720-891-1663

How Long Should Vendors Ship Software Patches

As computers and software become more integrated into every facet of our lives, and as security attacks on our infrastructure become part of the news every day, the question of software patches and upgrades need to become a factor in purchasing decisions. Whether it is a consumer Internet connected baby monitor (who’s bugs have compromised […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending September 13, 2019

Facebook/Cambridge Analytica Suit Moves Forward Facebook tried to convince a judge that when users share information privately on Facebook they have no expectation of privacy.  The judge didn’t buy it and the suit against Facebook moves forward.  Source: Law.com  (registration required) Equifax Quietly Added More Hoops for you to get your $0.21 Yes, if everyone […]

Continue reading → [DISPLAY_ACURAX_ICONS]

DoD Releases Draft CMMC Guidelines

The Department of Defense is probably the largest software development (and hardware development) organization in world but unlike say Microsoft or Cisco, almost all of the development is performed by third parties – the so called defense industrial base or DIB. It is also likely the number one target of nation state hackers since a […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Best Practices for Office 365 Monitoring

Logging, monitoring and alerting is probably the single biggest weakness that most organizations have. Office 365 is also likely the single biggest vulnerability. So what actions should you be monitoring in Office? According to AT&T’s Alien Vault division, here is the answer.  User access – who is there normally; what is your user baseline.  Are […]

Continue reading → [DISPLAY_ACURAX_ICONS]