720-891-1663

Vermont Passes Extra Strong Privacy Bill

Six years ago there were no second generation privacy laws. No we are dealing with stronger and stronger laws. And more challenges for businesses. The rub is that the legislature is controlled by the democrats, the governor is a republican and the legislative session has ended, so the bill could get vetoed. The bill outlaws […]

Continue reading → [DISPLAY_ACURAX_ICONS]

It Feels Like 1995 All Over Again

First a little background. One of the main uses of cryptocurrency – not the only use – is to monetize crime. Most ransomware payments are done via cryptocurrency. There are other, legitimate uses, but they are dwarfed by the illegal uses. To the tune of tens of billions of dollars of criminal activity a year. […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Feds Warn About Black Basta as Ascension Health Diverts Ambulances, Uses Pencils

As ransomware attacks go, Black Basta has been around for a long time – since 2022. According to CISA, it has targeted 500 organizations and is believed to be an offshoot of the Conti Gang. CISA also says that Black Basta typically allows 10-12 days for negotiation before they post the victim’s data. We are […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News Update for the Week Ending May 10, 2024

TikTok Sues US Government; Vows to Prevail No surprise here and without taking a side pro or con; ByteDance and TikTok have filed suit in federal court arguing the law violates the US Constitution. TikTok’s CEO Shou Zi Chew says the company expects to win a legal challenge to block the new law. He says […]

Continue reading → [DISPLAY_ACURAX_ICONS]

States’ Rights vs. National Privacy Law

When it is convenient, politicians support states’ rights. Mostly, states’ rights is a dog whistle. One more time, coincidentally, just a few months before a presidential election, Congress is talking about passing a national privacy law. The bill they are proposing would preempt stronger (and weaker) state privacy laws – something that the states are […]

Continue reading → [DISPLAY_ACURAX_ICONS]

CISA Extends Comment Period on CIRCIA Rules

Probably your first question is what the heck is CIRCIA. CIRCIA is a law passed by Congress in 2022 that requires CISA to create a set of regulations for reporting cyber incidents by critical infrastructure operators. Needless to say, those operators would much rather have a very low profile and report things only if and […]

Continue reading → [DISPLAY_ACURAX_ICONS]