Exposed Hacking Training Videos Provide Insight Into Hacking Ops 

A state-sponsored hacking group linked to Iran has been caught red-handed, demonstrating how to break into email accounts and steal sensitive data. The group accidentally exposed one of its servers, which gave researchers at IBM’s X-Force Incident Res… Continue reading Exposed Hacking Training Videos Provide Insight Into Hacking Ops 

Staying Ahead of Mac Investigations with Apple Forensic Training

BlackBag’s Apple® Forensic Investigations (AF1) class focuses on evidence artifacts rather than parsed data. The idea is that attendees learn how to verify data found during analysis. The course prepares examiners to understand what the data is saying;… Continue reading Staying Ahead of Mac Investigations with Apple Forensic Training

Webinar: TryHackMe – Behind the Curtain

Register Now for Your Very Own Backstage Pass!
With the growing need for security professionals, a huge number of people are flooding the job market from a diverse range of experience and backgrounds. And let’s be honest… Hacking is just plain fun! W… Continue reading Webinar: TryHackMe – Behind the Curtain

Cyber crisis response failing to adapt to modern threats

Today, a stark disconnect exists between the inadequacy of crisis exercising and the desire to build an effective cyber crisis response function, according to an Osterman Research study. The report into senior security leaders at 402 organizations with… Continue reading Cyber crisis response failing to adapt to modern threats

SANS Institute, which drills cyber professionals in defense, suffers data breach

The SANS Institute, which trains cybersecurity professionals around the world, was hacked, resulting in the compromise of 28,000 records of personally identifiable information, the organization said Tuesday. The Maryland-based research and educational outfit said the breach was the result of a single phishing email sent to a SANS employee, which led to more than 500 of the organization’s emails being forwarded. The breached data included names, email addresses, and physical addresses — information submitted by attendees of a recent SANS virtual training event. After discovering the breach on Aug. 6, SANS said it “quickly stopped any further release of information” from the compromised email account, which was forwarding the data to an “unknown external email address.” The institute did not identify who was responsible for the hack. “We are investigating this incident with the support of some of the world’s top forensic experts to be certain that we understand the complete […]

The post SANS Institute, which drills cyber professionals in defense, suffers data breach appeared first on CyberScoop.

Continue reading SANS Institute, which drills cyber professionals in defense, suffers data breach

Half of IT teams can’t fully utilize cloud security solutions due to understaffing

There are unrealized gaps between the rate of implementation or operation and the effective use of cloud security access brokers (CASB) within the enterprise, according to a global Cloud Security Alliance survey of more than 200 IT and security profess… Continue reading Half of IT teams can’t fully utilize cloud security solutions due to understaffing

Cybersecurity Skills Gap Worsens, Fueled by Lack of Career Development

The fundamental causes for the skill gap are myriad, starting with a lack of training and career-development opportunities. Continue reading Cybersecurity Skills Gap Worsens, Fueled by Lack of Career Development

Encryption – CISSP Domain 3

We’re circling back to some more CISSP-related materials.  Today’s topic will be encryption, which can be found in CISSP Domain 3. By its very nature, encryption is meant to hide the meaning or intent of a communication from unintended… Continue reading Encryption – CISSP Domain 3

Encoding – CISSP Domain 3

Today we’re going to take a quick look at encoding, as covered in Domain 3 of the CISSP common body of knowledge (CBK). There is often some confusion between encoding and encryption, so one of the purposes of this article is to look at how the CB… Continue reading Encoding – CISSP Domain 3

Hashing Functions – CISSP Domain 3

Today we’re going to take a quick look at hashing functions, as covered in Domain 3 of the CISSP common body of knowledge (CBK).  There is often some confusion between hashing, encryption, and encoding, so one of the purposes of this article… Continue reading Hashing Functions – CISSP Domain 3