critical infrastructure has increased, it hasn’t escalated to the all-out cyberwar that some were expecting. CSO Online senior writer Lucian Constantin joins Juliet to discuss how the cyber threat landscape has evolved as a result of the war in Ukraine and what organizations can do to increase their cyber incident defenses. For more on this topic, check out this article from CSO Online: Conti gang says it's ready to hit critical infrastructure in support of Russian government: https://www.csoonline.com/article/3651498/conti-gang-says-its-ready-to-hit-critical-infrastructure-in-support-of-russian-government.html

Read More
IndependentKrebs

Hackers Gaining Power of Subpoena Via Fake “Emergency Data Requests”

Credit to Author: BrianKrebs| Date: Tue, 29 Mar 2022 14:07:27 +0000

There is a terrifying and highly effective “method” that criminal hackers are now using to harvest sensitive customer data from Internet service providers, phone companies and social media firms. It involves compromising email accounts and websites tied to police departments and government agencies, and then sending unauthorized demands for subscriber data while claiming the information being requested can’t wait for a court order because it relates to an urgent matter of life and death.

Read More
ComputerWorldIndependent

On browsers and bugs

Credit to Author: Susan Bradley| Date: Mon, 28 Mar 2022 09:27:00 -0700

We’re told that one of the best ways to stay secure is to make sure our computers are patched. But we need to always be aware that at any given time, there are several vulnerabilities probably known and in use by attackers. The good news is that the number of days between when a bug is identified and when it’s patched is slowly going down, according to the Google Project Zero. It tracks how long it’s taking vendors to patch bugs and found that “in 2021, vendors took an average of 52 days to fix security vulnerabilities reported from Project Zero. This is a significant acceleration from an average of about 80 days [three] years ago.”

To read this article in full, please click here

Read More
ComputerWorldIndependent

How to boost cybersecurity defenses using your router

Credit to Author: Paul Gillin| Date: Fri, 11 Mar 2022 12:01:00 -0800

COVID-19 has made us all more aware of the need to protect our computers at home from online evil. But when was the last time you pointed your browser at your router? The little box that connects your PC and all the other devices in your home to the internet has an array security features that many people are unaware of.

After speaking to Derek Manky, chief of security insights and global threat alliances at Fortinet’s FortiGuard Labs, I logged into my Verizon FIOS router for the first time in years and discovered there were no less than 18 devices connected to it, including TVs, printers, thermostats and a half dozen Amazon Echoes. Each is a potential security vulnerability. “If you look at your home router, you’ll be surprised what you find there,” Manky said.

To read this article in full, please click here

Read More