Sat.Apr 07, 2018 - Fri.Apr 13, 2018

article thumbnail

Facebook's Zuckerberg Pledges Worldwide GDPR Compliance

Data Breach Today

Second Congressional Hearing Probes Privacy Issues At a U.S. House hearing Wednesday, Facebook CEO Mark Zuckerberg said the company would eventually comply worldwide with the European Union's tough privacy law, the General Data Protection Regulation.

article thumbnail

How to check whether Facebook shared your data with Cambridge Analytica

The Guardian Data Protection

People who fear their information may have been used by Cambridge Analytica can go to a new help page Tell us how you’ve been affected by the Facebook data breach Facebook has started the process of notifying the approximately 87 million users whose data was harvested by the election consultancy Cambridge Analytica. The social network eventually hopes to inform every user who was affected with a warning at the top of their Facebook news feed.

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

Cambridge Analytica Could Also Access Private Facebook Messages

WIRED Threat Level

A Facebook permission allowed an app to read messages between 1,500 Facebook users and their friends until October 2015—data that Cambridge Analytica could have accessed.

Access 111
article thumbnail

Identifying the Root Causes to the Delays and Exceptions In Your Processes

AIIM

When you’re working to document your processes, an initial goal is to map the workflow of the typical, standard task, getting the most common branches outlined. This will comprise of the steps you know well, the steps that already run fairly smoothly. Yes, this will not cover every scenario, but that’s ok at this stage. An interpretation of Pareto’s Principle , otherwise known as The 80/20 Rule is that 80% of the completed work will come from 20% of the scenarios.

article thumbnail

Peak Performance: Continuous Testing & Evaluation of LLM-Based Applications

Speaker: Aarushi Kansal, AI Leader & Author and Tony Karrer, Founder & CTO at Aggregage

Software leaders who are building applications based on Large Language Models (LLMs) often find it a challenge to achieve reliability. It’s no surprise given the non-deterministic nature of LLMs. To effectively create reliable LLM-based (often with RAG) applications, extensive testing and evaluation processes are crucial. This often ends up involving meticulous adjustments to prompts.

article thumbnail

200,000 Cisco Network Switches Reportedly Hacked

Data Breach Today

What Remediation Steps Should Be Taken? Over 200,000 Cisco networks switches worldwide reportedly were hacked Friday, apparently affecting critical infrastructure of large internet service providers and data centers across the world, especially in Iran, Russia, the United States, China, Europe and India. What remediation steps should be taken?

189
189

More Trending

article thumbnail

The Questions Zuckerberg Should Have Answered About Russia

WIRED Threat Level

Russian agents used Facebook to influence the 2017 election. Congress missed the chance to delve into what the company knows about it—and how they’ll stop it in 2018.

IT 103
article thumbnail

Why next-generation execs should care about data governance

IBM Big Data Hub

There’s a general need for next-gen executives to not only understand corporate regulations, but be able to adhere to and follow them using metadata solutions like data governance. As the business world’s top asset becomes data, data governance will ensure that data and information being handled is consistent, reliable and trustworthy. Establishing and deploying an analytics platform that embeds data governance and data integration, amongst other solutions, has never been more critical.

article thumbnail

Securing the News

Data Breach Today

Time Inc.'s Deputy CISO on the Challenge of Ensuring Content Security In this era of "fake news," Time Inc. Deputy CISO Preeti Palanisamy takes seriously the challenge of maintaining the integrity of journalism from content creation through production and eventual publication.

Security 188
article thumbnail

Reader Favorites April 2018: Our most popular RIM resources

TAB OnRecord

Our most popular resources this month cover RIM software success, records protection and recovery, and green file storage solutions. Learn about strategies to ensure your RIM software is successful, how your RIM program strategy can help your organization after a large scale disaster in a hybrid environment, and how to reduce your environmental impact through [.

article thumbnail

How and Why Should You Be Tracking Geopolitical Risk?

Geopolitical risk is now at the top of the agenda for CEOs. But tracking it can be difficult. The world is more interconnected than ever, whether in terms of economics and supply chains or technology and communication. Geopolitically, however, it is becoming increasingly fragmented – threatening the operations, financial well-being, and security of globally connected companies.

article thumbnail

How to Check If Cambridge Analytica Could Access Your Facebook Data

WIRED Threat Level

Facebook has released a tool that lets you see if you were caught up in the Cambridge Analytica fiasco—and what other apps know about you know.

