Google says that the number of websites compromised by cybercriminals has risen by 32%. The post Google: More websites failing victim to cybercriminals appeared first on WeLiveSecurity
How do you calculate the value at risk? Choosing between investing in antivirus software or doing nothing to prevent cybercrime is not black and white. We explore the grey areas of cybersecurity economics. The post The economics of cybersecurity for the undecided appeared first on WeLiveSecurity
It’s a rough number, but I’d wager that 99 percent of computer security risk in most organizations can be attributed to two root causes: social engineering and unpatched software. I’m not talking about pure numbers of success exploits, but overall impact. Many CISOs and threat intelligence analysts have told me that 100 percent of the […]
The Association of British Travel Agents discovered the data breach on March 1st, but failed to notify customers until March 16th. The post ABTA experiences data breach appeared first on WeLiveSecurity
In 2014, ESET delivered a comprehensive and detailed report on Operation Windigo. We take a look back at what was documented and what insight was gathered. The post Flashback Friday: Operation Windigo appeared first on WeLiveSecurity
The number of women working within the infosec industry is “continues to remain low”, and could be exacerbating the skills gap within the industry. The post Number of women in infosec industry ‘remains stagnant’ appeared first on WeLiveSecurity
Greater collaboration is needed in order to combat the significant threat of cybercrime to British businesses, according to the UK’s National Crime Agency and the National Cyber Security Centre. The post Significant cyberthreat to UK businesses continues to grow appeared first on WeLiveSecurity
Wikileaks’ CIA dump is the biggest secret cache released so far. It’s embarrassing to the CIA. It undermines our intelligence efforts. And it didn’t need to happen. The sad fact is that the world’s computers are not configured securely enough to match the confidentiality of the data they are protecting. As a society we allow […]
Cybersecurity legislation: organization, collaboration and diffusion across the globe, and working towards the populization of cybersecurity culture The post Challenges and implications of cybersecurity legislation appeared first on WeLiveSecurity
US retail giant Home Depot is set to pay a $25 million settlement in relation to a data breach suffered in 2014. The post Home Depot agrees to $25 million settlement for data breach appeared first on WeLiveSecurity
What awaits us in terms of mobile security trends? Throughout this article, we will discuss how risks might develop in the near future. The post Mobile security: The reality of malware … augmented appeared first on WeLiveSecurity
The US-based nonprofit organization Consumer Reports has come up with a new standard that aims to boost consumer confidence in privacy and data security. The post Consumer Reports launches new privacy and data security standard appeared first on WeLiveSecurity
ESET researchers discovered 13 new Instagram credential stealers on Google play and looked into the motivations behind their fraudulent schemes. The post New Instagram credential stealers discovered on Google Play appeared first on WeLiveSecurity
ESET’s Lysa Myers looks at the shortage of qualified information security talent to fill positions, discussing ways in which to plug the infosec talent gap. The post Ways in which to plug the infosec talent gap appeared first on WeLiveSecurity
A full radio interview with ESET’s Alexis Dorais-Joncas and radio and TV personality Marc Saltzman – on NewsTalk 1010 – talking about a malicious weather app that was found on Google Play. The post Good Weather App radio interview with Alexis Dorais-Joncas and Marc Saltzman appeared first on WeLiveSecurity
ESET researchers have observed an increased number of apps on Google Play using social engineering techniques to boost their ratings, ranging from legitimate apps, through adware to malware. The post Aggressive ad-displaying Google Play app tricks users into leaving high ratings appeared first on WeLiveSecurity
You’ll never reduce your security risk if you can’t identify and mitigate the root causes of those vulnerabilities. It isn’t enough to have a list of malware programs that your antimalware has detected. You need to to determine how viruses and hackers have penetrated your environment in the past. In the vast majority of organizations, […]
Technology is affecting our relationships and changing our lives, but are we taking the necessary measures to protect ourselves online? Here’s how to outsmart cybercriminals. The post 10 ways to ruin a cybercriminal’s day appeared first on WeLiveSecurity
The Internet of Stranger Things came to life in the recent case of a cuddly connected toy, raising wider and deeper questions about cybersecurity, privacy, and the future of digital technology. The post IoT of toys stranger than fiction: cybersecurity and data privacy update appeared first on WeLiveSecurity
