Carnegie Mellon University SEI appoints Gregory J. Touhill as director of the CERT Division

Carnegie Mellon University‘s Software Engineering Institute announced the appointment of Gregory J. Touhill as director of the SEI’s CERT Division. A federally funded research and development center, the SEI helps government and industry or… Continue reading Carnegie Mellon University SEI appoints Gregory J. Touhill as director of the CERT Division

Elektra Labs and CMU collaborate on privacy and security labels of connected health sensors

Elektra Labs and Carnegie Mellon University researchers announced collaboration on an innovative IoT labeling system for understanding the data rights and security practices of connected health sensors. Both organizations have published previous analys… Continue reading Elektra Labs and CMU collaborate on privacy and security labels of connected health sensors

Phishing is still the most commonly used attack on organizations, survey says

The survey found that the majority of cyberattacks – 75% – came from outsiders, while 25% were due to insiders. Continue reading Phishing is still the most commonly used attack on organizations, survey says

Verizon to Stop Sharing Customer Location Data With Third Parties

In the wake of a scandal involving third-party companies leaking or selling precise, real-time location data on virtually all Americans who own a mobile phone, the four major wireless carriers have responded to requests from a U.S. senator for more details about how the carriers are managing access to this extremely sensitive information. While three out of four providers said they had cancelled data sharing agreements with some of the offending companies, only one — Verizon — pledged to terminate all of them and initiate a wholesale review of their location data-sharing practices. Continue reading Verizon to Stop Sharing Customer Location Data With Third Parties

Mobile Giants: Please Don’t Share the Where

Your mobile phone is giving away your approximate location all day long. This isn’t exactly a secret: It has to share this data with your mobile provider constantly to provide better call quality and to route any emergency 911 calls straight to your lo… Continue reading Mobile Giants: Please Don’t Share the Where

US-CERT Warns HTTPS Inspection May Degrade TLS Security

Security tools that proxy and inspect HTTPS traffic create a blindspot for network administrators trying to determine whether communication between clients and servers is secure. Continue reading US-CERT Warns HTTPS Inspection May Degrade TLS Security