10 Must-Read Books for Information Security Professionals

There are many ways for IT professionals to broaden their knowledge of information security. Attending infosec conferences, for instance, provides personnel with an opportunity to complete in-person trainings and network with like-minded individuals. Outside of industry events, analysts can pick up a book that explores a specific topic of information security. Security professionals can gain […]… Read More

The post 10 Must-Read Books for Information Security Professionals appeared first on The State of Security.

Continue reading 10 Must-Read Books for Information Security Professionals

2.2 Million Email Addresses Exposed in Wishbone Data Breach

A popular social media app known as Wishbone has suffered a data breach that exposed 2.2 million email addresses along with 287,000 cell numbers. In the middle of March 2017, security researcher Troy Hunt received a MongoDB database that belongs to Wishbone. The app, first founded in 2015, allows users to vote on two-choice polls. […]… Read More

The post 2.2 Million Email Addresses Exposed in Wishbone Data Breach appeared first on The State of Security.

Continue reading 2.2 Million Email Addresses Exposed in Wishbone Data Breach

Third-Party Twitter Service Hacked to Push Out Nazi-Themed Tweets

Attackers hacked a third-party service and used their unauthorized access to push out Nazi-themed tweets from high-profile Twitter accounts. On 14 March, prominent companies, publishers, and personalities tweeted out messages containing swastikas and the hashtags #NaziGermany and #NaziHollan written in Turkish. It’s thought that supporters of Turkey sent out the tweets after the Netherlands’ expelled […]… Read More

The post Third-Party Twitter Service Hacked to Push Out Nazi-Themed Tweets appeared first on The State of Security.

Continue reading Third-Party Twitter Service Hacked to Push Out Nazi-Themed Tweets

4 Best Practices for Improving Your Organization’s Supply Chain Security

Digital attackers have many different strategies for infiltrating a target organization. That even goes for companies with robust perimeter defenses. Bad actors simply need to find a soft target they can exploit. Oftentimes, they find what they’re looking for along a target’s supply chain. We can best understand the supply chain as a network of […]… Read More

The post 4 Best Practices for Improving Your Organization’s Supply Chain Security appeared first on The State of Security.

Continue reading 4 Best Practices for Improving Your Organization’s Supply Chain Security

Spam Campaign Distributed Difobot Malware to Financial Organizations

An email spam campaign targeted financial organizations with Difobot malware that masqueraded as fake computer security software. The campaign begins when an employee at a financial institution receives an email purporting to originate from HSBC, a banking and financial service institution based which suffered a distributed denial-of-service (DDoS) attack back in January 2016. Spammers use […]… Read More

The post Spam Campaign Distributed Difobot Malware to Financial Organizations appeared first on The State of Security.

Continue reading Spam Campaign Distributed Difobot Malware to Financial Organizations