Encryption: The GDPR Standard That’s Got Web Privacy Services Hopeful

Businesses now have less than a year to achieve compliance with the General Data Protection Regulation (GDPR). As part of their efforts, organizations must look to Article 32 of the Regulation. This section affirms the data controller’s and processor’s responsibility to leverage “the pseudonymisation and encryption of personal data” to protect against digital risk. Encryption […]… Read More

The post Encryption: The GDPR Standard That’s Got Web Privacy Services Hopeful appeared first on The State of Security.

Continue reading Encryption: The GDPR Standard That’s Got Web Privacy Services Hopeful

WannaLocker – The WannaCry Copycat Targeting Android Users in China

Attackers are using a copycat version of WannaCry ransomware dubbed “WannaLocker” to target Android users living in China. WannaLocker has been targeting Chinese gaming forms disguised as a plugin for King of Glory, a popular Chinese game. Upon installation of this fake add-on, the threat conceals its icon from the Android app drawer and changes […]… Read More

The post WannaLocker – The WannaCry Copycat Targeting Android Users in China appeared first on The State of Security.

Continue reading WannaLocker – The WannaCry Copycat Targeting Android Users in China

Securing Access, Hardening Configurations, and Monitoring for Change on ICS Systems

A digital security strategy embodies every organization’s efforts to protect its industrial control systems (ICS) against intentional and accidental security threats. Lots of different factors shape this plan. As I discussed in a previous article, organizations should conduct regular industrial digital security assessments to identify what frameworks and standards apply to them, as well as […]… Read More

The post Securing Access, Hardening Configurations, and Monitoring for Change on ICS Systems appeared first on The State of Security.

Continue reading Securing Access, Hardening Configurations, and Monitoring for Change on ICS Systems

Turla Using Instagram Comments to Obtain C&C Servers

The Turla threat actor group is using comments posted on Instagram to obtain command and control (C&C) servers for its watering hole campaigns. For years, Turla has been targeting government officials and diplomats with watering hole techniques. Such attacks involve compromising websites its targets are likely to visit and redirecting them to its C&C infrastructure. […]… Read More

The post Turla Using Instagram Comments to Obtain C&C Servers appeared first on The State of Security.

Continue reading Turla Using Instagram Comments to Obtain C&C Servers

Posted in SBN

Two Bitcoin Mining Firms Slammed with $10M Penalty for Ponzi Scheme

Two Bitcoin mining companies have received orders to each pay a $10 million penalty for conducting a Ponzi scheme orchestrated by their principal. On 2 June 2017, the U.S. District Court for the District of Connecticut issued its judgment against two Connecticut-based companies, GAW Miners, LLC and ZenMiner, LLC, that cooperated with their principal Homero […]… Read More

The post Two Bitcoin Mining Firms Slammed with $10M Penalty for Ponzi Scheme appeared first on The State of Security.

Continue reading Two Bitcoin Mining Firms Slammed with $10M Penalty for Ponzi Scheme

Posted in SBN