4 Lessons Learned from Offensive v Defensive Training

In June this year, Fifth Domain ran a ten-day cyberwar course for 21 participants. The course provided participants with both red-team (offensive) and blue-team (defensive) cyber operations exercises. During the first eight days, participants learned a number of principles, frameworks and technical skills that were then put into practice during the final two-day cyberwar exercise. […]… Read More

The post 4 Lessons Learned from Offensive v Defensive Training appeared first on The State of Security.

Continue reading 4 Lessons Learned from Offensive v Defensive Training

Adaptive Security Starts with the Human Being

Many problems in information security are both perennial and intractable. Audits expose them year after year. Breach after breach occurs because of them. Information security managers are fired as a result of the inevitable breaches, and the deck chairs are rearranged again each time. And yet, the attack surface rarely changes. It’s a revolving door […]… Read More

The post Adaptive Security Starts with the Human Being appeared first on The State of Security.

Continue reading Adaptive Security Starts with the Human Being

July 2016: The Month in Ransomware

As we continue to keep track of relevant events in ransomware, it’s time to provide a summary on the strains that surfaced or underwent noteworthy changes in July. Importantly, you will learn about decryptors released by security professionals and the promising international initiative called ‘No More Ransom.’ JULY 3, 2016 Alfa ransomware emerges This infection […]… Read More

The post July 2016: The Month in Ransomware appeared first on The State of Security.

Continue reading July 2016: The Month in Ransomware

Could Your Smart Home Put You at Risk?

The Internet of Things (IoT) is slowly taking over consumer markets in every category, from coffee makers to fitness trackers. Yet while smart automation might seem like the ideal for consumer convenience, when it comes to home security systems, connecting to the Internet can lead to increased vulnerability. In this article, we take a look […]… Read More

The post Could Your Smart Home Put You at Risk? appeared first on The State of Security.

Continue reading Could Your Smart Home Put You at Risk?

Beware of the Cerber2 Ransomware!

A new and improved version of the infamous Cerber Ransomware has emerged. Among other things, it changes the affected users’ file extensions into .Cerber2, thus the name. The first reports of Cerber2 Ransomware emerged yesterday, with additional details coming in by the minute. Apparently, the new extension is not the only change that awaits unfortunate […]… Read More

The post Beware of the Cerber2 Ransomware! appeared first on The State of Security.

Continue reading Beware of the Cerber2 Ransomware!

How Financial Institutions Can Navigate the New FinCen Rules

The timing could not have been better. Or worse. On the one hand, the massive leak of the so-called Panama Papers earlier this year shone a bright light on the scope of the issues financial institutions grapple with daily to combat money laundering activity and comply with complex, global regulations. On the other, it is […]… Read More

The post How Financial Institutions Can Navigate the New FinCen Rules appeared first on The State of Security.

Continue reading How Financial Institutions Can Navigate the New FinCen Rules

How Employees React to Security Policies

First, security professionals should understand that people’s resources are limited. Moreover, people tend to struggle with making effective decisions when they are tired. To test the validity of this argument, psychologists designed an experiment in which they divided participants into two groups. The first group was asked to memorise a two-digit number (e.g. 54), and […]… Read More

The post How Employees React to Security Policies appeared first on The State of Security.

Continue reading How Employees React to Security Policies

Identifying Cyber Risks: The Important Role of Senior Management

It is becoming more and more evident that cybersecurity is one of the focal points regarding security risks in the twenty-first century for all organisations. It is understandable that almost every organisation that has access to any kind of computing devices will be at risk and will probably experience harmful cyber incidents. Hackers, whether via […]… Read More

The post Identifying Cyber Risks: The Important Role of Senior Management appeared first on The State of Security.

Continue reading Identifying Cyber Risks: The Important Role of Senior Management

BSidesLV 2016: Mobile App Attack

Mobile devices are rapidly becoming the primary need of any user. Ease of use, portability, user-friendly GUI, robust computing, a wide variety of applications… all of these features makes a mobile device much more compelling than a normal computer. However, mobile phones are becoming more of a security concern, and organizations need to consider a new […]… Read More

The post BSidesLV 2016: Mobile App Attack appeared first on The State of Security.

Continue reading BSidesLV 2016: Mobile App Attack

Why We’re Still Blindly Lurching into the Era of Lethal Connected Devices

When it comes to the Internet of Things and security, it seems individuals and organizations keep making the same fatal mistakes – over and over again – because we continuously see it as a technology problem. It’s not. It’s a business strategy failure. Whether it’s insecure hospital devices, hackable power grids, or lethal connected cars, […]… Read More

The post Why We’re Still Blindly Lurching into the Era of Lethal Connected Devices appeared first on The State of Security.

Continue reading Why We’re Still Blindly Lurching into the Era of Lethal Connected Devices