Even if third party systems aren’t compromised by a breach, their data may be and if it is, those parties might become the victim of a triple ransom. Following are a few updates to our biggest Inciden…
Security
Win10 Admin Rights Tossed Off by Yet Another Plug-In
Then again, you don’t even need the actual device – in this case, a SteelSeries peripheral – since emulation works just fine to launch with full SYSTEM rights.
Threatpost
Cisco Issues Critical Fixes for High-End Nexus Gear
Networking giant issues two critical patches and six high-severity patches.
Threatpost
An Introduction to Tokenization
Tokenization replaces sensitive data with an irreversible, non-sensitive placeholder (token) and securely stores the original, sensitive data outside of its original environment.
InkySquid State Actor Exploiting Known IE Bugs
The North Korea-linked APT group leverages known Internet Explorer vulns for watering-hole attacks.
Threatpost
Critical Cisco Bug in Small Business Routers to Remain Unpatched
The issue affects a range of Cisco Wireless-N and Wireless-AC VPN routers that have reached end-of-life.
Threatpost
Accenture Faces $50 Million Ransom Demand
Accenture did not respond to the first demand window of four hours. Regardless, whatever advice the company is giving should be the advice it takes or it will have an ever bigger potential PR problem.
Nigerian Threat Actors Solicit Employees to Deploy Ransomware for Cut of Profits
Campaign emails company insiders and initially offers 1 million in Bitcoin if they install DemonWare on an organization’s network.
Threatpost
Web Censorship Systems Can Facilitate Massive DDoS Attacks
Systems are ripe for abuse by attackers who can abuse systems to launch DDoS attacks.
Threatpost
How Ready Are You for a Ransomware Attack?
Oliver Tavakoli, CTO at Vectra, lays out the different layers of ransomware defense all companies should implement.
Threatpost

