[From the desk of Paul Davis – his opinions and no-one else’s]
Middle of the week, a quiet news day but make sure you’re ready for the OpenSSL patching activities that will need to be launched today.
So onto the news:
Case study: When a hacker destroys your business
Former Distribute.IT co-founder Carl Woerndle shares his experience of the cyber attack that destroyed this business. It’s been almost four years since business owners Carl Woerndle and his brother Alex were caught up in a cyber attack so damaging it destroyed their once prospering technology business, Distribute.IT.
Carl Woerndle has given a warts and all account of how he and other staff at his former company dealt with the crisis and the fallout of the malicious hack in a new cyber security guide, in conjunction with the CIO Executive Council.
Link: http://paulgdavis.us3.list-manage.com/track/click?u=45bf3caf699abf9904ddc00e3&id=38f3519e4c&e=20056c7556
Regulators seek more authority in data breach bill
Federal regulators told lawmakers March 18 they want to see tougher provisions on rulemaking authority and protection of personal information added to data breach notification legislation before it becomes law.
The bill, which was recently released as a discussion draft, would set a national standard for companies to report data breach notifications within 30 days of the discovery of a hack, if there is a risk of financial harm or fraud to consumers. The draft defines personal information as Social Security numbers, as well as account credentials stored by covered commercial companies. The bill would preempt the patchwork of 47 state laws covering data breach notification, but would not intrude on the areas of health care and financial institution data covered by existing law.
Link: http://paulgdavis.us3.list-manage.com/track/click?u=45bf3caf699abf9904ddc00e3&id=617584ef3e&e=20056c7556
The days of mass attacks are over; now it’s all about big data
Security execs at CeBit spoke about how the threat landscape has changed and warned against the temptation to hack back. “It’s a big data game these days, it’s not about mass attacks,” said Vincent Steckler, CEO of Avast, describing how hacking has changed in the past few years. “Consumers are no longer targeted on a mass scale,” Steckler said.
Instead, hackers identify what they’re after at a company–typically corporate secrets or other data–and they go for it, said Natalya Kaspersky, CEO of InfoWatch and the co-founder and former CEO of Kaspersky Lab.
Link: http://paulgdavis.us3.list-manage1.com/track/click?u=45bf3caf699abf9904ddc00e3&id=97524a837c&e=20056c7556
APPLE PATCHES WEBKIT VULNERABILITIES IN SAFARI
Apple on Tuesday pushed out new versions of its Safari browser that address 17 security vulnerabilities in the WebKit engine.
“A user interface inconsistency existed in Safari that allowed an attacker to misrepresent the URL,” Apple said. “This issue was addressed through improved user interface consistency checks.”
Link: http://paulgdavis.us3.list-manage.com/track/click?u=45bf3caf699abf9904ddc00e3&id=234378e8f4&e=20056c7556
============================================================
Feedback, questions? Our mailing address is: ** dailynews@paulgdavis.com (mailto:dailynews@paulgdavis.com)
If someone forwarded this email to you and you want to be added in,
please click this: ** Subscribe to this list (http://paulgdavis.us3.list-manage.com/subscribe?u=45bf3caf699abf9904ddc00e3&id=e09452545a)
** Unsubscribe from this list (http://paulgdavis.us3.list-manage1.com/unsubscribe?u=45bf3caf699abf9904ddc00e3&id=e09452545a&e=20056c7556&c=d730c9f3c1)
** Update subscription preferences (http://paulgdavis.us3.list-manage2.com/profile?u=45bf3caf699abf9904ddc00e3&id=e09452545a&e=20056c7556)