News
IT risk management
-
May 21, 2018
21
May'18
Pen testers find weaknesses in banks’ cyber security
Humans are the biggest weakness in banks’ cyber defences, but there are several others that also need attention, penetration testers have revealed
-
May 21, 2018
21
May'18
APAC organisations could lose $1.75tn from cyber attacks
A study by Frost and Sullivan has found that losses from cyber security incidents could account for 7% of the region’s GDP in 2017
-
May 18, 2018
18
May'18
NCSC calls for greater interaction with UK business
The UK’s cyber security agency has called for greater interaction with business, particularly when it comes to cyber security incidents
-
May 18, 2018
18
May'18
BYOD in UK SMEs linked to security incidents
Bring your own device practices have been identified as a cyber security risk for six in 10 SMEs in research published a week ahead of the GDPR compliance deadline
-
May 18, 2018
18
May'18
GDS seeks advice on migration from Public Services Network
The Government Digital Service has started the process of moving public sector organisations away from the Public Services Network
-
May 17, 2018
17
May'18
Report highlights security risk of open source code to business
Increased adoption of open source code is introducing vulnerabilities into commercial software, with many audited codebases containing the Apache Struts flaw that enabled the Equifax breach, a report shows
-
May 17, 2018
17
May'18
European cyber attacks up nearly a third in first quarter 2018
The volume of cyber attacks hitting digital transactions in Europe was up by almost a third in the first quarter of 2018 compared with same period a year ago, a report reveals
-
May 16, 2018
16
May'18
US considers UK-style cyber defence model
The US is considering adopting a similar cyber defence model to the UK’s in recognition of the growing threat to all levels of society
-
May 15, 2018
15
May'18
SMEs more worried about GDPR’s threat to reputation than fines
SMEs are more worried about the damage GDPR non compliance will do to their reputations than their wallets
-
May 15, 2018
15
May'18
Credential theft a top priority, Rapid 7 report shows
Credential theft is still a top priority for organisations to address in terms of making it more difficult for cyber attackers to gain unauthorised access to their networks, report reveals
-
May 15, 2018
15
May'18
Cross-site scripting a top vulnerability, hackers find
Despite the much-publicised advances in cyber attack techniques, a well-known, well-documented and avoidable vulnerability is still the most popular for attackers to exploit – along with others like it that are often overlooked, white hat hackers ...
-
May 15, 2018
15
May'18
Cage director Rabbani heads for Supreme Court after appeals court rules password demands lawful
Muhammad Rabbani, director of campaigning group Cage, will appeal to the Supreme Court after Court of Appeal rules that police did not act unlawfully by demanding his computer and mobile phone passwords under Section 7 of the Terrorism Act
-
May 15, 2018
15
May'18
Enterprise cyber threat remediation ineffective, study shows
Enterprise cyber threat remediation needs to improve in several key areas, according to an analysis of common remediation strategies
-
May 15, 2018
15
May'18
BSI launches kitemark for internet of things devices
The British Standards Institution has launched a new kitemark for IoT devices, designed to improve consumer trust in the technology
-
May 15, 2018
15
May'18
No need to panic about Efail attacks
Initial reports about vulnerabilities in email encryption technologies have urged organisations to disable encryption tools, but some security experts are taking a more balanced approach
-
May 14, 2018
14
May'18
Technology continues to transform crime, warns NCA
The UK’s National Crime Agency warns that developments in technology will continue to transform the future crime landscape, in its latest report on serious and organised crime
-
May 14, 2018
14
May'18
IoT and personal devices pose huge security risk to enterprises
After years of speculation about the risk IoT and personal devices pose to enterprise security, research has revealed the threat is “immense” and probably greater than most firms realise
-
May 11, 2018
11
May'18
Police Scotland did not inform public of mobile phone searches
Members of the Scottish Parliament heard that Police Scotland did not conduct impact assessments or give explanations to the public when they were accessing private data on their mobile phones
-
May 11, 2018
11
May'18
WannaCry’s EternalBlue exploit still a threat
A year after the global WannaCry attacks, the EternalBlue exploit that was a key enabler for the malware is still a threat to many organisations, and many UK firms have not taken action, security researchers warn
-
May 09, 2018
09
May'18
CNI providers face hefty fines for cyber security failings
UK providers of critical national infrastructure face hefty fines for cyber security failings from 10 May 2018
-
May 09, 2018
09
May'18
Equifax breach lessons not learned
Businesses are still downloading vulnerable versions of the software that was at the heart of the Equifax data breach and failing to update to safe versions, a security firm has revealed
-
May 09, 2018
09
May'18
Dutch Tax Authority not fully GDPR-compliant as deadline approaches
The Netherlands’ Department of Finance warns that not all aspects of the EU privacy law will be implemented by the 25 May deadline
-
May 09, 2018
09
May'18
Breach disclosure time still high, report shows
Companies are getting faster at disclosing breaches, but the average is still too high in the light of the GDPR and other breach disclosure regulations, a report shows
-
May 08, 2018
08
May'18
Nigerian cyber attackers up their game
Nigerian cyber attackers have modernised their approach to cyber crime, security researchers warn
-
May 08, 2018
08
May'18
Financial sector cyber-related laws are a bellwether, says Deloitte
As the regulatory landscape becomes more complex, organisations should look to the financial sector to see what else is coming, as well as focus on three key areas of GDPR compliance, according to Deloitte
-
May 03, 2018
