Mon.Oct 04, 2021

article thumbnail

GUEST ESSAY: What it will take to train the next generation of cybersecurity analysts

The Last Watchdog

It is no secret that there is, and has been for some time, a shortage of trained cyber security professionals in corporate IT Security teams. The Wharton School of the University of Pennsylvania observed that “nowhere is the workforce-skills gap more pronounced than in cybersecurity.”. Related: Deploying ‘human’ sensors’ According to data gathered by CyberSeek under a Commerce Department grant, there are currently nearly 465,000 unfilled cyber jobs across the US alone.

article thumbnail

What Happened to Facebook, Instagram, & WhatsApp?

Krebs on Security

Facebook and its sister properties Instagram and WhatsApp are suffering from ongoing, global outages. We don’t yet know why this happened, but the how is clear: Earlier this morning, something inside Facebook caused the company to revoke key digital records that tell computers and other Internet-enabled devices how to find these destinations online.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Cyberattacks Disable IT Networks at 2 Indiana Hospitals

Data Breach Today

Some Patients' Care Previously Postponed Due to COVID-19; What Happens Now? Two Indiana hospitals say their IT systems are disabled as they recover from cyberattacks suffered last week. Both hospitals in recent weeks have had to divert patients or postpone elective procedures as COVID-19 cases surged in the state. So what's the impact of the attacks on patient care?

IT 355
article thumbnail

How to beat ransomware attackers at their own game

IT Governance

Ransomware – malware that aims to prevent victims from accessing their data unless they pay their attackers – seems to be in the news more than ever before. Sophos’s most recent annual ransomware survey, The State of Ransomware 2021 , found that 37% of organisations surveyed in 2021 had been affected by ransomware in the previous year. Although this is a year-on-year reduction (51% of surveyed organisations were affected in 2020), the threat remains significant.

article thumbnail

Peak Performance: Continuous Testing & Evaluation of LLM-Based Applications

Speaker: Aarushi Kansal, AI Leader & Author and Tony Karrer, Founder & CTO at Aggregage

Software leaders who are building applications based on Large Language Models (LLMs) often find it a challenge to achieve reliability. It’s no surprise given the non-deterministic nature of LLMs. To effectively create reliable LLM-based (often with RAG) applications, extensive testing and evaluation processes are crucial. This often ends up involving meticulous adjustments to prompts.

article thumbnail

New File-Locking Malware With No Known Decryptor Found

Data Breach Today

DSCI: Ransomware Alkhal Likely Spread Via Phishing, Malicious URLs The Data Security Council of India has issued an advisory about newly discovered ransomware Alkhal, which uses a strong encryption tool and has no known decryptor to recover lost data. The ransomware was likely discovered on Oct. 1 by security firms Malwarebytes and Cyclonis.

More Trending

article thumbnail

Facebook, Instagram, WhatsApp Suffer Widespread Outage

Data Breach Today

Social Media Giant Confirms Incident via Twitter; Analysis Suggests DNS Issue Social media giant Facebook experienced a global outage on Monday that also involved its properties - including Instagram, Messenger and WhatsApp. According to Cisco's internet analysis division, ThousandEyes, the tech giant experienced a DNS issue that hindered access to Facebook's tools and apps.

Access 284
article thumbnail

LockBit 2.0 ransomware hit Israeli defense firm E.M.I.T. Aviation Consulting

Security Affairs

Israeli Aerospace & Defense firm E.M.I.T. Aviation Consulting Ltd. was hit by LockBit 2.0 ransomware, operators will leak files on 07 Oct, 2021. LockBit 2.0 ransomware operators hit the Israeli aerospace and defense firm E.M.I.T. Aviation Consulting Ltd, threat actors claim to have stolen data from the company and are threatening to leak them on the dark web leak site of the group in case the company will not pay the ransom.

article thumbnail

Ukraine Busts 2 Suspects Tied to Major Ransomware Group

Data Breach Today

$150 Million in Worldwide Losses Tied to Unnamed Ransomware Operation and Suspects Police in Ukraine have arrested two members of a ransomware operation they say has targeted businesses in North American and Europe, leading to victim losses totaling at least $150 million. The operation also involved French cyber police, the FBI and Interpol, backed by Europol's European Cybercrime Centre.

article thumbnail

Top 5 Skills Modern SOC Teams Need to Succeed

Dark Reading

From basic coding to threat hunting, here are five skills modern SOC teams need to successfully navigate the future of high-scale detection and response.