Yahoo’s Marissa Mayer has missed out on $2m from her annual bonus due to her management of security breaches affecting billions of users. The post Yahoo CEO forgoes annual bonus, worth millions, over security breaches appeared first on WeLiveSecurity
Bletchley Park, considered to be the birthplace of modern computing, is to train the generation of cybersecurity codebreakers. The post Bletchley Park: Training the next the generation of cybersecurity codebreakers appeared first on WeLiveSecurity
The UK is developing an internet safety strategy in an attempt to secure a position as “the safest place in the world for young people to go online”. The post Major internet safety strategy to ‘bolster online safety’ for children in the UK appeared first on WeLiveSecurity
Talking Android ransomware sounds like something out of a science fiction movie. It’s not – it’s very real, explains ESET’s Lukas Stefanko. The post Talking Android ransomware extorts victims appeared first on WeLiveSecurity
There is a real feeling that smartphones are becoming a bigger target for cybercriminals. So why are they so eager to get into our devices? The post 10 reasons why cybercriminals target smartphones appeared first on WeLiveSecurity
We live in a global society. While your country’s economy may be stagnating or barely growing, someone else’s economy is probably booming. It’s no wonder your company is reaching across international borders to establish new business ties and revenue sources. That’s all well and good. But you should also know that I’ve consulted for a […]
ESET’s Josep Albors looks at how DNS attacks will try and direct you to fake pages. The post DNS attacks: How they try to direct you to fake pages appeared first on WeLiveSecurity
ESET researchers have discovered a new variant of botnet-forming Android banking malware based on source code made public a couple of months ago. The post Released Android malware source code used to run a banking botnet appeared first on WeLiveSecurity
Android malware is an increasing problem … but worry not – n this infographic, we highlight some of the key things you should be aware of. The post Android malware: It doesn’t hurt to know about this appeared first on WeLiveSecurity
ESET has spotted a new banking malware on Google Play. Disguised as a weather forecast app, it steals banking credentials and locks screens. The post Sunny with a chance of stolen credentials: Malicious weather app found on Google Play appeared first on WeLiveSecurity
This last month we have seen a new ransomware for Mac. Written in Swift, it is distributed on BitTorrent distribution site as “Patcher” for pirating popular software. The post New crypto-ransomware hits macOS appeared first on WeLiveSecurity
Approximately 26% of Americans have been compromised by healthcare data breaches, according to a new survey from Accenture. The post Healthcare data breaches reach a ‘sizeable number of US consumers’ appeared first on WeLiveSecurity
Today, ESET has released a white paper on RTM, a cybercrime group that has been relentlessly targeting businesses in Russia and neighboring countries. The post RTM: Stealthy group targeting remote banking system appeared first on WeLiveSecurity
One of the biggest problems with security defenses is the lack of concrete data to measure the effectiveness of mitigations against threats. In almost any other industry, the dearth of data would be embarrassing. As I’ve noted before, every organization needs to develop a data-driven security defense. Such a defense uses a company’s own threat intelligence to […]
If you thought that the problem of tech support scams was disappearing, think again, says Josep Albors and David Harley. The post Support scams now reign in Spain appeared first on WeLiveSecurity
2016 saw interesting developments within the Android ransomware scene. Ransomware emerged as one of the most pressing cybersecurity issues on the mobile platform. The post Trends in Android ransomware appeared first on WeLiveSecurity
Here at RSA, an increasing amount of security purchases are made by those who got the task dumped in their laps, but who have little or no formal or practical training. The post RSA – day 3: Security for those who don’t know what that means appeared first on WeLiveSecurity
WeLiveSecurity takes a look at what you need to know about spyware – the malware secretly prying on your online activities. The post 8 things you should know about spyware appeared first on WeLiveSecurity
Want to find holes in your security perimeter? What better way than to attempt to attack yourself, and here at RSA there are plenty of tools to help. The post RSA 2017 – day 2: Attacking yourself appeared first on WeLiveSecurity
The purpose of this blog is to deliver technical details of an as-yet minimally documented malware that has made headlines in Poland. The post Demystifying targeted malware used against Polish banks appeared first on WeLiveSecurity
RSA feels like a mashup of giant tech Titans steadily swallowing up the little guys to make one massive, unholy tech monster. But how does that really work for small businesses as customers, and the rest of us? The post RSA 2017: The year the little guys get swallowed up appeared first on WeLiveSecurity
