Human Risk Management Blog

IT Security

Get the most current news about the IT Security industry, what the latest threats are and what that means to security professionals.

Feb 1st Is National Change Your Password Day

What Is The Deep Web 101

Pierluigi Paganini wrote a great blog post today. The Deep Web (or Invisible Web) is all the information on the World Wide Web not reported by normal search engines. It's HUGE. According ...

A Serious Legal Liability: Bad or No Security Awareness Training

Please read this article and then forward it to the head of your legal department or the person in your organization who is responsible for compliance. Recently, the Department of Health ...

Scam Of The Week Payroll Phish

The nakedsecurity blog over at Sophos highlighted a new phishing scam that would be good to alert your employees about. The bad guys are pretending to be payroll processing company ADP. ...

Malware Metastasizes

A few days ago I wrote about a 60 million Euro cyberheist. I have been digging into this a bit more, as it's the most advanced attack yet. Cybercrime is not revolutionary, it clearly ...

Bank Settles With California Cyberheist Victim

Finally, a positive outcome in a cyberheist lawsuit. Brian Krebs reported that a Professional Business Bank settled with a Village View Escrow Inc, a California cyberheist victim. A ...

OMG - I did not know it was THIS horrible.

More from Brian Krebs's astounding blog post today. "As the chart I compiled above indicates, attackers are switching the lure or spoofed brand quite often, but popular choices include ...

Kevin Mitnick Partners With KnowBe4

Kevin Mitnick, at One Time the World's Most-Wanted Hacker, Joins Forces With Leading Internet Security Awareness Training Company KnowBe4, LLC CLEARWATER, Fla., June 18, 2012 -- Internet ...

Retelling a Password Nightmare in the Wake of the LinkedIn Password Leak

Alan Shimel tell us an enlightening and cautionary tale how his password was hijacked and how much time it took him to get it all back under control. This is a warmly recommended read ...

Why antivirus companies failed to catch Flame and Stuxnet

Arstechnica picked up the blog post of F-Secure's Chief Research Officer: A/V outfits were out of their league. Mikko Hypponen is the Chief Research Officer of F-Secure. He has been ...

Apple Releases Guide To iOS Security

Techcrunch wrote: "Apple has introduced a guide to iOS security, which was posted to Apple.com sometime in late May, but is just now being noticed outside the Apple developer community. ...

Microsoft releases 'Anti-Flame' Update

Redmond stated: "We recently became aware of a complex piece of targeted malware known as “Flame” and immediately began examining the issue. As many reports assert, Flame has been used in ...

Over-55s Pick Passwords Twice As Secure As Teenagers

"People over the age of 55 pick passwords double the strength of those chosen by people under 25 years old. That's according to the largest ever study of password security, which also ...

Malicious PowerPoint File Contains Exploit, Drops Backdoor

TrendLabs discovered a malicious MS PowerPoint document that arrives attached to email messages. The file contains an embedded Flash file, which exploits a software bug found in specific ...

Aaaugh! 1 in 5 U.S. Windows PCs Lack Antivirus Defenses

Un-friggin-believable but true. Don't be one of them! Gregg Keizer at ComputerWorld was the first with this story. "Nearly a fifth of Windows PCs in the U.S. lack any active security ...

Cybercrime: Cyber Security Public Awareness Act of 2011 Introduced in US Senate

It was great to read that the "Cyber Security Public Awareness Act of 2011" was recently introduced in the US Senate. The purpose of the bill is to raise the public's security awareness, ...

Check Out These Top 10 Small Business Anti-Cybercrime Tools

Internet.com is a respected information technology publication that's been active on the Web since the late 1990s. Their spin-off Website SmallBusinessComputing.com is a great source for ...

Cybercrime: Ventura County, CA Credit Card Tax Payment System Hacked

Ventura County, California, is a small small county (population: 802,983 according to 2009 numbers from the US Census Bureau) north of the greater Los Angeles area. According to a March ...

Cybercrime: The Bigger They Are, The More They Get Attacked

The Wall Street Journal reported on Saturday (2/5/2011) that it learned that the computer network for the Nasdaq OMX Group has been repeatedly (and at least somewhat successfully) ...


Get the latest insights, trends and security news. Subscribe to CyberheistNews.