121
121
article thumbnail

How and Why Should You Be Tracking Geopolitical Risk?

Geopolitical risk is now at the top of the agenda for CEOs. But tracking it can be difficult. The world is more interconnected than ever, whether in terms of economics and supply chains or technology and communication. Geopolitically, however, it is becoming increasingly fragmented – threatening the operations, financial well-being, and security of globally connected companies.

article thumbnail

Ex-Army Contractor Sentenced to 12 Years for Fraud

Data Breach Today

DOJ: Thousands of US Service Members, Veterans Targeted A former U.S. Army contractor has been sentenced to 12 years and seven months in prison and ordered to pay $2,331,639.85 in restitution, for conspiring to commit wire fraud and launder money, targeting thousands of military-affiliated individuals, according to a Department of Justice statement.

Military 157
article thumbnail

Facebook, WhatsApp, and Instagram are down worldwide, it’s panic online

Security Affairs

Users worldwide are experiencing problems while accessing Facebook services, including Instagram and WhatsApp. Users worldwide are not able to access Facebook, Instagram, and WhatsApp services due to a BGP problems. Users attempting to visit the above services are displaying “DNS_PROBE_FINISHED_NXDOMAIN.” The mobile applications of the social network giant and its Tor hidden services are also not working.

article thumbnail

Cryptocurrency Exchange Bug Reveals 'WannaCry 2.0' Clues

Data Breach Today

The latest edition of the ISMG Security Report features an analysis of how a cryptocurrency exchange bug has revealed North Korean monero laundering. Also featured are cyber insurance trends and cybercrime innovation.

Insurance 144
article thumbnail

Dentons Privacy Community: Data transfers from Asia – key takeaways

Privacy and Cybersecurity Law

Dentons Privacy Community met on September 15, 2021 to discuss how to approach international data transfers in Asia, in particular Singapore, Korea, Hong Kong and China. The session explored the evolving regulatory landscape, the key rules and transfer solutions, and recent legislative developments. Below are the key takeaways. Singapore. In addition to transfer solutions that will be familiar to privacy professionals in Europe, such as contracts and binding corporate rules, data exporters in Si

Privacy 98
article thumbnail

7 Pitfalls for Apache Cassandra in Production

Apache Cassandra is an open-source distributed database that boasts an architecture that delivers high scalability, near 100% availability, and powerful read-and-write performance required for many data-heavy use cases. However, many developers and administrators who are new to this NoSQL database often encounter several challenges that can impact its performance.

article thumbnail

Transition Period for Old Standard Contractual Clauses Ends

Hunton Privacy

On September 27, 2021, the transition period allowing companies to continue using the old EU Standard Contractual Clauses (“SCCs”) for new transfers from the EU to a third country ended. Companies entering into new transfer agreements incorporating the SCCs must now use those published by the European Commission on June 4, 2021 (the “new SCCs”). Transfers from the UK that rely on SCCs must continue to use the old SCCs.

GDPR 98
article thumbnail

Leverage Claris integration with Jamf

Jamf

Claris recently announced the general availability of their new purpose-built app created by iSolutions, to address the device, data and document retention requirements mandated by the Federal Communications Commission ECF (Emergency Connectivity Fund) Program.

article thumbnail

Two ransomware operators were arrested in Kyiv with EUROPOL’s support

Security Affairs

Two ransomware operators arrested in Kyiv, Ukraine, that are suspected to have attacked more than 100 companies causing more than $150M in damages. A joint international law enforcement operation led to the arrest of the ransomware operators in Kyiv, Ukraine on September 28. The operation was conducted by the Ukrainian National Police, with the support of Europol, the FBI, Interpol, and French Gendarmerie. “On 28 September, a coordinated strike between the French National Gendarmerie (Gend

article thumbnail

Encrypted & Fileless Malware Sees Big Growth

Threatpost

An analysis of second-quarter malware trends shows that threats are becoming stealthier.

