Business efficiency metrics are more important than detection metrics

With cyberattacks on the rise, today’s security professionals are relying primarily on detection metrics – both key performance indicators (KPIs) and key risk indicators (KRIs) – as the primary means to measure the success of their security programs. H… Continue reading Business efficiency metrics are more important than detection metrics

Email scam aims to drop Dridex on machines by impersonating FedEx, UPS

As more Americans rely on package deliveries during the coronavirus pandemic, scammers are trying to capitalize on the tracking process by sending spoofed emails containing malicious software. Hackers are sending spoofed emails that appear to be from FedEx, UPS and DHL as part of a mass emailing campaign meant to infect victims’ computers, according to research initially published on May 5 by the security vendor Votiro. The messages appear to include package tracking updates, though at least some of them aim to infect recipients with a strain of malware known as Dridex, which is typically used to steal bank account data. The messages usually ask recipients to download an invoice, or view their tracking information. Code in the images, links and header of the email all appeared to be legitimate, providing the hackers with cover. They also disguised many of the messages to make them appear as if they arrived […]

The post Email scam aims to drop Dridex on machines by impersonating FedEx, UPS appeared first on CyberScoop.

Continue reading Email scam aims to drop Dridex on machines by impersonating FedEx, UPS

Cybersecurity during the pandemic: Try these security solutions for free!

In order to help global organizations of all sizes address cybersecurity during the COVID-19 pandemic, a number of vendors provide free (time-limited) access to their solutions. All of the offers below are available immediately, and they cover a number… Continue reading Cybersecurity during the pandemic: Try these security solutions for free!

Votiro and Box partnership to bring secure, centralized and cloud-native content services

Votiro Cybersec Global, a global leader in content disarm and reconstruction (CDR) technology, announced its partnership with Box, a leading cloud content management platform committed to bringing secure, centralized and cloud-native content services t… Continue reading Votiro and Box partnership to bring secure, centralized and cloud-native content services

You may trust your users, but can you trust their files?

In this Help Net Security podcast recorded at RSA Conference 2019, Aviv Grafi, CEO at Votiro, talks about their Content Disarm and Reconstruction (CDR) technology for protection against cyber threats. Here’s a transcript of the podcast for your conveni… Continue reading You may trust your users, but can you trust their files?

Security firms pour on evidence of Chinese hacking against Vietnam

A hacking group with suspected ties to the Chinese government is engaged in an ongoing and expansive cyber espionage operation against Vietnamese organizations, based on evidence obtained by three different cybersecurity firms. The campaign’s discovery comes during a period of mounting geopolitical tension due to a territorial dispute related to the South China Sea. China, Vietnam, Indonesia and the Philippines, among other powers, disagree on which country has claim to a collection of resource-rich islands that sit in the middle of an important international trade route. Cybersecurity firms Votiro, FireEye and Fortinet each obtained phishing emails that were sent to Vietnamese organizations in recent months. Researchers say these emails carried certain forensic indicators, including overlaps in malware and attack servers, that can be traced back to a group previously attributed to Chinese hackers. The South China Sea dispute represents a longstanding disagreement that dates back years. Foreign policy experts believe […]

The post Security firms pour on evidence of Chinese hacking against Vietnam appeared first on Cyberscoop.

Continue reading Security firms pour on evidence of Chinese hacking against Vietnam