Gmail rolls out a new policy to block JavaScript attachments, increasing security restrictions as ransomware attacks increase. The post Gmail starts blocking JavaScript attachments: Alternative infector vectors to be expected? appeared first on WeLiveSecurity
The ongoing cybersecurity skills gap is dealing a significant blow to the confidence of organizations looking to defend themselves against potential attacks. The post Organizations ‘concerned by cybersecurity skills gap’ appeared first on WeLiveSecurity
Android users are exposed to a new malicious app imitating Adobe Flash Player and serving as an entrance gate for potentially any kind of dangerous malware The post New Android trojan mimics user clicks to download dangerous malware appeared first on WeLiveSecurity
A game with love: How the LoveLetter virus corrupted our tech by playing on our emotions. The post ILOVEYOU: The wrong kind of LoveLetter appeared first on WeLiveSecurity
For most of my professional life, the term “bot” has been associated with badness. As a computer security professional, whenever I saw bots involved, they were usually committing malicious acts and harnessing hundreds or thousands of otherwise innocent devices and computers to engage in harmful deeds.But that will change as good bots become more common, […]
There is a view in the media of the current security market that assumes a split between first-generation and technologies using next-generation signature-less detection. The post Next-gen security software: Myths and marketing appeared first on WeLiveSecurity
The InterContinental Hotels Group has revealed that 12 of its hotels suffered a data breach between August and December last year. The post InterContinental Hotels Group confirms suspected data breach appeared first on WeLiveSecurity
The General Data Protection Regulation (GDPR), the biggest reform of privacy legislation for 20 years, will come into effect on May 25, 2018, bringing with it major changes to Europe’s privacy laws. The post Is GDPR good or bad news for business? appeared first on WeLiveSecurity
Imagine: your security is flawless. Not a single other person can access your sensitive information or accounts. And then the unthinkable happens – you’re in an accident. How will your loved ones get past your security measures to tend to your affairs? The post Entrust your security secrets to a safe pair of hands appeared […]
If you’re worried about fake news, you ain’t seen nothing yet. Soon we may not be able to tell the difference between a fake video and a real one, even forensically. What we are seeing today is the tip of the iceberg. Fake news has already altered the world forever. It’s always been a huge […]
Is your smart TV selling data about what you watch, without asking? As the US FTC goes after one TV maker, it may be time to check. The post FTC vs. VIZIO: Getting smart about TV data collection and sharing appeared first on WeLiveSecurity
Just over one in five banks and insurers are confident in their ability to identify data breaches, according to a new global survey from Capgemini Consulting. The post Banking chiefs ‘lack confidence to identify data breaches’ appeared first on WeLiveSecurity
Strategic cybersecurity the key to keeping the threat of cyberattacks at bay, a new report states. The post Strategic cybersecurity will stymie ‘expanding threat landscape’ appeared first on WeLiveSecurity
Are you au fait with wardriving? ESET’S Lucas Paus explains the best ways to survey wireless networks while you’re on the move. Hint: avoid free Wi-Fi networks! The post Wardriving: A digital census of Wi-Fi networks? appeared first on WeLiveSecurity
A significant number of US citizens have experienced a data breach and are concerned over the security of their personal information, a study reveals. The post Over half of US citizens ‘have experienced a data breach’ appeared first on WeLiveSecurity
IT security professionals are at the forefront of the demand from companies across the UK, many of whom have placed greater demand on tech skills. The post Security professionals shortage in UK ‘increasing competition among companies for talent’ appeared first on WeLiveSecurity
Only one month into the new year, it appears that we may well have our first example jackware in 2017 with a ransomware of things attack on an Austrian hotel. The post Austrian hotel experiences ‘ransomware of things attack’ appeared first on WeLiveSecurity
A new way of looking at cybersecurity, no longer viewing it as a goal in itself, but instead something that is directly connected to business needs. The post Cybersecurity: 5 basic lessons for everyone appeared first on WeLiveSecurity
When attackers look for vulnerabilities, they target popular software. Why bother chasing flaws in applications that few people use? That’s why one of my best friends runs a third-party application instead of Adobe Acrobat Reader to open and read PDF documents. Another friend runs the Maxthon browser to stay out of the way of exploits […]
Ransomware is not going anywhere. Here, we’ve rounded up vital tips and advice from three ESET experts: Lysa Myers, Stephen Cobb and David Harley. The post Ransomware: Key insights from infosec experts appeared first on WeLiveSecurity
