The coronavirus outbreak (also known as COVID-19) has had a major impact on the security and business continuity of organizations with significant ties to China. It has also created global travel issues, and its potential spread is a good reason for organizations to re-examine their plans in case a pandemic hits a geographic region vital to that organization’s business interests.
Keren Elazari shares how security professionals can learn from hackers to help empower their employees to promote organizational security.
The increasing ease and availability of media manipulation and deepfake production is opening up new avenues of attack for fraudsters, market manipulators, and malicious actors.
With a converged security team, Mastercard is taking a unified approach to addressing risks and educating its workforce to reduce threats.
Critical infrastructure owners are increasingly creating remote connections to their operational equipment—potentially introducing unforeseen vulnerabilities.
New research finds that while organizations have made strides to improve data management, they still lack investment in breach detection.
End users are increasingly adopting unmanned aerial systems for security and operational needs. But they could be introducing cybersecurity risks in flight.
The United States is taking a multi-prong approach to preventing intellectual property theft. But it needs international partners to succeed.
Cybersecurity is a stressful business. Here’s what managers can do to help reduce stress in the workplace and promote a healthy work–life balance.
Threat actors tend to be one-step ahead of corporate security. Scams that prey on fear and concern related to the coronavirus show how they’re taking advantage of the pandemic.
The U.S. intelligence community released a strategy that incorporates a whole-of-society approach to counterintelligence.
Automation has received mixed reviews in IT security departments—while some say it reduces staff time spent on repetitive tasks, it makes jobs more complex.
A recent survey finds that the aviation sector has more work to do to increase the cybersecurity of flights.
An FBI alert suggests moving away from SMS authenticators to a more secure method of multifactor authentication.
The European Union’s privacy regulation poses new challenges for investigators looking to carry out their work.
New research by the ASIS Foundation indicates that full convergence of physical security, cybersecurity, and business continuity is not commonplace.
Researchers, technologists, and executives look at how artificial intelligence can have a positive impact on society.
Tarah Wheeler shares her thoughts on convergence and responding to security incidents at GSX 2019.
Stakeholders can work hand in hand to protect against insider and external threats and reduce the risk of data loss while simultaneously improving data protection and streamlining processes.
Equifax will pay $575 million and implement security reforms to settle charges stemming from its 2017 data breach.
Cannabis growers and retailers are prime targets for malicious cyber actors.
Through focus, patience, and non-linear thinking, malicious actors create new paths into organizations. Defenders can use attackers’ tactics against them.
Municipalities are increasingly becoming targets for ransomware attacks.
Executives are being targeted through a variety of cyberattacks. Stressful work environments are helping them succeed.
The cybersecurity workforce gap increased to more than 2.9 million globally in 2018, surpassing earlier estimates of unfilled positions.
Transnational criminal organizations are using improved connectivity and technology to discover new pathways to profit and stymie investigators.
Cryptojackers use the resources of their hosts’ computers and Internet of Things (IoT) devices to mine for cryptocurrency while evading detection.
The threat of compromising someone’s digital security to create a physical threat to an individual or an organization is on the rise.
A French regulator issued the first major fine for violations of the EU’s General Data Protection Regulation. Other organizations are taking note.
The longest U.S. government shutdown in history could have major ramifications for the nation’s cybersecurity.
Once siloed, cyber and physical security teams are now working together to address corporate risk.
Following the U.S. midterm elections, officials move their focus to the 2020 presidential election.
LinkedIn can be a valuable networking and recruitment tool. It can also be used to target employees to obtain corporate secrets.
Private companies come together to demand that authorities create privacy regulations to protect users’ data and technology.
City council members in Portland, Oregon, voted unanimously to enact the strictest ban on facial recognition technology in the United States.
One of the largest public school systems in Connecticut was forced to delay its first day of classes after a ransomware attack affected 200 of the city’s 300 servers.
The U.S. Office of Management and Budget (OMB) released a memo that instructs U.S. federal agencies to create and publish coordinated vulnerability disclosure program (VDP) policies.
Facebook and Twitter reported that the FBI warned them that Russia is again targeting Americans with disinformation, attempting to influence the 2020 U.S. presidential election.
U.S. prosecutors charged the former chief security officer of Uber for his alleged role in an attempted cover up of a data breach of the company in 2016.
U.S. President Donald Trump issued executive orders late Thursday night that bar transactions by U.S. persons or that involve property subject to U.S. jurisdiction with the parent companies of WeChat and TikTok.
The European Union issued its first sanctions for cyberattacks on Thursday against Chinese, North Korean, and Russian groups linked to recent major hacking incidents.
The Court of Justice of the European Union struck down a major data sharing agreement between the United States and the European Union, but confusion remains about what measures corporations can use to share data across the Atlantic.