Access 111
article thumbnail

Don’t just blame Facebook for taking your data – most online publishers are at it too | John Naughton

The Guardian Data Protection

Online surveillance is rife but there are plenty of tools available to help preserve your privacy If a picture is worth a thousand words, then a good metaphor must be worth a million. In an insightful blog post published on 23 March, Doc Searls, one of the elder statesman of the web, managed to get both for the price of one. His post was headed by one of those illustrations of an iceberg showing that only the tip is the visible part, while the great bulk of the object lies underwater.

IT 92
article thumbnail

HHS Warns of SamSam Ransomware Attacks

Data Breach Today

At Least Eight U.S. Organizations Hit So Far This Year The Department of Health and Human Services is warning the healthcare sector about ongoing attacks involving SamSam ransomware that have impacted at least eight U.S. organizations so far this year. What mitigation steps are recommended?

article thumbnail

Obscure E-Mail Vulnerability

Schneier on Security

This vulnerability is a result of an interaction between two different ways of handling e-mail addresses. Gmail ignores dots in addresses, so bruce.schneier@gmail.com is the same as bruceschneier@gmail.com is the same as b.r.u.c.e.schneier@gmail.com. (Note: I do not own any of those email addresses -- if they're even valid.) Netflix doesn't ignore dots, so those are all unique e-mail addresses and can each be used to register an account.

article thumbnail

7 Pitfalls for Apache Cassandra in Production

Apache Cassandra is an open-source distributed database that boasts an architecture that delivers high scalability, near 100% availability, and powerful read-and-write performance required for many data-heavy use cases. However, many developers and administrators who are new to this NoSQL database often encounter several challenges that can impact its performance.

article thumbnail

A Long-Awaited IoT Crisis Is Here, and Many Devices Aren't Ready

WIRED Threat Level

Some network communication protocol vulnerabilities have been known for more than a decade and still aren't fixed. Now they're being exploited.

IoT 110
article thumbnail

Five questions Mark Zuckerberg should be asked by Congress

The Guardian Data Protection

As embattled Facebook founder appears before Congress again, here is what should be put to him Zuckerberg made the rookie error of leaving out his notes, which an AP reporter promptly snapped. One section said: “Break up FB? US tech companies key asset for America; break up strengthens Chinese companies.” Really? That’s the best you’ve got? The senators need to drive this one home hard.

article thumbnail

Uber Faces Stricter FTC Oversight After Concealing Breach

Data Breach Today

Company Must Submit More Audit Reports, Keep Bug Bounty Records Uber has agreed to stricter monitoring by the U.S. Federal Trade Commission following its concealment of a 2016 data breach while it was negotiating with the agency for a settlement tied to a separate, yet similar, breach two years prior.

article thumbnail

Kick-start your career in information security management

IT Governance

If you’re looking to develop a career in information security, the CISMP training course is a great starting point. It provides a broad introduction to information security management upon which more technical qualifications can be built. CISMP is also suitable for business professionals looking to gain a deeper understanding of information security, and is especially valuable to those working in the public sector, as it is part of the CESG Certified Professional Scheme.

article thumbnail

Entity Resolution Checklist: What to Consider When Evaluating Options

Are you trying to decide which entity resolution capabilities you need? It can be confusing to determine which features are most important for your project. And sometimes key features are overlooked. Get the Entity Resolution Evaluation Checklist to make sure you’ve thought of everything to make your project a success! The list was created by Senzing’s team of leading entity resolution experts, based on their real-world experience.

article thumbnail

Mark Zuckerberg Makes Facebook Privacy Sound So Easy

WIRED Threat Level

[In his testimony to Congress, Facebook CEO Mark Zuckerberg repeatedly misrepresented the amount of control Facebook users really have over their data.]([link].

