Hoping to fill a global void, private companies push for ‘cyber norms’

Technology companies are increasingly joining together to develop and promote the adoption of international “norms” and other rules for cyberspace, hoping to fill a void left by governments and international institutions that have failed to act. The latest example of the dynamic came last week when a prominent group of corporations, including Siemens, Airbus and microchip maker DXP, announced a new nine-member cybersecurity charter. The document — essentially a nonbinding agreement to work to improve global cybersecurity — is currently open for other companies to join, one member said. “Cybersecurity is and has to be more than a seatbelt or an airbag here; it’s a factor that’s crucial to the success of the digital economy,” reads a statement on the charter’s website. “People and organizations need to trust that their digital technologies are safe and secure; otherwise they won’t embrace the digital transformation. That’s why we are signing together a Charter of Trust […]

The post Hoping to fill a global void, private companies push for ‘cyber norms’ appeared first on Cyberscoop.

Continue reading Hoping to fill a global void, private companies push for ‘cyber norms’

China’s Economic Espionage via the Non-Attributable Hand

As we come to the end of the tumultuous 2017, the award for sleight of hand perhaps should go to China and its intelligence apparatus, the Ministry for State Security (MSS) and People’s Liberation Army (PLA), as they continue to harvest intellectual pr… Continue reading China’s Economic Espionage via the Non-Attributable Hand

US indicts three Chinese nationals for alleged cyberattacks

The three men are accused of hacking into at least three multinational corporations over the past seven years. Continue reading US indicts three Chinese nationals for alleged cyberattacks

Siemens Update Patches SIMATIC PCS 7 Bug in Some Versions

Siemens has fixed a remotely executable vulnerability in some versions of its SIMATIC PCS 7 distributed control system, and said that it is working on a fix for remaining affected versions. Continue reading Siemens Update Patches SIMATIC PCS 7 Bug in Some Versions

Siemens Patches Improper Access Vulnerability in Ruggedcom Protocol

Industrial manufacturer Siemens is encouraging users running devices that use its Ruggedcom protocol to apply firmware updates this week. The updates resolve a serious and remotely exploitable vulnerability that could let an attacker carry out administ… Continue reading Siemens Patches Improper Access Vulnerability in Ruggedcom Protocol

July 18, 2017 – Hack Naked News #133

Forgetting your Windows password, bidding farewell to SMS authentication, reviewing Black Hat USA 2017, Ubuntu Linux for Windows 10, and more. Jason Wood of Paladin Security joins us to discuss companies being breached due to misconfiguration on this episode of Hack Naked News! News Google wants you to bid farewell to SMS authentication – Google’s campaign to […]

The post July 18, 2017 – Hack Naked News #133 appeared first on Security Weekly.

Continue reading July 18, 2017 – Hack Naked News #133

Siemens Patches Authentication Bypass Flaw in SiPass Server

Siemens patches four vulnerabilities, including a critical authentication bypass flaw, in its SiPass integrated access control server. Continue reading Siemens Patches Authentication Bypass Flaw in SiPass Server

Siemens Patches Critical Intel AMT Flaw in Industrial Products

Siemens patched a recently disclosed vulnerability pertaining to systems with specific Intel processors. If exploited, the flaw could let an attacker gain system privileges. Continue reading Siemens Patches Critical Intel AMT Flaw in Industrial Products