“When looking for vulnerabilities in open-source code, it is advisable to check portions of code that is prone to errors”: Useful tips from one of ESET’s malware analysts, Matías Porolli, on how to spot vulnerable code. The post Some examples of vulnerable code and how to find them appeared first on WeLiveSecurity
Privacy and security fears are driving many people to look into the possibilities of private browsing. We investigate what it is and how you stay anonymous online The post An introduction to private browsing appeared first on WeLiveSecurity
Take a closer look at the cyberespionage group Sednit, which has targeted over 1000 high-profile individuals and organizations with phishing attacks and zero-day exploits. The post Sednit: How this notorious cyberespionage group operates appeared first on WeLiveSecurity
ESET’s Ondrej Kubovič: “Worrying about privacy isn’t enough” – here’s how to control your data privacy and online presence. The post Worrying about data privacy isn’t enough: Here’s how to own your online presence appeared first on WeLiveSecurity
Recent phishing scams targeted both Gmail and Yahoo, and now attackers have their sights set on PayPal with some very convincing bait. The post PayPal users targeted in sophisticated new phishing campaign appeared first on WeLiveSecurity
Cybercrime is victimizing US companies and consumers, but a gap in cybersecurity skills presents a problem for the federal government. ESET’s Stephen Cobb investigates. The post Desperately seeking cybersecurity skills appeared first on WeLiveSecurity
Lloyds Banking Group fell victim to an attempted cyberattack earlier this month, which saw cybercriminals attempt to crash the online banking service over a two day period. The post Lloyds Banking Group hit with distributed denial of service attack appeared first on WeLiveSecurity
Could the Internet of Things spark the Ransomware of Things? ESET’s Stephen Cobb examines how ransomware and jackware are evolving. The post RoT: Ransomware of Things appeared first on WeLiveSecurity
The US Securities and Exchange Commission is looking into whether Yahoo could have been quicker to tell investors about two record-breaking data breaches. The post Yahoo faces SEC probe into its two record-breaking data breaches appeared first on WeLiveSecurity
Contrary to popular belief, ransomware has been around for decades. The first malware program to lock up people’s files and ask for a ransom was the PC Cyborg Trojan in 1989. It was created by Harvard-trained evolutionary biologist Dr. Joseph Popp, who was working on several AIDS-related projects at the time. Dr. Popp sent a […]
There are signs of improvement in the global cybersecurity skills gap, but serious problems still remain, a new report finds. The post Cybersecurity skills shortage ‘still a global problem’ appeared first on WeLiveSecurity
The UK’s ICO has released a new set of guidelines aimed at ensuring companies are adequately prepared for the introduction of the GDPR. The post UK’s ICO releases new guidelines for becoming GDPR ready appeared first on WeLiveSecurity
This month’s Flashback Wednesday takes us back to the beginning. Pakistani Brain, discovered on January 19th, is considered to be the first-ever PC virus. The post Flashback Wednesday: Pakistani Brain appeared first on WeLiveSecurity
ESET’s Cameron Camp provides valuable insight into what you should do if you’re a victim of ransomware. The post Ransomware: Should you pay up? appeared first on WeLiveSecurity
One of the toughest parts of being a computer security pro is trying to figure out what to hang your career on every two to five years. Which new buzzwords will stick to become a new paradigms, and which will disappear into the ether? Keeping up with the latest and greatest enterprise tech is part […]
The heavy ICO fine against Royal & Sun Alliance Insurance PLC has highlighted a shortcoming with encryption. The post Invest in encryption and get it right appeared first on WeLiveSecurity
With analysts predicting a big shift to Windows 10 in the enterprise in 2017, a new ESET white paper looks at security and privacy changes in Windows 10 Anniversary Update, the build that Microsoft expects its business customers to run on the majority of their desktop computers. The post Windows 10 anniversary update: Security and […]
A WhatsApp ‘security issue’ has been identified, meaning third parties may be able to both intercept and read encrypted messages, according to new research. The post WhatsApp bug: Messages ‘can be intercepted and read’ appeared first on WeLiveSecurity
ESET’s Miguel Ángel Mendoza looks at a range of forensic analysis techniques that are used to examine digital images. The post Forensic analysis techniques for digital imaging appeared first on WeLiveSecurity
The UK parliament has launched an inquiry into its cybersecurity defense measures, describing cyberthreats as a “major security challenge”. The post UK launches major cybersecurity inquiry appeared first on WeLiveSecurity
