CyberAlert: Bad Rabbit

US-CERT has received multiple reports of ransomware infections, known as Bad Rabbit, in many countries around the world. A suspected variant of Petya, Bad Rabbit is ransomware—malicious software that infects a computer and restricts user access to the infected machine until a ransom is paid to unlock it. US-CERT discourages individuals and organizations from paying the ransom, as this does not guarantee that access will be restored. Using unpatched and unsupported software may increase the risk of proliferation of cybersecurity threats, such as ransomware.
Why You Must Perform A Security Assessment

Recently, we discussed why it is important to have a SIEM (Security Information and Event Management) system, and why it is crucial for skilled Administrators to actively use and monitor it. For a quick refresher, here is the article in Wired that sums up the presentation by Rob Joyce, Chief of NSA’s Tailored Access Operations, that inspired this series.This week’s post will cover why it’s important for your organization to perform a Security Assessment to analyze your organization’s operational risks.
Q3 2017 Top Clicked Phishing Emails

KnowBe4, our security awareness training partner, recently released the Top 10 Global Phishing Email Subject Lines for Q3 2017 report. The Top 10 Most-Clicked General Email Subject Lines Globally for Q3 2017 include:
New Cybersecurity Regulations for Credit Reporting Agencies

Following the Equifax breach, New York State has announced a proposed regulation for credit reporting agencies. According to the press release, Governor Andrew M. Cuomo today directed the Department of Financial Services to issue a new regulation making credit reporting agencies to register with New York for the first time and comply with this state’s first-in-the-nation cybersecurity standard.
The Weakest Link in Network Security?

The weakest link in your network security? Your employees! Cybriant works with KnowBe4 to provide new school security awareness training. Your employees are frequently exposed to sophisticated phishing and ransomware attacks. Old school training – once a year meetings or posters in the break room just don’t cut it anymore.
2017 Ransomware Report from Cybersecurity Insiders

The single biggest cybersecurity threat to both business and government organizations = Ransomware. Read more to see the recent reports.
Why use a Managed Security Service Provider (MSSP)?

Cybersecurity Insiders along with AlienVault recently released the 2017 Cybersecurity Trends Report with a highlight on the benefits, challenges, and trends of using a Managed Security Service Provider (MSSP).
Get Your Automated Security Awareness Program, ASAP!

ASAP is a revolutionary new tool for IT professionals, which builds a customized Security Awareness Program for your organization that will show you the steps needed to create a fully mature training program in just a few minutes!
Law Firms Targeted by Hackers

Law firms and their clients’ sensitive information are a treasure trove for hackers. They not only hold valuable client information but also are regularly emailing attachments to clients, providing a possible means to get into client systems.
Equifax Cybersecurity Breach makes Headlines

Equifax, one of the three major consumer credit reporting agencies, said on Thursday that hackers had gained access to company data that potentially compromised sensitive information for 143 million American consumers, including Social Security numbers and driver’s license numbers.