Threats

As Cybercrooks Specialize, More Snooping, Less Smash and Grab

Cybercriminals are becoming more specialized as they try to extract the maximum value out of email account compromises, a new report by researchers at UC Berkeley and the security firm Barracuda Networks has found.

Spotlight Podcast: QOMPLX CISO Andy Jaquith on COVID, Ransomware and Resilience

In this Spotlight podcast* we’re joined by Andrew Jaquith, the CISO at QOMPLX to talk about how the COVID pandemic is highlighting longstanding problems with cyber risk management and cyber resilience. We also talk about how better instrumenting of information security can help companies get a grip on fast-evolving cyber risks like human-directed ransomware campaigns.

401(k) Cyber Fraud Is Growing. Everyone Could Be Liable

Hacking attacks on 401(k) plans and retirement savings accounts are growing and court rulings could have a far-reaching impact on who is liable.

Password Psychology: users know reuse is bad, do it anyway

More than 90% of employees know re-using passwords between accounts is a dangerous business, but two thirds of them do it anyway. Rachael Stockton of LastPass digs into the “why” of password insecurity in the latest LastPass Psychology of Passwords report.

Firms are embracing Open Source. Securing it? Not so much.

The good news: open source software is nearly universal. The bad news: half of source code repositories contains open source code containing high-risk vulnerabilities, according to a new report released by the firm Synopsys.