Security News Update for the Week Ending April 3, 2022

This week’s security news includes: Kaspersky deemed national security threat Administrator at Yale admitted to stealing tens of millions of dollars – insider threat on steroids Opt-out from major credit bureaus selling your data Hacked WordPress sites make visitors DDoS Ukrainian targets SonicWall releases critical patch for some of its firewalls Gitlab patches critical account…

Security News Update for the Week Ending March 27, 2022

This week’s security news includes: Country that bombs children (Russia) pleads for cyber treaty at UN President warns businesses to prepare for Russian cyberattacks Cisco Thousand Eyes Internet status dashboard HP reports vulnerabilities in 250 printer models Mesa County, Colorado Clerk and Deputy indicted on multiple felony counts related to election security Big Russian meat…

Security News Update for the Week Ending March 20, 2022

This week’s security news includes: NSA is investigating whether Russia was responsible for Viasat hack Clearview AI doing something useful for a change BitConnect founder indicted in $2.4 billion crypto Ponzi scheme Russia-Ukraine war makes semiconductor problem worse NSA and CISA release Kubernetes hardening guide DoJ makes good on threat to prosecute using False Claims…

Security News Update for the Week Ending March 6, 2022

This week’s news items include: Russian hacking group hacked by Ukraine NSA Technical Report on Network Infrastructure Security CISA releases another 95 patches to install now Russia prepares to disconnect from the Internet Amex suspends operations in Russia and Belarus Samsung is suspending shipments into Russia Layering network security through segmentation Toyota shuts down 14…

Security News Update for the Week Ending February 27, 2022

This week’s news items includes: Sextortion is on the Rise Again FBI Guide on Lessening Digital Exhaust Watchguard Issues Patch for Cyclops Blink Vulnerability FCC Proposes Largest Ever Fine for Robocalling – $45 Million Does Your Identity Theft Protection Policy Cover Theft of Cryptocurrency Assets? Getting Your SOC 2 as a SaaS Company 7 Steps…

Security News for the Week Ending February 20, 2022

This week’s news items include: Beware when Superbowl ads use QR codes While India bans Chinese apps due to security, the U.S. … Hackers planted fake digital evidence on devices belonging to activists CISA releases list of free cybersecurity tools and services Google Chrome enhanced safe browsing mode Google issues emergency Chrome patch for active…

CMMC 2.1

I don’t think this is what DoD is calling it, but in a public town hall meeting last week they changed the rules again. Defense contractors are just going to have to wait and see how this turns out. In the mean time, there is a very clear path that contractors need to take, so…