FCC wants rules for ‘most important part of the internet you’ve probably never heard of’

U.S. agencies want to secure the Border Gateway Protocol, but experts question whether their approach could worsen security.

The post FCC wants rules for ‘most important part of the internet you’ve probably never heard of’ appeared first on CyberScoop.

Continue reading FCC wants rules for ‘most important part of the internet you’ve probably never heard of’

Vaultree joins Global Cyber Alliance to create a safer online community

Vaultree announced that it’s now a member of the Global Cyber Alliance (GCA), a globally selected group of privacy and security advocates. Through this partnership, GCA will have access to Vaultree’s unique technology and insight into how they can help… Continue reading Vaultree joins Global Cyber Alliance to create a safer online community

Experts suggest French insurer AXA’s plan to shun ransomware payouts will set a precedent

When French insurer AXA signaled last week that it would no longer write new cyber-insurance policies covering  extortion payouts to criminals, ransomware and cyber insurance experts had two reactions. They wondered why it took so long, and how long it would take others to follow suit. Ransomware is an ever-increasing cause of cyber-insurance claims, according to industry estimates, and having such insurance may make policyholders more likely to be attacked. A representative of the REvil ransomware gang said in a March interview that the group specifically targets victims known to have cyber-insurance, because they’re “one of the tastiest morsels” who can more easily afford to pay. In perhaps the biggest ransomware payment of 2020, smartwatch maker Garmin paid a reported $10 million and said it wasn’t sure how much its insurance would cover of all the costs, which it didn’t enumerate by type of expense.  Those conditions can perpetuate themselves. […]

The post Experts suggest French insurer AXA’s plan to shun ransomware payouts will set a precedent appeared first on CyberScoop.

Continue reading Experts suggest French insurer AXA’s plan to shun ransomware payouts will set a precedent

GCA releases new version of the GCA Cybersecurity Toolkit for SMBs

The Global Cyber Alliance (GCA) announced the release of an updated version of its Cybersecurity Toolkit for Small Business. This new edition builds on the original toolkit, released in February 2019, with an improved user experience and expanded educa… Continue reading GCA releases new version of the GCA Cybersecurity Toolkit for SMBs

Global Cyber Alliance Launches Craig Newmark Trustworthy Internet and Democracy and Craig Newmark Scholars Programs

  $750K in support from organization of craigslist founder to bolster cybersecurity efforts ahead of 2020 U.S. presidential election NEW YORK, Dec. 18, 2019 – The Global Cyber Alliance (GCA) announces the launch of the Craig Newmark Trustworthy Interne… Continue reading Global Cyber Alliance Launches Craig Newmark Trustworthy Internet and Democracy and Craig Newmark Scholars Programs

New infosec products of the week: August 23, 2019

YubiKey 5Ci: First security key designed with both USB-C and Lightning connectors This unique dual-connector functionality makes the YubiKey 5Ci the perfect solution for consumers or enterprises looking for strong hardware-backed authentication across … Continue reading New infosec products of the week: August 23, 2019

Global Cyber Alliance releases AIDE, a cybersecurity development platform for IoT products

The Global Cyber Alliance, working with its partners, launched the Automated IoT Defence Ecosystem (AIDE), a first-of-its-kind cybersecurity development platform for Internet of Things (IoT) products. AIDE enables small businesses, manufacturers, servi… Continue reading Global Cyber Alliance releases AIDE, a cybersecurity development platform for IoT products

Craigslist founder’s organization gifts $1 million for election security

Craigslist founder Craig Newmark’s philanthropic organization will provide more than $1 million to the Global Cyber Alliance with the aim of securing media and election offices before the 2020 presidential election, GCA announced Tuesday. Craig Newmark Philanthropies will give $1.068 million to GCA, which has provided security tools to 7,300 public and private sector organizations, to protect journalists, secure voting-focused nonprofit organizations and enable election boards to invest in “cybersecurity protections to preserve election integrity,” GCA said in an announcement. The guidance will include tips from the Center for Internet Security’s top Critical Controls, which encourage planning, security audits and other best practices. The philanthropic organization has donated tens of millions to media organizations and journalism schools in recent years. It donated $1 million each to ProPublica and the Poynter Institute for Media Studies in 2017, and $20 million last year to the City University of New York’s graduate program […]

The post Craigslist founder’s organization gifts $1 million for election security appeared first on CyberScoop.

Continue reading Craigslist founder’s organization gifts $1 million for election security

Agari: Most agencies on track for DMARC deadline

Most federal agency web domains are on track to meet a requirement that protects them from email spoofing, according to a report from email security company Agari. The requirement in question is Domain-based Message Authentication, Reporting and Conformance (DMARC), a policy that gives network administrators more visibility and control over how their domain is being used with regard to email. Without it, malicious actors can send emails that appear to be from a trusted source, such as a .gov website, to unsuspecting victims. The Department of Homeland Security issued a binding operational directive (BOD) in October 2017 that required all agencies to protect their domains with the highest level of DMARC within one year. With the deadline less than three months away, Agari reports that most domains are on track to meeting the requirements, and just over half have already done so. DMARC can be implemented on three levels of […]

The post Agari: Most agencies on track for DMARC deadline appeared first on Cyberscoop.

Continue reading Agari: Most agencies on track for DMARC deadline

Tax prep tools lag in DMARC implementation, advocacy group says

With tax season underway, a cybersecurity advocacy group is warning that vendors of popular tax preparation tools may be unprepared to protect users from phishing scams. Four out of the eight most popular tax preparation software products don’t employ basic protections against email spoofing, according to testing by the cybersecurity nonprofit Global Cyber Alliance. GCA tested the domains of the popular programs to check what settings they employ under the Domain-based Message Authentication, Reporting and Conformance (DMARC) protocol. DMARC is an industry standard designed to detect and prevent email spoofing. GCA’s findings, released last week, are as follows: Reject: Liberty Tax Quarantine: Credit Karma, Jackson Hewitt and Tax Slayer None: Free Tax USA and Turbo Tax No policy: H&R Block and TaxAct DMARC has three levels of protection against emails that try to hijack a particular domain. If an organization employs the “reject” policy — the highest setting — a spoofed […]

The post Tax prep tools lag in DMARC implementation, advocacy group says appeared first on Cyberscoop.

Continue reading Tax prep tools lag in DMARC implementation, advocacy group says