article thumbnail

ISO 27002:2022: Unpacking the InfoSec Management Standard

Data Breach Today

Gary Hibberd, known as "The Professor of Communicating Cyber" at cybersecurity services provider Cyberfort Group, discusses the biggest changes made since 2013 to the ISO 27001 international standard for an information security management system, which helps organizations secure their data assets.

article thumbnail

North Korea-linked Kimsuky used a new Linux backdoor in recent attacks

Security Affairs

Kimsuky cyberespionage group (aka Springtail, ARCHIPELAGO, Black Banshee, Thallium , Velvet Chollima, APT43 ) was first spotted by Kaspersky researcher in 2013. The WIZVERA VeraPort integration installation program is used to manage additional security software (e.g., Gomir and GoBear share a great portion of their code.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

On the Subversion of NIST by the NSA

Schneier on Security

National Institute of Standards and Technology (NIST), which develops cryptographic standards for non-national security agencies of the U.S. Cryptographic algorithms are essential to security yet are hard to understand and evaluate. These technologies provide crucial security for communications protocols.

Paper 98
article thumbnail

Dark Tequila Banking malware targets Latin America since 2013

Security Affairs

Security experts from Kaspersky Labs have spotted a sophisticated strain of banking malware dubbed Dark Tequila that was used to target customers of several Mexican financial institutions. According to the researchers, the complex Dark Tequila malware went undetected since at least 2013. Pierluigi Paganini.

Cleanup 45
article thumbnail

Indian Government Releases National Cyber Security Policy 2013

Hunton Privacy

On July 2, 2013, the Indian government released its ambitious National Cyber Security Policy 2013. Establishing public and private partnerships to determine best practices in cybersecurity.

article thumbnail

Microsoft: Chinese Cyberspies Used 4 Exchange Server Flaws to Plunder Emails

Krebs on Security

today released software updates to plug four security holes that attackers have been using to plunder email communications at companies that use its Exchange Server products. The patches released today fix security problems in Microsoft Exchange Server 2013 , 2016 and 2019. Microsoft Corp.

Education 292
article thumbnail

Meet Ika & Sal: The Bulletproof Hosting Duo from Hell

Krebs on Security

From January 2005 to April 2013, there were two primary administrators of the cybercrime forum Spamdot (a.k.a Spamit), an invite-only community for Russian-speaking people in the businesses of sending spam and building botnets of infected computers to relay said spam.