720-891-1663

Who is Responsible for SaaS Security?

It seems simple, right? You pay for a cloud application to do something – or maybe it is free and you assume the vendor is responsible for the security of your data. Turns out, it is not quite that simple. In fact, far from it. Identity attacks – where the attacker somehow compromises an account, […]

Continue reading → [DISPLAY_ACURAX_ICONS]

After Chinese Attack on US Telecom, Maybe We Will See Legislation

After the entire US Senate was briefed this week about the Chinese attack called Salt Typhoon on US and other telecom and Internet carriers, the feds are trying to figure out what to do. This is going to be the job of the next administration because I doubt Congress can create a solution in the […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Add Another Challenge for the Next President

The United States has historically had a “challenging” supply chain. It has, for at least decades, depended on supplies from counties that are either not stable or not friendly or neither. While we have worked to try to REDUCE that dependency, we are very far from eliminating it. Yesterday the President ratcheted up the curbs […]

Continue reading → [DISPLAY_ACURAX_ICONS]

How Quickly Are Exposed API Keys Detected by Hackers?

Inquiring minds want to know, as the expression goes. The real question is how quickly can you detect and respond to the exploitation of exposed keys? I bet it is a lot longer than it takes the hackers to find them. Here is what the researchers did. They did a “candy drop” – dropped keys […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Are You Ready for Next March’s New Merchant PCI Requirements

The simplest form of PCI compliance is a self assessment and most companies qualify. The simplest form of a self assessment is a SAQ-A or -A-EP. This assessment form is for merchants that do not collect or store payment card information and outsource the payment process pretty much completely. If you capture the card info […]

Continue reading → [DISPLAY_ACURAX_ICONS]

As Two Undersea Fiber Internet Lines Cut, Focus is on China, Russia

I bet this shows up as a surprise to exactly no one. There are at least 600 undersea fiber lines that connect the world. While these two going away at roughly the same time is annoying, the Internet is quite resilient. However, depending on WHICH fiber lines are cut, the problems can be more severe. […]

Continue reading → [DISPLAY_ACURAX_ICONS]