Homeland Security warns of security flaws in enterprise VPN apps

Several enterprise virtual private networking apps are vulnerable to a security bug that can allow an attacker to remotely break into a company’s internal network, according to a warning issued by Homeland Security’s cybersecurity division. An alert was published Friday by the government’s Cybersecurity and Infrastructure Security Agency following a public disclosure by CERT/CC, the vulnerability […] Continue reading Homeland Security warns of security flaws in enterprise VPN apps

How to handle dark data compliance risk at your company

Lisa Hawke Contributor Share on Twitter Lisa Hawke (@ldhawke) is VP of Security and Compliance at Everlaw, and Vice Chair of Women in Security and Privacy. Slack and other consumer-grade productivity tools have been taking off in workplaces large and small — and data governance hasn’t caught up. Whether it’s litigation, compliance with regulations like […] Continue reading How to handle dark data compliance risk at your company

Spoiler, Use-After-Free, and Ghidra: This Week in Computer Security

The past few days have been busy if you’re trying to keep up with the pace of computer security news. Between a serious Chromium bug that’s actively being exploited on Windows 7 systems, the NSA releasing one of their tools as an open source project, and a new Spectre-like speculative …read more

Continue reading Spoiler, Use-After-Free, and Ghidra: This Week in Computer Security