CISO Conversations: Nick McKenzie (Bugcrowd) and Chris Evans (HackerOne)

SecurityWeek discusses cybersecurity leadership with CISOs from crowdsourced hacking organizations Bugcrowd (Nick McKenzie) and HackerOne (Chris Evans)
The post CISO Conversations: Nick McKenzie (Bugcrowd) and Chris Evans (HackerOne) appeared first on… Continue reading CISO Conversations: Nick McKenzie (Bugcrowd) and Chris Evans (HackerOne)

CVE and NVD – A Weak and Fractured Source of Vulnerability Truth

MITRE is unable to compile a list of all new vulnerabilities, and NIST is unable to subsequently, and consequently, provide an enriched database of all vulnerabilities. What went wrong, and what can be done?
The post CVE and NVD – A Weak and Frac… Continue reading CVE and NVD – A Weak and Fractured Source of Vulnerability Truth

Heartbleed is 10 Years Old – Farewell Heartbleed, Hello QuantumBleed!

Heartbleed made most certificates vulnerable. The future problem is that quantum decryption will make all certificates and everything else using RSA encryption vulnerable to everyone.
The post Heartbleed is 10 Years Old – Farewell Heartbleed, Hello Qua… Continue reading Heartbleed is 10 Years Old – Farewell Heartbleed, Hello QuantumBleed!

The Complexity and Need to Manage Mental Well-Being in the Security Team

It is the CISO’s responsibility to build and maintain a high functioning team in a difficult environment – cybersecurity is a complex, continuous, and adversarial environment like none other outside of military conflict.
The post The Complexity and Nee… Continue reading The Complexity and Need to Manage Mental Well-Being in the Security Team

Details and Lessons Learned From the Ransomware Attack on the British Library

Although the attack on the national library of the UK occurred five months ago, the Library’s infrastructure won’t be rebuilt until mid-April 2024, and then the full restoration of systems and data can begin.
The post Details and Lessons Learned From t… Continue reading Details and Lessons Learned From the Ransomware Attack on the British Library

Details and Lessons Learned From the Ransomware Attack on the British Library

Although the attack on the national library of the UK occurred five months ago, the Library’s infrastructure won’t be rebuilt until mid-April 2024, and then the full restoration of systems and data can begin.
The post Details and Lessons Learned From t… Continue reading Details and Lessons Learned From the Ransomware Attack on the British Library

UK Firm Think Cyber Raises $3.8 Million for Staff Security Nudging

Startup says simple awareness training is not sufficient – users need to practice ‘good’ behavior beyond simply acknowledging poor behavior and bad intent.
The post UK Firm Think Cyber Raises $3.8 Million for Staff Security Nudging appeared first on Se… Continue reading UK Firm Think Cyber Raises $3.8 Million for Staff Security Nudging

Lost Crypto Wallet? New Firm Promises Ethical, Transparent and Inexpensive Recovery

Praefortis is a new company pushing ethical and transparent recovery of lost or forgotten crypto wallet passwords.
The post Lost Crypto Wallet? New Firm Promises Ethical, Transparent and Inexpensive Recovery appeared first on SecurityWeek.
Continue reading Lost Crypto Wallet? New Firm Promises Ethical, Transparent and Inexpensive Recovery