Top tip for botnet overlords: Don’t vacation in countries that can extradite you to the United States

There’s no doubt that a life of cybercrime can earn its most successful overlords a considerable amount of money, but you will always have to live with the fear that you could be apprehended and – if convicted – spend years in prison.
Read more in my a… Continue reading Top tip for botnet overlords: Don’t vacation in countries that can extradite you to the United States→

Microsoft Office zero-day being exploited to spread malware, but no patch available… yet

Malicious hackers are exploiting an as-yet-unpatched security vulnerability in Microsoft Office products in attacks designed to secretly infect targeted computers with malware.
Read more in my article on the Hot for Security blog.
Continue reading Microsoft Office zero-day being exploited to spread malware, but no patch available… yet→

Help prevent a breach in your organisation by watching these Microsoft Office webcasts

Help prevent a breach in your organisation by watching these Microsoft Office webcasts

Graham Cluley Security News is sponsored this week by the folks behind Microsoft Office. Thanks to the great team there for their support!

Most of us recognise that things have changed a lot in the workplace in the last ten years or so. The concept of the network perimeter has become a lot fuzzier as staff increasingly work remotely, and as companies take advantage of cloud-based technologies and third-party services.

Why does this matter for security? It matters because some businesses have failed to keep up with the changing world, continuing to depend upon a perimeter-based network security approach.

A failure to adapt means your company could be failing to stay ahead of malicious hackers – hackers who have become more sophisticated and organised in their attacks, hell bent on identifying and targeting the weakpoints in infrastructure in order to steal data.

Technology is certainly changing how we secure businesses from attack. But there’s one thing that is not going to change any time soon – the human element. You should never underestimate the potential damage that could be caused by the insider threat – and yet managing the “people” part of security is one of the biggest problems IT teams can face today.

You can help your company stay ahead of these challenges by checking out some of the webcasts that Microsoft Office has produced as part of its Modern Workplace series.

Recent episodes have focused on cyber intelligence – specifically how you can help prevent a breach, and an examination of how employees can pose the biggest threat to an organisation’s security.

In the webcasts, CISOs share their expertise by describing the sometimes simple steps that can be taken to motivate your staff to work together in proactively helping to prevent a successful hack attack. And if you register on the site you’ll also be gain access to exclusive white papers and ebooks describing the top techniques used by hackers.

Don’t delay. Check out the webcasts, and start learning more about how you and your staff can be work together better to prevent security breaches in future.


If you’re interested in exclusively sponsoring my site for a week, and reaching an IT-savvy audience that cares about computer security, you can find more information here.

Continue reading Help prevent a breach in your organisation by watching these Microsoft Office webcasts→

Posted in SBN

Five Scams That Won’t Make You Laugh on April Fool’s Day

Scammers know that the weak link in any organisation is the user. Through social engineering tricks they can trick users into clicking on links, opening poisoned attachments or even handing over their passwords in the mistaken belief that they’re communicating with the IT department or logging into a legitimate website.

The problem is – we should treat every day like it’s April 1st.

Here are five types of computer scam you should look out for – regardless of the date.

The post Five Scams That Won’t Make You Laugh on April Fool’s Day appeared first on The State of Security.

Continue reading Five Scams That Won’t Make You Laugh on April Fool’s Day→

Smashing Security #014: Protecting webmail

What can you do to better protect your online email accounts?
In this special edition of the “Smashing Security” podcast, regular hosts Graham Cluley and Carole Theriault, joined by special guest Paul Ducklin, share tips on how to better defend your Gm… Continue reading Smashing Security #014: Protecting webmail→