The Data Breach Price Tag: How Much is Security Worth?

2015 was called the year of the breach with groups like Target being compromised and losing around 30 million credit card numbers, and OPM losing the list of government employees with a  security clearance. That would make 2016 the year of the mega-breach. The Identity Theft Research Center (ITRC) recorded 1,093 breaches last year, with a known total of 36.6 million records being exposed or stolen, but estimates now put that number well over 1 billion records and a total of 4.8 billion records exposed since 2013. With devastation on that scale, it begs the question of how much does […] Continue Reading >

The post The Data Breach Price Tag: How Much is Security Worth? appeared first on Social-Engineer.Com – Professional Social Engineering Training and Services.

Continue reading The Data Breach Price Tag: How Much is Security Worth?

Justice Dept. to charge four over Yahoo mega-breaches

U.S. officials will be indicting four people in connection to the cyberattacks against Yahoo that compromised information related to 1 billion user accounts, according to multiple reports. The Department of Justice is said to target one individual based in Canada and three based in Russia, according to a Bloomberg report. An arrest of the Canadian person could happen as soon as Tuesday. The Department of Justice is holding a press conference Wednesday in Washington, D.C., to announce the indictment. It was revealed in October that user details from more than 500 million Yahoo accounts — including names, birth dates and encrypted passwords — were stolen nearly two years ago by state-sponsored hackers. Email addresses “and, in some cases, encrypted or unencrypted security questions and answers” were also included in the stolen data, but not payment card data or bank account information, which was stored in a separate system. Yahoo then disclosed in December another security incident […]

The post Justice Dept. to charge four over Yahoo mega-breaches appeared first on Cyberscoop.

Continue reading Justice Dept. to charge four over Yahoo mega-breaches

Justice Dept. to charge four over Yahoo mega-breaches

U.S. officials will be indicting four people in connection to the cyberattacks against Yahoo that compromised information related to 1 billion user accounts, according to multiple reports. The Department of Justice is said to target one individual based in Canada and three based in Russia, according to a Bloomberg report. An arrest of the Canadian person could happen as soon as Tuesday. The Department of Justice is holding a press conference Wednesday in Washington, D.C., to announce the indictment. It was revealed in October that user details from more than 500 million Yahoo accounts — including names, birth dates and encrypted passwords — were stolen nearly two years ago by state-sponsored hackers. Email addresses “and, in some cases, encrypted or unencrypted security questions and answers” were also included in the stolen data, but not payment card data or bank account information, which was stored in a separate system. Yahoo then disclosed in December another security incident […]

The post Justice Dept. to charge four over Yahoo mega-breaches appeared first on Cyberscoop.

Continue reading Justice Dept. to charge four over Yahoo mega-breaches

February 21, 2017 – Hack Naked News #112

A lone hacker breaches 60 universities and federal agencies, Yahoo loses $350 million from breaches, more bug bounty programs for porn sites, and is your child a hacker? Jason Wood of Paladin Security joins us to talk about smart city technology that c… Continue reading February 21, 2017 – Hack Naked News #112

IoT Attack Against a University Network

Verizon’s Data Brief Digest 2017 describes an attack against an unnamed university by attackers who hacked a variety of IoT devices and had them spam network targets and slow them down: Analysis of the university firewall identified over 5,000 devices making hundreds of Domain Name Service (DNS) look-ups every 15 minutes, slowing the institution’s entire network and restricting access to… Continue reading IoT Attack Against a University Network