720-891-1663

Congress Digs into Dumpster Fire of Fed Cybersecurity

While there are plenty of private companies that were compromised by the SolarWinds attack, more importantly, many federal government departments and agencies including Treasury, State, the Nuclear Management folks, the FAA and others were compromised and information was stolen. Congress is getting into the act; we will see if anything positive happens or Congress loses […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending February 26, 2021

DoD Working on CMMC-Fedramp ‘Reciprocity’ by Year End CMMC, the DoD’s new cybersecurity standard is designed to measure security practices of companies and the servers in the computer rooms and data centers. But what about the stuff in the cloud. That is covered by another government standard called FedRAMP. But those two standards have different […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending February 19, 2021

Parler is Back Online After being down for a month after getting kicked off Amazon, Parler is back online. Existing accounts can log in now; new accounts can be created next week. They have a new interim CEO after the board fired the last one. It does not appear that old content was moved over […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Lawsuits Often Follow Ransomware

Last October Wilmington Surgical Associates was dealing with a ransomware attack. Allegedly, the Netwalker ransomware group stole 13 gigabytes of data, which in today’s world easily fits on a flash drive, and leaked that data online. The patients of the North Carolina clinic whose data was stolen and leaked are seeking “redress for its unlawful […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Supply Chain Risk in the Software Process

I have been talking a lot about supply chain risk lately and there is a good reason. From open source products with backdoors like Webmin or Rubygems to NotPetya a few years ago which shut down many companies around the world to the recent attacks against SolarWinds or Centreon, supply chain attacks are running rampant. […]

Continue reading → [DISPLAY_ACURAX_ICONS]