Lessons in Securing Development Environments

The new world of software development is inherently collaborative — development teams are geographically dispersed and require easily accessible and automated tools to ship products and features quicker with confidence. The new generation of developme… Continue reading Lessons in Securing Development Environments

Sodinokibi Ransomware Gang Extorts Apple Through Supply Chain Attack

The Sodinokibi ransomware gang is trying to extort Apple following an attack against one of the tech giant’s business partners. According to Bloomberg News, someone using the moniker “Unknown” announced on April 18 that the Sodinokibi/REvil gang w… Continue reading Sodinokibi Ransomware Gang Extorts Apple Through Supply Chain Attack

SolarWinds/SUNBURST Backdoor, Third-Party and Supply Chain Security

In episode 152 for December 21st 2020: A discussion about the SolarWinds Orion backdoor, third-party security, and the threat of supply chain attacks with co-host Kevin Johnson. ** Links mentioned on the show ** US govt, FireEye breached after SolarWin… Continue reading SolarWinds/SUNBURST Backdoor, Third-Party and Supply Chain Security

3 Web Third-Party Related Events You Don’t Want to Miss from August-September 2020

As the end of 2020 is approaching, we see more evidence of the rising risks relating to installed third-party apps running on websites. In this month’s top 3 events we will review the 102-day Warner Music Group breach, how web skimmers were able to use… Continue reading 3 Web Third-Party Related Events You Don’t Want to Miss from August-September 2020

How Black Friday and Cyber Monday Can Go From a Retailer’s Dream Into a CiSO’s Worst Nightmare

The shopping season which begins on Black Friday rolling over to Cyber Monday, is actually one of the most critical times for online retailers. During this period promotions are offered, new products are launched, and the shopping websites themselves i… Continue reading How Black Friday and Cyber Monday Can Go From a Retailer’s Dream Into a CiSO’s Worst Nightmare

The Coronavirus Impacts on Cybersecurity

Protecting Your Website Against Major Threats, Supply-Chain Attacks and Client’s Side Risks on  Coronavirus Times The Coronavirus outbreak has now officially been declared as a global pandemic by the World Health Organization. Along with cau… Continue reading The Coronavirus Impacts on Cybersecurity

Virus Bulletin 2018: Microsoft’s Lambert on How Cloud is Changing Security

Supply-chain attacks are on the rise, but machine learning provides the edge that the security industry needs to keep up. Continue reading Virus Bulletin 2018: Microsoft’s Lambert on How Cloud is Changing Security

Five Weakest Links in Cybersecurity That Target the Supply Chain

Third-party breaches have become an epidemic as cybercriminals target the weakest link. Organizations such as BestBuy, Sears, Delta and even NYU Medical Center are just a few that have felt the impact of cyberattacks through third-party vendors. The fa… Continue reading Five Weakest Links in Cybersecurity That Target the Supply Chain

Brace for Hybrid Threats and Extortion-Fueled Attacks Next Year

There’s no end in sight for ransomware and, based on what we’ve seen this year, these threats will become even more aggressive. Worse still, hackers have started incorporating extortion into other types of attacks. Ransomware pushers have h… Continue reading Brace for Hybrid Threats and Extortion-Fueled Attacks Next Year