article thumbnail

Reimagined: Building Products with Generative AI

“Reimagined: Building Products with Generative AI” is an extensive guide for integrating generative AI into product strategy and careers featuring over 150 real-world examples, 30 case studies, and 20+ frameworks, and endorsed by over 20 leading AI and product executives, inventors, entrepreneurs, and researchers.

article thumbnail

Pottawatomie County paid the ransom to recover its systems

Security Affairs

Pottawatomie County restored operations that were suspended after a ransomware attack hit its systems on September 17, 2021. Officials at Pottawatomie County announced to have fully recovered their IT infrastructure that was hit by a ransomware attack on September 17, 2021. County Administrator Chad Kinsley announced that the county opted to pay the ransomware, they revealed that they have paid less than 10% of the ransomware initially demanded by the ransomware operators.

IT 91
article thumbnail

Transnational Fraud Ring Bilks U.S. Military Service Members Out of Millions

Threatpost

A former medical records tech stole PII that was then used to fraudulently claim DoD and VA benefits, particularly targeting disabled veterans.

article thumbnail

New APT ChamelGang Targets energy and aviation companies in Russia

Security Affairs

ChamelGang APT is a new cyberespionage group that focuses on fuel and energy organizations and aviation industry in Russia. ChamelGang is a new APT group that was first spotted in March by researchers at security firm Positive Technologies, it targets Russian companies in the energy and aviation industry. In March, the cyberespionage group was observed leveraging ProxyShell against targets in 10 countries and used a variety of malware in its campaign.

article thumbnail

JNUC 2021 is just around the corner

Jamf

October is here. You know what that means. It's almost time for JNUC! From the JNUC Junction to braindates and more find out what JNUC 2021 has in store.

IT 86
article thumbnail

How to Migrate From DataStax Enterprise to Instaclustr Managed Apache Cassandra

If you’re considering migrating from DataStax Enterprise (DSE) to open source Apache Cassandra®, our comprehensive guide is tailored for architects, engineers, and IT directors. Whether you’re motivated by cost savings, avoiding vendor lock-in, or embracing the vibrant open-source community, Apache Cassandra offers robust value. Transition seamlessly to Instaclustr Managed Cassandra with our expert insights, ensuring zero downtime during migration.

article thumbnail

Name That Edge Toon: Mobile Monoliths

Dark Reading

Feeling creative? Come up with a clever caption, and our panel of experts will reward the winner with a $25 Amazon gift card.

96
article thumbnail

Rocket’s Updated Documentation Portal Provides Modernized Experience for Streamlined Searches

Rocket Software

At Rocket, we know our customers are busy working to meet – and exceed – their organization’s IT goals to drive results. When it comes to troubleshooting or learning more about their Rocket solutions, they need to be able to easily search and access the information relevant to their products and interests. These searches need to be specific and instantaneous so that users can conveniently find the content they need, without digging through extraneous files.

Access 75
article thumbnail

Why Facebook, Instagram, and WhatsApp All Went Down Today

WIRED Threat Level

The problem relates to something called BGP routing, and it took down every part of Facebook's business.

IT 98
article thumbnail

Windows 11 Available: What Security Pros Should Know

Dark Reading

Microsoft discusses the security requirements and changes coming to the newest version of its Windows operating system.

article thumbnail

Entity Resolution Checklist: What to Consider When Evaluating Options

Are you trying to decide which entity resolution capabilities you need? It can be confusing to determine which features are most important for your project. And sometimes key features are overlooked. Get the Entity Resolution Evaluation Checklist to make sure you’ve thought of everything to make your project a success! The list was created by Senzing’s team of leading entity resolution experts, based on their real-world experience.

article thumbnail

Facebook Outage Drags Down Instagram, WhatsApp, Messenger, Oculus VR

Threatpost

They were all flat on their faces for hours on Monday, throwing off DNS error messages or other server-related errors.

article thumbnail

New Atom Silo Ransomware Group Targets Confluence Servers

Dark Reading

An attack that took place over two days used a recently disclosed vulnerability in Atlassian's Confluence collaboration software.

article thumbnail

Irish DPC WhatsApp decision: What do you need to know? from the IAPP

IG Guru

Check out the article here. The post Irish DPC WhatsApp decision: What do you need to know? from the IAPP appeared first on IG GURU.