When Colonial Pipeline was hit by a ransomware attack in early May 2021, there could not have been a clearer sign that utilities are still acutely...
ISO 20000 defines the objective of incident management (part 1, 8.2) as: To restore agreed service to the business as soon as possible or to respond...
Members of the House of Representatives recently voted to pass the Department of Homeland Security (DHS) Software Supply Chain Risk Management Act of 2021 (H.R. 4611),...
Deputy Attorney General Lisa Monaco also promised to compensate whistleblowers who reveal federal contractors misrepresenting their cybersecurity posture. Companies could shield themselves from legal challenges in...
A new interim rule takes aim at Russia and China. U.S. companies will need to obtain a license from the Commerce Department to sell certain kinds...
Every organization doing business with the government will have to name a real person as account administrator and go through a three-point ID proofing process. The...
Patching is a fact of life for IT administrators. And, although it is essential to maintain security, keeping up with vendors’ patch release cycles is a...
An ongoing malware distribution campaign targeting South Korea is disguising RATs (remote access trojans) as an adult game shared via webhards and torrents. The attackers are...
The Dutch Police have arrested nine people for targeting and stealing money from the elderly by impersonating bank employees. The group of bank help desk fraudsters,...
Two Eastern European men were sentenced to prison on Racketeer Influenced Corrupt Organization (RICO) charges for bulletproof hosting services used by multiple cybercrime operations to target...