SCM: Reducing Security Risk via Assessment and Continuous Monitoring

As I discussed in a previous blog post, a key security control known as file integrity monitoring (FIM) helps organizations defend against digital threats by monitoring for unauthorized changes to their system state. But that’s only half the battle. A change could be authorized but still create new security risk. Organizations need to watch for […]… Read More

The post SCM: Reducing Security Risk via Assessment and Continuous Monitoring appeared first on The State of Security.

Continue reading SCM: Reducing Security Risk via Assessment and Continuous Monitoring

Man Used BEC Scam to Defraud Two U.S. Companies of $100M

A man used a business email compromise (BEC) scam to defraud two internet companies based in the United States out of 100 million dollars. On 21 March, the FBI along with the U.S. Attorney’s Office for the Southern District of New York announced criminal charges against Evaldas Rimasauskas, 48, of Vilnius, Lithuania. Lithuanian authorities arrested […]… Read More

The post Man Used BEC Scam to Defraud Two U.S. Companies of $100M appeared first on The State of Security.

Continue reading Man Used BEC Scam to Defraud Two U.S. Companies of $100M

‘Celebgate 2.0′ Scam Collects Users’ Personal Information, Posts Twitter Spam

A new scam is capitalizing on reports of ‘Celebgate 2.0′ by making off with users’ personal information and posting spam on Twitter. According to several media outlets, hackers have published the private photos of multiple female actresses including Emma Watson, Amanda Seyfried, Dylan Penn, and others. Some are calling these leaks “Celegate 2.0,” a designation […]… Read More

The post ‘Celebgate 2.0′ Scam Collects Users’ Personal Information, Posts Twitter Spam appeared first on The State of Security.

Continue reading ‘Celebgate 2.0′ Scam Collects Users’ Personal Information, Posts Twitter Spam

Clever Gmail Phishing Scam Tricked Even Technical Users

A Gmail phishing campaign is clever enough to have almost tricked or successfully fooled multiple technical users. The attack, which other contributors to The State of Security have spotted, begins when a Gmail user receives an email. Oftentimes, the message comes from someone they know whose account has already been compromised. The email appears to […]… Read More

The post Clever Gmail Phishing Scam Tricked Even Technical Users appeared first on The State of Security.

Continue reading Clever Gmail Phishing Scam Tricked Even Technical Users

Intel Launches Its First-Ever Bug Bounty Program

Intel has announced it will begin rewarding researchers who responsibly disclose security vulnerabilities they find in its products. On 15 March, the Santa Clara-based multinational corporation and technology company unveiled its first-ever bug bounty. It made the announcement in Vancouver, British Columbia at the CanSecWest security conference, one of The State of Security‘s five gems […]… Read More

The post Intel Launches Its First-Ever Bug Bounty Program appeared first on The State of Security.

Continue reading Intel Launches Its First-Ever Bug Bounty Program

Intel Launches Its First-Ever Bug Bounty Program

Intel has announced it will begin rewarding researchers who responsibly disclose security vulnerabilities they find in its products. On 15 March, the Santa Clara-based multinational corporation and technology company unveiled its first-ever bug bounty. It made the announcement in Vancouver, British Columbia at the CanSecWest security conference, one of The State of Security‘s five gems […]… Read More

The post Intel Launches Its First-Ever Bug Bounty Program appeared first on The State of Security.

Continue reading Intel Launches Its First-Ever Bug Bounty Program