New solution helps enterprises understand application relationships and risk
Modern businesses rely on a variety of applications, but failing to understand the relationships between them can lead to increased risks.
To address this vArmour is launching a new version of its Application Controller solution, enabling enterprises to take control of operational risk by discovering and understanding application relationships across their IT environment and help maximize the value of their existing investments.
Fake content drives online fraud
Based on a study of 34,000 sites and apps, as well as a survey of over 1,000 consumers conducted in June 2020, new research details how content abuse is a critical part of the fraud supply chain, the interconnected ecosystem of fraud.
The research, carried out by digital trust and safety firm Sift, also uncovered a fraud ring based in Russia where fraudsters executed a card-testing scheme through fake listings on an e-commerce marketplace.
Security not keeping pace with moving to BYOD
With a shift to remote working many more businesses are embracing BYOD, but a new report from Bitglass suggests that security arrangements are failing to keep pace.
In the study, 69 percent of respondents say that employees at their companies are allowed to use personal devices to perform their work, while 26 percent also enable BYOD for contractors, 21 percent for partners, and some even for customers, and suppliers.
Over 15 billion sets of credentials in circulation on criminal marketplaces
New research from risk prevention specialist Digital Shadows finds there are more than 15 billion sets of usernames and passwords in circulation in cybercriminal marketplaces -- the equivalent of more than two for every person on the planet.
The number of stolen and exposed credentials has risen 300 percent from 2018 as the result of more than 100,000 separate breaches. Of these, more than 5 billion were assessed as 'unique' -- that is not advertised more than once on criminal forums.
MobileIron launches phishing protection for enterprise mobile devices
Credential theft via social engineering is a major cause of data breaches, but with a more dispersed workforce it becomes harder to guard against.
Security platform MobileIron is launching a new multi-vector mobile phishing protection solution for iOS and Android devices to help organizations defend themselves.
How pre-installed adware can cause trouble for mobile users
New analysis carried out by Kaspersky of attacks on mobile devices has revealed that 14.8 percent of its users who were targeted by malware or adware in 2019 suffered a system partition infection, making the malicious files undeletable.
It also finds that pre-installed default applications have role to play, depending on the brand, the risk of applications that can't be deleted varies from one to five percent in low-cost devices and goes up to 27 percent in extreme cases.
Samsung and IBM lead the AI patent race as European companies lag behind
New research into global patent registrations and information on the economic value of patents in the AI sector reveals that Samsung, IBM and Tencent dominate with the highest number of patents filed.
But the study from specialist in the law and economics of IP, OxFirst, also shows fierce competition between the US and China which overshadows other countries, including those in Europe.
Remote working boosts move to cloud-based security
New research from security management platform Exabeam reveals that 88 percent of UK security practitioners have accelerated their move to the cloud, driven by the need to support a remote workforce.
Significantly, almost half of respondents (44 percent) are now using cloud-based security products to protect their corporate financial information. This is a sharp increase compared to Exabeam's earlier study where just 12 percent were protecting corporate financial information in this way.
DDoS attacks jump over 540 percent during lockdown
In the first quarter of this year, DDoS attacks rose more than 278 percent compared to Q1 2019 and more than 542 percent compared to the previous quarter.
This is among the findings of the Nexusguard Q1 2020 Threat Report. Researchers attribute the sharp rise in incidents to malicious efforts during the COVID-19 pandemic, causing DDoS attacks to interrupt service for large companies and individuals alike.
How machine learning is changing digital marketing [Q&A]
Increasingly customers expect personalized experiences that are relevant to their unique situations and needs. However, with the increased reliance on technology needed to provide this, the human angle can go by the board.
We spoke to Jon Perera, CMO at sales and marketing software specialist Highspot to learn more about how people, processes and technology can be aligned to offer optimum customer experience.
Lockdown highlights UK broadband problems
While many people are happily working from home during the pandemic, for others a switch to remote working has thrown the deficiencies of their home internet connections into perspective.
UK comparison site Uswitch has found that people have been performing 44,000 searches per month in the hope of fixing their broadband issues. The top 10 searches are all related to technical issues and two thirds (62 percent) of all searches are related to speed.
TLS certificates are a top security concern for businesses
A new study by machine identity protection specialists Venafi of the opinions of 550 chief information officers (CIOs) from the US, UK, France, Germany and Australia finds that 75 percent name TLS certificates as their top concern.
TLS certificates act as machine identities, safeguarding the flow of sensitive data to trusted machines and, thanks to the acceleration of digital transformation, the number of machine identities is rising.
96 percent of developers believe security harms productivity
In a new survey of over 165 developers, AppSec and DevOps professionals, application security automation company ShiftLeft finds that 96 percent of developers believe the disconnect between developer and security workflows inhibits developer productivity.
When asked to prioritize, application security professionals rank creating developer-friendly security workflows as their top priority, even higher than protecting applications in production environments.
Calendar invites used to hide phishing links
The Cofense Phishing Defense Center (PDC) has unearthed a new phishing campaign in multiple enterprise email environments protected by Proofpoint and Microsoft that delivers .ics calendar invite attachments containing phishing links in the body.
The researchers assume that the attackers believe putting the URL inside a calendar invite would help the messages to avoid automated analysis.
1Password launches tool to guard against credential stuffing
Reuse of the same or similar passwords across accounts makes life easier for cybercriminals as they are able to try multiple servers using credentials exposed in breaches -- so called 'credential stuffing'.
Enterprise password manager 1Password is launching a new reporting tool for its users that allows them to swiftly identify compromised accounts and take action to protect the enterprise by alerting users to create new secure passwords.
Ian's Bio
Ian spent almost 20 years working with computers before he discovered that writing about them was easier than fixing them. Since then he's written for a number of computer magazines and is a former editor of PC Utilities. Follow him on Mastodon
© 1998-2026 BetaNews, Inc. All Rights Reserved. Privacy Policy - Cookie Policy.