720-891-1663

Security News for the Week Ending September 13, 2019

Facebook/Cambridge Analytica Suit Moves Forward Facebook tried to convince a judge that when users share information privately on Facebook they have no expectation of privacy.  The judge didn’t buy it and the suit against Facebook moves forward.  Source: Law.com  (registration required) Equifax Quietly Added More Hoops for you to get your $0.21 Yes, if everyone […]

Continue reading → [DISPLAY_ACURAX_ICONS]

DoD Releases Draft CMMC Guidelines

The Department of Defense is probably the largest software development (and hardware development) organization in world but unlike say Microsoft or Cisco, almost all of the development is performed by third parties – the so called defense industrial base or DIB. It is also likely the number one target of nation state hackers since a […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Best Practices for Office 365 Monitoring

Logging, monitoring and alerting is probably the single biggest weakness that most organizations have. Office 365 is also likely the single biggest vulnerability. So what actions should you be monitoring in Office? According to AT&T’s Alien Vault division, here is the answer.  User access – who is there normally; what is your user baseline.  Are […]

Continue reading → [DISPLAY_ACURAX_ICONS]

Security News for the Week Ending September 6, 2019

Cisco: Critical Bug Allows Remote Takeover of Routers Cisco rated this bug 10 out of 10.  For users of Cisco 4000 series ISRs, ASR 1000 series aggregation routers, 1000v cloud routers and integrated services virtual routers, an unauthenticated user can gain full control just by sending a malicious HTTP request.  So yet another reminder that […]

Continue reading → [DISPLAY_ACURAX_ICONS]