What to expect from the Cybersecurity Solarium Commission report

A bipartisan congressional committee is urging the federal government to enact a sweeping set of cybersecurity upgrades in order to modernize American defenses on issues ranging from 5G security to stopping intellectual property theft and mitigating ransomware attacks. The Cybersecurity Solarium Commission on Wednesday will release 75 recommendations that calla for changes in the way that Congress and the Trump administration oversee crucial security issues that, if unaddressed, may jeopardize U.S. national and economic security. It remains to be seen whether some of the proposals will become a reality. In an interview with CyberScoop, Sen. Angus King, I-Maine, a co-chair of the commission, would not preview what elements of the proposal would appear in forthcoming legislation, but said between 40-50 percent of them could be seen in the 2021 National Defense Authorization Act. King says there is urgency to taking action on each of the 75 recommendations. “We want this to be […]

The post What to expect from the Cybersecurity Solarium Commission report appeared first on CyberScoop.

Continue reading What to expect from the Cybersecurity Solarium Commission report

Wi-Fi Chip Vulnerability

There’s a vulnerability in Wi-Fi hardware that breaks the encryption: The vulnerability exists in Wi-Fi chips made by Cypress Semiconductor and Broadcom, the latter a chipmaker Cypress acquired in 2016. The affected devices include iPhones, iPads, Macs, Amazon Echos and Kindles, Android devices, and Wi-Fi routers from Asus and Huawei, as well as the Raspberry Pi 3. Eset, the security… Continue reading Wi-Fi Chip Vulnerability

Nvidia patches severe flaws affecting GeForce, Quadro NVS and Tesla

In all, the update covers five Windows and Linux desktop CVE vulnerabilities, including one rated as critical. Continue reading Nvidia patches severe flaws affecting GeForce, Quadro NVS and Tesla

Cyber Security Roundup for March 2020

A roundup of UK focused Cyber and Information Security News, Blog Posts, Reports and general Threat Intelligence from the previous calendar month, February 2020.
Redcar and Cleveland Borough Council became the latest UK organisation to become the victi… Continue reading Cyber Security Roundup for March 2020

Combat complexity to prevent cybersecurity fatigue

In today’s security landscape, the average company uses more than 20 security technologies. While vendor consolidation is steadily increasing with 86 percent of organizations using between 1 and 20 cybersecurity vendors, more than 20 percent feel that … Continue reading Combat complexity to prevent cybersecurity fatigue

IE zero day and heap of RDP flaws fixed in February Patch Tuesday

Microsoft has finally patched the Internet Explorer (IE) zero-day flaw the company said in January was being used in “limited targeted attacks”. Continue reading IE zero day and heap of RDP flaws fixed in February Patch Tuesday

Critical Android flaws patched in February bulletin

Google has patched Android bugs that include a couple of critical flaws that could let hackers run their own code on the mobile operating system. Continue reading Critical Android flaws patched in February bulletin

Cyber Security Roundup for February 2020

A roundup of UK focused cyber and information security news stories, blog posts, reports and threat intelligence from the previous calendar month, January 2020.After years of dither and delay the UK government finally nailed its colours to the mast, no… Continue reading Cyber Security Roundup for February 2020

80% of successful breaches are from zero-day exploits

Organizations are not making progress in reducing their endpoint security risk, especially against new and unknown threats, a Ponemon Institute study reveals. 68% IT security professionals say their company experienced one or more endpoint attacks that… Continue reading 80% of successful breaches are from zero-day exploits