The United States has ordered China to close its Houston, Texas, diplomatic consulate within 72 hours—a move made in response to alleged violations of American sovereignty and “massive illegal spying and influence operations” from China, including intellectual property theft.
Several accounts of high profile Americans were taken over on 15 July, directing followers of billionaires and politicians to send cryptocurrency to a Bitcoin wallet.
A new study from Deloitte gives overview of the state of AI adoption and highlights risk and ethical concerns companies face.
A joint task force of European investigators cracked the EncroChat encrypted messaging platform, unlocking a gold mine of leads on criminal activities and plots.
The race to exploit COVID-19 fears for profit continues as fraudsters are rapidly evolving their methods—now posing as COVID-19 contact tracers to steal personal information.
Symantec sent a notice to its customers Thursday night, alerting them to a series of attacks against U.S. companies by threat actors attempting to deploy WastedLocker ransomware on their networks.
Despite a 400 percent rise in COVID-19-related cyberattacks, Americans remain largely unconcerned about cyber crime, according to a new report.
New reporting finds CIA did not take appropriate insider threat precautions, which enabled the massive data leak to Wikileaks in 2017.
IBM announced it will discontinue its general-purpose facial recognition business and opposes the use of the technology to conduct mass surveillance and racial profiling.
Recent social media activity has experts concerned about the potential for disinformation to color the outcome of upcoming elections, including the 2020 presidential election in the United States.
The COVID-19 pandemic has spurred more discussion about the possibility of online voting, but some security experts and officials are voicing security concerns about the risks.
The first Thursday of May is designated World Password Day, arguably more important than before as several organizations in various countries have workers operating remotely in response to the COVID-19 pandemic.
The U.S. Department of Defense CIO released a list of a list of best practices for cybersecurity and protecting an information network while teleworking.
From phishing to malware to ransomware, COVID-19-related attacks seek to take advantage of vulnerabilities.
Researchers note the limited use of artificial intelligence in the U.S. government, as well as opportunities for enhancement.
The United States linked a Russian military unit to the hacking group known as Sandworm which is said to be responsible for some of the most significant cyberattacks around the globe over the past 10 years.
The U.S. Department of Justice charged Huawei and its subsidiaries with racketeering conspiracy and conspiracy to steal trade secrets in an indictment released late Thursday afternoon.
The breach compromised sensitive personal information on more than 145 million Americans.
A security lapse by an app maker led to the exposure of data from all 6.5 million eligible voters in Israel, including full names, addresses, genders, phone numbers, and identity card numbers.
A vital U.S. government agency tasked with aiding state and local election officials to secure election systems “has not yet completed” plans to secure the 2020 U.S. presidential election less than 10 months away, a watchdog report found.
FBI Director Chris Wray tells Congress that Russia is conducting "information warfare" leading into the 2020 U.S. presidential election.
The State of Convergence report shows slow adoption of a converged security function, but business conditions may speed up the timetable.
On Data Privacy Day, here are a collection of resources for security professionals.
Department of Interior, military, other agencies cite security concerns with Chinese-made drones.
A study from the University of Michigan found that voting machines advertised as a secure alternative are still hackable.
The internationalization of far-right threats and tension between the Persian Gulf countries rank as the top two security risks for companies in 2020, according to a new risk forecast.
The U.S. Office of Personnel Management (OPM) has made strides in increasing its cybersecurity, but more work remains to be done almost five years after the agency suffered one of the largest government data breaches in history.
ASIS Foundation study researches the degree to which physical security, cybersecurity, and business continuity have converged into a single department.
Despite writing and releasing the text of a bill, bipartisan work on a federal online privacy law is expected to continue well into 2020.
U.S. intelligence officials confirmed that Russia has been spreading a disinformation campaign about Ukrainian efforts to interfere in the 2016 U.S. presidential election.
U.S. federal officials say that foreign governments are trying to steal ideas, proprietary information, and research from American universities.
A group of U.S. federal agencies released a joint statement Tuesday pledging to work with states and localities to protect the 2020 election.
U.S. superiority in artificial intelligence is endangered, according to a new report from the National Security Commission on Artificial Intelligence.
U.S. Representatives Matt Gaetz and Steve Scalise led a group of lawmakers into a closed hearing on Capitol Hill on Wednesday in a major breach of protocol and security.
As part of National Cybersecurity Awareness month, the U.S. Department of Homeland Security’s Cybersecurity and Infrastructure Agency (CISA) and the National Cyber Security Alliance (NCSA)—launched the “Own IT. Secure IT. Protect IT.” campaign.
A new study says employees are to blame for as many as half of all data breaches.
Australian, British, and U.S. officials asked Facebook not to fully encrypt its messaging services to provide greater access to data for law enforcement.