Security news that informs and inspires

2376 articles by

NIST Act to Improve SMB Security Becomes Law

Under the newly minted law NIST Small Business Cybersecurity Act, NIST will have a year to release guidance and resources to help small businesses improve their security posture.

Legislation, Government

Clarity Needed Over New Rules on Use of Cyber Weapons

The White House has rescinded the directive that restricted how United States could respond to online attacks. Will this act as deterrence or escalate breaches and attacks into armed conflict?

Government

What IT Needs to Know About Foreshadow

Foreshadow/L1TF refer to a group of vulnerabilities that can be exploited in modern Intel chips using speculative execution attacks to bypass security protections and harvest sensitive information.

Vulnerability, Hardware, Spectre

Microsoft Fixed Multi-factor Authentication Bypass Flaw

The flaw in Microsoft's Active Directory Federation Services lets an attacker use the same second factor to bypass multi-factor authentication for any account running on the same service. Microsoft has patched the flaw.

Microsoft, 2fa, Mfa

More Details on Google’s Shielded VMs

Google’s new Shielded VMs help enterprises protect their Google Cloud workloads from attacks against the hardware and firmware.

Google, Virtualization, Cloud