Privacy 94
article thumbnail

Instagram to let users download everything they have ever shared

The Guardian Data Protection

New portability tool will allow users to extract copy of own content posted on social network Instagram has confirmed it will let users download their personal data, including previously shared photos, videos and messages, as it prepares for the European data regulation GDPR. While its parent company, Facebook, had announced a suite of GDPR controls, which Mark Zuckerberg emphasised during his testimony to Congress this week, Instagram had been quiet on the issue.

GDPR 85
article thumbnail

Facebook's Zuckerberg Takes First Drubbing in D.C.

Data Breach Today

Florida Sen. Bill Nelson: 'Facebook Failed Us' Facebook CEO Mark Zuckerberg informally met with U.S. lawmakers on Monday ahead of two congressional hearings, where he is expected to face a bruising examination. One senator was blunt with Zuckerberg, contending that on data privacy "Facebook failed us.

article thumbnail

Word Attachment Delivers FormBook Malware, No Macros Required

Threatpost

A new wave of document attacks targeting inboxes do not require enabling macros in order for adversaries to trigger an infection chain that ultimately delivers FormBook malware.

78
article thumbnail

Reimagined: Building Products with Generative AI

“Reimagined: Building Products with Generative AI” is an extensive guide for integrating generative AI into product strategy and careers featuring over 150 real-world examples, 30 case studies, and 20+ frameworks, and endorsed by over 20 leading AI and product executives, inventors, entrepreneurs, and researchers.

article thumbnail

How Android Phones Hide Missed Security Updates From You

WIRED Threat Level

A study finds that Android phones aren't just slow to get patched; sometimes they lie about being patched when they're not.

Security 108
article thumbnail

Is your friend getting a cheaper Uber fare than you are? | Arwa Mahdawi

The Guardian Data Protection

We have no idea how much data tech firms have on us – but more companies are using it to personalize their prices We all know that ride-share companies like Uber and Lyft operate dynamic, or “surge”, pricing: they change their prices in real time, according to supply and demand. But is there something else behind these fluctuations in fees? Is your taxi fare actually being personalized according to how much the company thinks you are willing to pay?

IT 81
article thumbnail

The Burden of Business Email Compromise

Data Breach Today

Agari's Dan Hoffmann Outlines the Scale and Cost Business email compromise attacks that impersonate executives and business partners to trick employees are "the biggest security issue in all of technology today," says Dan Hoffmann of Agari.

Security 148
article thumbnail

Financial Crimes Enforcement Network Issues New Frequently Asked Questions on Customer Due Diligence Requirement

Data Matters

On April 3, 2018, the Financial Crimes Enforcement Network (FinCEN) issued new frequently asked questions (FAQs) regarding its customer due diligence rule (CDD Rule). The CDD Rule applies to banks, broker-dealers in securities, mutual funds, futures commission merchants and introducing brokers in commodities (collectively, covered financial institutions or CFIs).

Retail 68
article thumbnail

Strategic CX: A Deep Dive into Voice of the Customer Insights for Clarity

Speaker: Nicholas Zeisler, CX Strategist & Fractional CXO

The first step in a successful Customer Experience endeavor (or for that matter, any business proposition) is to find out what’s wrong. If you can’t identify it, you can’t fix it! 💡 That’s where the Voice of the Customer (VoC) comes in. Today, far too many brands do VoC simply because that’s what they think they’re supposed to do; that’s what all their competitors do.

article thumbnail

This Radio Hacker Could Hijack Emergency Sirens to Play Any Sound

WIRED Threat Level

Balint Seeber found that cities around the US are leaving their emergency siren radio communication systems unencrypted and vulnerable to spoofing.

article thumbnail

75% of organisations have been hit by spear phishing

IT Governance

Phishing scams are relatively mundane compared to the sophisticated attacks that you read about in the news, but it’s important to remember that sometimes the biggest threats are right at your doorstep. Or, rather, your inbox. Fortunately, two recent reports have indicated that most organisations are well aware of the threat of phishing. They are certainly helped by the frequency with which their employees are targeted, with Proofpoint’s Understanding Email Fraud Survey finding that 75% of organ

article thumbnail

The Impact of All 50 States Having Breach Notification Laws

Data Breach Today

With Alabama and South Dakota recently becoming the last two states to adopt breach notification laws, notification processes become more complicated, says privacy attorney Adam Greene, who offers an in-depth analysis.

Privacy 140