Security news that informs and inspires

2376 articles by

Georgia Hack Back Bill Vetoed

The bill in Georgia that would have legalized active defense measures and outlawed some security research was vetoed by the state's governor.

Legislation

Users Need More Than Minimal Breach Disclosure

Companies get away with disclosing just the bare minimum, or dribble out the bad news to the point where no one is paying attention. We need to hold companies to a higher set of expectations.

Data Breaches, Data Breach Notification

The Upside of the Twitter Password Bug

The Twitter password bug caused an uproar, but the company's handling of it shows the potential value of being transparent about security.

Twitter

Google Asylo Lets Devs Build Confidential Computing Apps

Protect the data at rest and in transit. How about while in use? Google’s open source framework Asylo helps developers use secure enclaves with their applications without having to know the specifics of how TEEs work or learning how to use specialized tools.

Google, Cloud, Appdev, Encryption, Tools

Updated NIST Cybersecurity Framework Emphasizes Access Control & Supply Chain Risk

The National Institute of Standards and Technology (NIST) released its version 1.1 update to the 1.0 version of their Framework for Improving Critical Infrastructure Cybersecurity, last updated in 2014.

Nist, Cybersecurity, Access Controls, Access Control Security, Supply Chain