The number of scams spreading through the messaging app WhatsApp keeps on increasing, reports Lucas Paus. And there’s already a new one in 2017. The post Beware new WhatsApp scam offering “free internet without Wi-Fi” appeared first on WeLiveSecurity
The term Fast Flux can refer to networks used by several botnets to hide the domains used to download malware or host phishing websites, says Josep Albors. The post Fast Flux networks: What are they and how do they work? appeared first on WeLiveSecurity
For years, IoT security seemed like solving a problem that didn’t exist. Not anymore says ESET’s Cameron Camp, who was at this year’s CES. The post CES: IoT security comes of age appeared first on WeLiveSecurity
Tips on securing the Alexa service on Amazon Echo devices, notably voice purchasing, a topic brought into focus by the recent “San Diego dollhouse TV story”. The post Amazon Echo and the Alexa dollhouses: Security tips and takeaways appeared first on WeLiveSecurity
A senior UK police officer has suggested that offenders of cybercrime should be penalized by being made to wear Wi-Fi jammers rather than being sent to prison. The post Cybercriminals ‘should be punished with Wi-Fi jammers’ appeared first on WeLiveSecurity
A US government probe into claims that certain heart implants are vulnerable to hacking attacks, has resulted in emergency security patches being issued for devices that cardiac patients have in their homes. The post Security scare over hackable heart implants appeared first on WeLiveSecurity
I recently had the pleasure of interviewing Dr. Leonard Adleman — the “A” in the very popular public cryptographic algorithm RSA — as part of the Association for Computing Machinery’s 50th anniversary celebration of the Turing Award. In 2002, Adleman himself won the Turing Award, often referred to at the Nobel Prize of the computing […]
Justin Liverman, a student from North Carolina, has admitted collaborating in a harassment scheme targeting US officials and their families. The post Man pleads guilty to role in harassment scheme against senior US government officials appeared first on WeLiveSecurity
ESET’s Cameron Camp just about recovered from the sensory overload that is CES to gather his thoughts on what was another fascinating event. The post Connected car hacking: Who’s to blame? appeared first on WeLiveSecurity
The US Federal Trade Commission has again acted on its serious concerns about data privacy and security in the Internet of Things (IoT). This time D-Link webcams and routers are the focus. Stephen Cobb puts this latest FTC move in context. The post FTC IoT privacy and security push points out D-Link router and webcam […]
More needs to be done to better equip children for life in a digital world, according to a new report from England’s children’s commissioner. The post Children in a digital world ‘need lessons in online safety’ appeared first on WeLiveSecurity
ESET has discovered a Linux variant of the KillDisk component that renders Linux machines unbootable, while encrypting files and requesting a large ransom at the same time. The post KillDisk now targeting Linux: Demands $250K ransom, but can’t decrypt appeared first on WeLiveSecurity
We are pleased to present our annual report Windows exploitation in 2016. In this latest version of our report, we offer a fresh look at modern security features in Windows 10. The post Windows exploitation in 2016 appeared first on WeLiveSecurity
The Federal Trade Commission have launched a competition to encourage the public to devise a technical solution to protect IoT devices from security threats. The post Federal Trade Commission launches $25,000 IoT security competition appeared first on WeLiveSecurity
In this feature, we capture some of the key ideas discussed in ESET’s latest trends paper for 2017, Security Held Ransom. The post The year in security: Trends 2017 appeared first on WeLiveSecurity
Only a handful of industry associations accomplish what they set out to do. In the security realm, I’ve always been a huge fan of the Trusted Computing Group. It’s one of the few vendor organizations that truly makes computers more secure in a holistic manner. The Fast Identity Online (FIDO) Alliance is another group with lots […]
Put cyber security at the top of your New Year’s resolution list for 2017, implementing a digital detox and improving your online behaviors. The post Cyber-savvy New Year’s resolutions you’ll want to keep appeared first on WeLiveSecurity
In 2016, companies have had their security solutions tested by increasingly sophisticated cybercriminals. We look at the year’s biggest security incidents. The post The 10 biggest security incidents of 2016 appeared first on WeLiveSecurity
Tips for cash-strapped retailers looking to avoid getting hacked, during the holiday shopping season, or any other season. The post Retailers! Avoid getting hacked during the holiday season (or any other time of the year) appeared first on WeLiveSecurity
It has become one of the most topical and discussed topics in information security in recent times. In this video we outline some of the key aspects of encryption. The post What is encryption and how does it work? appeared first on WeLiveSecurity
