Over 4.5 Billion Records Breached in H1 2018, Finds Report

A recent report found that data breaches compromised a total of more than 4.5 billion records in the first half of 2018. In its report “2018: Data Privacy and New Regulations Take Center Stage,” Gemalto wrote that its Breach Level Index (BL… Continue reading Over 4.5 Billion Records Breached in H1 2018, Finds Report

Connected Device Security Bill Becomes Law in California

The State of California enacted a law requiring manufacturers of connected devices to equip their products with “reasonable” security features. On 28 September, California Governor Jerry Brown approved SB-327. The law, which is entitled &#8… Continue reading Connected Device Security Bill Becomes Law in California

Criminals Holding Hijacked Instagram Influencers’ Accounts for Ransom

Criminals are hijacking Instagram influencers’ accounts and demanding that victims pay a ransom in bitcoin to regain access. Kevin Kreider, a Los Angeles-based Instagrammer who’s known for his following around fitness-related topics, told M… Continue reading Criminals Holding Hijacked Instagram Influencers’ Accounts for Ransom

Network Outage at Some Recipe Unlimited Locations Caused by Malware

A malware outbreak was responsible for a network outage that affected a limited number of Recipe Unlimited restaurant locations. On 1 October, Recipe Unlimited announced a malware attack of which it learned at the end of September. The Canadian restaur… Continue reading Network Outage at Some Recipe Unlimited Locations Caused by Malware

DanaBot Observed in Large Campaign Targeting U.S. Organizations

Researchers observed the distribution of the DanaBot banking trojan in a large attack campaign targeting U.S. organizations. On 26 September, Proofpoint detected a campaign consisting of hundreds of thousands of emails intended for U.S. recipients. Eac… Continue reading DanaBot Observed in Large Campaign Targeting U.S. Organizations

Tesco Bank Fined £16.4 Million for 2016 Digital Attack

Regulators imposed a fine of £16.4 million on Tesco Bank for a digital attack that affected some customers and their accounts in 2016. On 1 October, the Financial Conduct Authority (FCA) announced that its penalty responded to a November 2016 secu… Continue reading Tesco Bank Fined £16.4 Million for 2016 Digital Attack

Port of San Diego Suffers Ransomware Attack

The FBI and the U.S. Department of Homeland Security are investigating a ransomware attack that affected at least some of the information systems belonging to the Port of San Diego. Port officials first reported the attack on Tuesday. Port of San Diego… Continue reading Port of San Diego Suffers Ransomware Attack

New “Torii” Botnet’s Sophisticated Techniques Set It Apart From Mirai

Researchers have discovered a new botnet called “Torii” which differentiates itself from Mirai by its use of several sophisticated tactics. Infosec expert @VessOnSecurity is the first to have discovered the new botnet: My honeypot just caug… Continue reading New “Torii” Botnet’s Sophisticated Techniques Set It Apart From Mirai

What to Do and What to Avoid When Implementing Security in the DevOps Lifecycle

DevOps is redefining the way organizations handle software development. But it’s also challenging security professionals in their efforts to manage digital risk. With that said, there are security teams need to be strategic about how they approac… Continue reading What to Do and What to Avoid When Implementing Security in the DevOps Lifecycle

Former NSA Employee Gets 5 Years in Prison for Retaining Classified Data

A former employee of the U.S. National Security Agency (NSA) received a five-year prison sentence for retaining classified national defense information. On 25 September, the Department of Justice sentenced Nghia Hoang Pho, 68, of Ellicott City, Marylan… Continue reading Former NSA Employee Gets 5 Years in Prison for Retaining Classified Data