Training makes critical infrastructure employees better at spotting phishing attacks


New research from security behavior change specialist Hoxhunt shows that 66 percent of active participants in security behavior training programs at critical infrastructure organizations detect and report at least one real malicious email attack within a year.
The report -- based on analysis of over 15 million phishing simulations and real email attacks reported in 2022 by 1.6 million people participating in security behavior change programs -- shows the effectiveness of training in making staff more engaged in organizational security.
71 percent of organizations may have been breached and not know it


A new survey of over 2,000 IT security analysts finds that 71 percent admit their organization may have been compromised and they don't know about it yet.
The study, from Vectra AI, details how analysts are being overwhelmed, as they receive 4,484 alerts on average per day, but can't cope with 67 percent of them. This leads 97 percent to worry that they'll miss important security events.
Data bias -- the hidden risk of AI and how to address it [Q&A]


Artificial intelligence is generally only as good as the data that it's trained on. However, when data is collected and used in the training of machine learning models, the models inherit the bias of the people building them, producing unexpected and potentially harmful outcomes.
We spoke to Matthieu Jonglez, VP, technology at Progress, to discuss the company's recent research around this topic and what organizations can do to reduce bias.
New Azure offerings help speed cloud migration


The cloud offers many benefits including scalability, cost savings, and flexibility, but the migration process isn't always an easy one.
Today at Microsoft Inspire the company is launching two new offerings aimed at making it easier for enterprises to migrate to Azure.
Microsoft introduces process mining to help drive business insights


Among today's announcements coming out of Microsoft Inspire is news that Power Automate Process Mining will become generally available to all channels on August 1st.
Using AI it will enable organizations to easily understand what is happening across their business, maximize process insights, use out-of-box recommendations to reduce the complexity of processes, transform operations, and drive continuous process improvement with automation and lowcode apps.
Don't walk the walk when creating passwords


When you're creating a new password in a hurry it's tempting to choose keys that are adjacent to each other on the keyboard. In security circles this is known as a 'walk pattern'.
Of course this is horribly insecure but it's also worryingly common. New research from Specops has analyzed an 800 million password subset of its larger Breached Password Protection database to find the top keyboard walk patterns in compromised password data.
60 percent of consumers prefer a fintech app to an accountant


Fintech apps have simplified financial management to the point where 60 percent of people will now seek advice from personal finance tools before reaching out to financial professionals.
A new survey from Capterra makes gloomy reading for accountants as it finds 64 percent of fintech users feel that these tools have significantly reduced their reliance on financial advisors.
Businesses struggle to make decisions due to 'analysis paralysis'


In difficult economic times businesses need to make decisions quickly and data is a key part of enabling those choices.
But research from analytics cloud platform Alteryx shows enterprises are struggling to make timely, insight-driven decisions because of 'analysis paralysis' caused by issues around ownership of and access to data.
Why SOCs need urgent modernization [Q&A]


Security Operations Centers (SOCs) aim to detect, investigate, remediate, and restore organizational systems to a fully functional, secure state, whether it's defending against insider threats, data exfiltration attempts, or malware attacks.
However, examining the daily issues faced by many SOCs reveals a concerning array of challenges that place increasing pressure on the work of SOCs and the dedicated professionals who manage them.
Gaps in digital rights management pose serious risk


Serious gaps in digital rights management could expose private and public sector organizations to security and compliance risks.
A new 'Sensitive Content Communications Privacy and Compliance' report from Kiteworks finds many organizations lack unified tracking, control, and security of private data that is sent, shared, and transferred with third parties, which creates significant risk of unauthorized access, both malicious and accidental.
Why hybrid working needs better consolidation of IT [Q&A]


As the pandemic forced many businesses to adopt remote work, IT departments had to quickly adapt to new infrastructures and tools to support their employees from a distance.
But as hybrid working starts to become permanent businesses are reviewing their tech investments and seeking to provide a better remote user experience.
More than half of enterprises overwhelmed by data


Today's typical large organization is holding 35 petabytes of data across its systems and this is expected to double by 2025. But 75 percent of IT leaders are concerned that their current infrastructure won't be able to scale to meet this demand.
A new report, from infrastructure specialist Hitachi Vantara, shows that while technologies like generative AI are spurring a goldrush to greater insights, automation, and predictability, they are simultaneously putting pressure on the already-strained infrastructure and hybrid cloud environments on which they run.
Facebook and Microsoft are the most popular phishing bait


A new report reveals the most impersonated brands in phishing attacks for the first half of 2023, with Facebook taking the top slot, followed by Microsoft.
The report from email security company Vade, shows Facebook accounted for 18 percent of all phishing URLs and Microsoft for 15 percent. Taken together these two accounted for more unique phishing URLs than the next top five brands combined (Crédit Agricole, SoftBank, Orange, PayPal and Apple).
Security teams continue to hire despite economic uncertainty


The cyber talent shortage is a greater concern for CISOs than ongoing economic uncertainty, according to the latest Information Security Maturity Report from ClubCISO and Telstra Purple.
Insufficient staff is named as the top (51 percent) concern for CISOs when asked which factors most affect their ability to deliver against their objectives.
Economic uncertainty drives digital transformation efforts


Enterprises plan to invest $33 million in digital transformation projects in the next 12 months, according to a survey of 600 senior IT decision makers.
But the research, from database platform Couchbase, also finds a shift in priorities. 78 percent of IT decision makers confirm their main priorities for transformation have changed in the last three years, and 54 percent say their digital transformation focus has become more reactive to market changes and customer preferences, in order to help the wider organization stay agile.
Ian's Bio
Ian spent almost 20 years working with computers before he discovered that writing about them was easier than fixing them. Since then he's written for a number of computer magazines and is a former editor of PC Utilities. Follow him on Mastodon
© 1998-2025 BetaNews, Inc. All Rights Reserved. Privacy Policy - Cookie Policy.