03
May'18
City Police use Lego simulation to teach businesses cyber security
City of London Police are offering to train business leaders and IT security in cyber security using a Lego simulation that is surprisingly close to real life
-
May 02, 2018
02
May'18
Fresh blow for Facebook as court refuses stay in Max Schrems legal action
Facebook has lost a legal attempt to delay the Irish High Court from seeking answers from the European Court of Justice over the legality of EU-US data transfers
-
May 02, 2018
02
May'18
Critical infrastructure firms urged to patch Schneider Electric flaws
Critical infrastructure suppliers and manufacturing firms are being urged to ensure that their systems are patched up to date, after researchers discover Schneider Electric remote code execution vulnerability
-
May 02, 2018
02
May'18
Ransomware still a threat to business, F-Secure warns
Ransomware attacks tapered off towards the end of 2017 after an explosion in such attacks earlier in the year, but ransomware remains a threat to big business, a report reveals
-
May 01, 2018
01
May'18
Google Chrome helps clean up certificate authority industry
The security industry has welcomed the introduction of measures by the Google Chrome browser aimed at achieving certificate transparency
-
May 01, 2018
01
May'18
Password practices still poor despite increased threats
Despite growing cyber threats and heightened global awareness of hacking and data breaches, password behaviours remain poor and UK users are in denial, a study has revealed
-
May 01, 2018
01
May'18
Microsoft’s latest Windows 10 focuses on IT admins
While it will stop those annoying taskbar InBox and social media messages, at the heart of the April 2018 Windows 10 update is an effort to simplify management
-
May 01, 2018
01
May'18
UK critical services need to up cyber defences to avoid fines
UK critical infrastructure providers could be liable for fines of millions of pounds if they do not improve their cyber defences and resilience of their IT infrastructure, a study reveals
-
April 30, 2018
30
Apr'18
Security industry welcomes NHS move to Windows 10
Representatives of the security industry have welcomed the announcement that the NHS will be migrating to Windows 10 as part of a multi-million pound deal with Microsoft, but warn that the move will not be without its challenges
-
April 27, 2018
27
Apr'18
Microsoft releases Windows 10 security pack
Microsoft has released a download pack that incorporates NCSC guidance to save UK companies weeks of work to secure Windows 10 and comply with government guidelines
-
April 27, 2018
27
Apr'18
Government given six months to rewrite snoopers’ charter
The government has until 1 November 2018 to rewrite a key section of the Investigatory Powers Act 2016, after the high court declared them unlawful in a judicial review brought by human rights group Liberty
-
April 27, 2018
27
Apr'18
GDPR: Put your data in Azure cloud, says Microsoft chief
Tech giant reports strong growth in its cloud business in third-quarter 2018 fiscal results
-
April 26, 2018
26
Apr'18
British banks target Israeli security technology
British banks are turning to Israel’s high-tech sector to protect against cyber attacks
-
April 26, 2018
26
Apr'18
Finnish R&D and utilities in line of cyber espionage fire, say security police
Finnish research and development, as well as critical infrastructure, are being targeted by state-backed cyber espionage attacks, says report
-
April 26, 2018
26
Apr'18
NCSC shows support for common standards for secure communication
The UK cyber security authority is supporting an industry drive towards common standards for secure communication by joining an industry organisation that aims to achieve this goal
-
April 26, 2018
26
Apr'18
Digital economy research projects to get funding
Research projects aimed at building trust, privacy and security in the use of personal data and digital technologies are to receive funding
-
April 25, 2018
25
Apr'18
Google claims it is GDPR ready
Alphabet, the parent company of Google, says that since its advertising business relies on keyword searches, the impact of GDPR is limited
-
April 25, 2018
25
Apr'18
Government urges UK businesses to beef up cyber crime defences
Government is urging UK organisations to defend against cyber crime, as newly released figures show that large numbers of businesses and charities suffered at least one cyber attack in the past year
-
April 25, 2018
25
Apr'18
Stoke-on-Trent websites found to be most leaky ahead of GDPR
The majority of websites in the UK could be prone to cyber attacks, a security scan across 135,035 sites has revealed
-
April 25, 2018
25
Apr'18
Cyber fraud costs SMEs more than £1,000 per case
Just over half of IT and telecoms SMEs are targeted by fraudsters, with each case of cyber fraud costing more than £1,000, study reveals
-
April 25, 2018
25
Apr'18
One month to GDPR compliance deadline
With one month to go before the deadline for compliance with EU’s General Data Protection Regulation, organisations should ensure they are able to meet minimum requirements to defend against adverse scrutiny
-
April 24, 2018
24
Apr'18
Ransomware attack hit Ukraine energy ministry website
Cyber attack on Ukraine’s energy ministry shows that websites remain a weak point for many organisations online, say security experts
-
April 24, 2018
24
Apr'18
Orangeworm cyber attack group targets health sector
A cyber crime group is targeting the health sector and related industries in the US, Europe and Asia in a suspected corporate espionage campaign, researchers warn
-
April 23, 2018
23
Apr'18
Nearly half of UK manufacturers hit by cyber attacks
Nearly half of UK manufacturers have been hit by a cyber security incident, according to a report by an industry organisation, which calls for greater government focus on the specific security needs of the sector
-
April 23, 2018
23
Apr'18
Next generation of SCADA industrial controls will protect against cyber attack
Oil, energy and chemical companies are rethinking how to control big manufacturing plants, replacing expensive control technology with cheaper, more secure systems, taking their cue from biology