720-891-1663

Security News Update for the Week Ending May 10, 2024

TikTok Sues US Government; Vows to Prevail No surprise here and without taking a side pro or con; ByteDance and TikTok have filed suit in federal court arguing the law violates the US Constitution. TikTok’s CEO Shou Zi Chew says the company expects to win a legal challenge to block the new law. He says […]

Continue reading → [DISPLAY_ACURAX_ICONS]

States’ Rights vs. National Privacy Law

When it is convenient, politicians support states’ rights. Mostly, states’ rights is a dog whistle. One more time, coincidentally, just a few months before a presidential election, Congress is talking about passing a national privacy law. The bill they are proposing would preempt stronger (and weaker) state privacy laws – something that the states are […]

Continue reading → [DISPLAY_ACURAX_ICONS]

CISA Extends Comment Period on CIRCIA Rules

Probably your first question is what the heck is CIRCIA. CIRCIA is a law passed by Congress in 2022 that requires CISA to create a set of regulations for reporting cyber incidents by critical infrastructure operators. Needless to say, those operators would much rather have a very low profile and report things only if and […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Supply Chain Breaches Up 68% From Last Year

If you have been reading this blog then any conversation about supply chain risk is not news to you. Verizon, which publishes the well respected annual data breach investigations report says that supply chain breaches are up 68 percent from 2022. The number is still suspiciously low to me, however. Most people think of Verizon […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Update for the Week Ending May 3, 2024

Cyberattack Ramifications: Chain Closes ALL STORES to Contain Attack Canadian pharmacy chain London Drugs has closed all stores to contain a cyberattack. While many stores stop accepting online orders or credit cards after a cyberattack, it is very rare to see a company stop doing business until further notice. However, they have not notified authorities […]

Continue reading → [DISPLAY_ACURAX_ICONS]

US Says Russia Exploiting Weak Security at Water, Wastewater Plants

Shoddy security practices. Short of cash. Lack of personnel to deal with threats. Outdated equipment connected to the Internet. Weak passwords. CISA and the FBI say these are just some of the issues that critical infrastructure operators are facing. Anti U.S. (pro-Russian) hackers are intensifying attacks on critical infrastructure such as water, wastewater, dams, energy […]

Continue reading → [DISPLAY_ACURAX_ICONS]