NIST’s Zero Trust Taxonomy Introduces Components, Threats and Migration Routes

NIST has published a draft Zero Trust Architecture (ZTA) special publication (SP.800.207). The purpose is to develop a technology-neutral lexicon of the logical components of a zero trust strategy, and to define ZTA, describe possible deployment scenar… Continue reading NIST’s Zero Trust Taxonomy Introduces Components, Threats and Migration Routes

Organizations Prefer Quick Technological Fix Over Deep-Rooted Cyber Resiliency: Report

The Marsh/Microsoft 2019 Global Risk Perception Survey is a follow-on to a similar survey published in February 2018 (conducted in 2017). SecurityWeek criticized the earlier survey results for not including a specific cybersecurity function among the r… Continue reading Organizations Prefer Quick Technological Fix Over Deep-Rooted Cyber Resiliency: Report

Dunkin’ Donuts Sued by New York’s State Attorney General Over Data Breaches

New York Attorney General Letitia James filed a lawsuit against Dunkin’ Donuts in the Supreme Court of the State of New York on Thursday, September 26, 2019. The complaint alleges fraudulent, deceptive and illegal conduct, and focuses on Dunkin’ Donuts… Continue reading Dunkin’ Donuts Sued by New York’s State Attorney General Over Data Breaches

Organizations Warned of Dual Threat Posed by RDP and Disruptive Ransomware

In a paper warning about the evolution of what it calls ‘disruptionware’, the Institute for Critical Infrastructure Technology (ICIT) highlights ransomware and RDP access as the current focus of a new development that “sees adversaries disrupting busin… Continue reading Organizations Warned of Dual Threat Posed by RDP and Disruptive Ransomware