Inaccurate information from data brokers can damage careers and reputations. It's time for US privacy laws to change how law enforcement and legal agencies obtain and act on data.
Read moreInternet AppSec Remains Abysmal & Requires Sustained Action in 2023
December 27 2022A variety of initiatives — such as memory-safe languages and software bills of materials — promise more secure applications, but sustained improvements will require that vendors do much better,...
Read moreArresting IT Administrators
December 27 2022This is one way of ensuring that IT keeps up with patches:
Albanian prosecutors on Wednesday asked for the house arrest of five public employees they blame for not...
Read more
LastPass Breach
December 26 2022Last August, LastPass reported a security breach, saying that no customer information—or passwords—were compromised. Turns out the full story is worse:
While no customer data was accessed during...
Read more
Friday Squid Blogging: Injured Giant Squid and Paddleboarder
December 24 2022Here’s a video—I don’t know where it’s from—of an injured juvenile male giant squid grabbing on to a paddleboard. As usual, you can also use this squid post to talk...
Read moreA complete bypass of the Kyverno security mechanism for container image imports allows cyberattackers to completely take over a Kubernetes pod to steal data and inject malware.
Read moreLastPass finally admits: Those crooks who got in? They did steal your password vaults, after all…
December 24 2022The crooks now know who you are, where you live, which computers are yours, where you go online... and they got those password vaults, too.
Read moreLastPass Cops to Massive Breach Including Customer Vault Data
December 24 2022The follow-on attack from August's source-code breach could fuel future campaigns against LastPass customers.
Read moreVideoconferencing Worries Grow, With SMBs in Cyberattack Crosshairs
December 24 2022Securing videoconferencing solutions is just one of many IT security challenges small businesses are facing, often with limited financial and human resources.
Read moreGoogle: With Cloud Comes APIs & Security Headaches
December 23 2022APIs are key to cloud transformation, but two Google surveys find that cyberattacks targeting them are reaching a tipping point, even as general cloud security issues abound.
Read more
Recent Comments