Weekend Update

A quick Saturday digest of cybersecurity news articles from other sources.


Botnet of Infected WordPress Sites Attacking WordPress Sites

This entry was posted in Research, Wordfence, WordPress Security on December 5, 2018

The Defiant Threat Intelligence team recently began tracking the behavior of an organized brute force attack campaign against WordPress sites. This campaign has created a botnet of infected WordPress websites to perform its attacks, which ...

Continue Reading →
0

Failures in Encryption – IronPhone

Netherlands security company Black Box Security was raided by the Dutch Police and shuttered on suspicion of money laundering and operating a criminal enterprise.  Black Box was the inventor of the Iron Phone and the Iron Chat app.  Together, they were supposed to provide an unbreakable encrypted chat service.  This service became a popular favorite among cyber and other criminals.

According to ...

Continue Reading →
0

Another Problem with MFA – Slow Adoption

Do the web sites your frequently visit offer two-factor authentication?  Have you enabled 2FA where it is available to you?  Is the particular implementation of 2FA or MFA security really adding any extra protection for you?   Not sure?  Please read on.

Password management company Dashlane recently ranked 34 of the top websites for their implementation of two-factor or multi-factor authentication options for their ...

Continue Reading →
0

Google Blazes New Trails in Authentication

Two-factor and multi-factor authentication historically have been based on using two or more of three criteria:  something you know (passwords), something you have (security token) or something you are (biometrics such as fingerprints).  There have been two new additions to MFA criteria: something you do (keyboard cadence or mouse movement), and somewhere you are (geo-location through GPS or public IP address).

Google has been busy heightening the security for it’s account holders ...

Continue Reading →
0

Weekend Update

A quick Saturday digest of cybersecurity news articles from other sources.


Passcodes are protected by Fifth Amendment, says court

You do not have to give your passcode to the police.  The courts say it amounts to self-incrimination.  The government isn’t really after the password, after all; it’s after any potential evidence it protects. In other words: fishing expedition.


ST15-003: Before You Connect a New Computer to the Internet

12/15/2015 ...

Continue Reading →
0

Better Two-Factor Security from Google Titan

This article is an amusing collision between our last two topics – the problems with two-factor and multi-factor authentication and our four-part story on Google’s data mining habits.  Google has developed and released their Titan MFA security key as a more secure way to implement multi-factor authentication that can’t be attacked through phishing and man-in-the-middle exploits.  So if you can stand ...

Continue Reading →
0

Weekend Update

A quick Saturday digest of cybersecurity news articles from other sources.


Tiny Hardware Firewall VPN Client

Here are a couple of tiny, portable security devices that provide hardware firewall, VPN, and TOR capability.  Check them out.


FTC Releases Cyber Resources for Small Businesses

10/25/2018 09:15 PM EDT  Original release date: October 25, 2018

The Federal Trade Commission (FTC) has ...

Continue Reading →
0

The Biggest Spy on the Internet – Part 3

Now that I know everything about you, maybe I can predict what you are likely to do in the future.  In the first two parts of this report, we looked at Google and the many products and services that collect information about you, and just what kind of details are included in that informational trove.  Today we will see what that information can do.

Whether you call it bots, AI (artificial intelligence), ...

Continue Reading →
0

The Biggest Spy on the Internet – Part 2

What would you think about one company knowing nearly everything about you?  After today’s article, you will have a fairly complete understanding about just how much of your information is collected by one company – Google.

Let’s start by looking at many popular Google products and services and just what information they collect about their users.

  • Google Account – Not everyone has a Google account, but if you have an Android phone you ...
Continue Reading →
0
Page 1 of 62 12345...»