News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

The proportion of serious cybersecurity incidents is increasing
Kaspersky_news

Serious security incidents have increased by half in the past year - from 9 percent in 2020 to 14 percent in 2021. This is shown by recent research based on the analysis of incidents reported by customers to Kaspersky Managed Detection and Response (MDR). based. Increasingly complex infrastructures, skill shortages, and increasing sophistication of attacks can impact the efficiency of cybersecurity teams and their ability to detect hostile activity before incidents occur. To gain insight into the current threat landscape, Kaspersky analyzed anonymized customer incidents reported through its…

Read more

Research: How the BSI warning about Kaspersky came about
Research: How the BSI warning about Kaspersky came about

Bayerischer Rundfunk and SPIEGEL have published an investigative report on the BSI's decision-making process in relation to the March Kaspersky warning. Even an IT security lawyer comes to the conclusion that the result (the warning) was first determined and then the arguments were sought in cooperation with the Federal Ministry of the Interior. The warning about Russian Kaspersky software in mid-March this year was followed by statements from the BSI, open letters from Eugene Kaspersky and various court hearings. Kaspersky repeatedly tries to refute the motives of the BSI for the warning, but repeatedly failed in court. Many…

Read more

Kaspersky offers enhanced Threat Intelligence Portal
Kaspersky offers enhanced Threat Intelligence Portal

The new version of Kaspersky Threat Intelligence (TI) brings together all of the cybersecurity expert's TI services, TI sources and cyberattack intelligence capabilities into a single, convenient interface. The updated portal supports real-time search across various TI resources, including the Kaspersky databases, the dark web, and the surface web. The new functions also include the visualization of investigations and advanced analysis options for complex malicious objects. Insights into the threat landscape Threat intelligence provides comprehensive insights into the threat landscape and enables companies to anticipate risks; it has become one of the most developing and in demand…

Read more

New UEFI rootkit discovered: CosmicStrand
Kaspersky_news

Kaspersky experts have discovered a new example of a UEFI rootkit: CosmicStrand. At the moment, the CosmicStrand kit only targets private individuals and not companies. But that changes is only a matter of time. Kaspersky experts have discovered a rootkit developed by an Advanced Persistent Threat (APT) actor that remains on the victim's computer even after the operating system is restarted or Windows is reinstalled. The UEFI firmware rootkit 'CosmicStrand' has so far mainly been used for attacks on private individuals in China, some victims are also located in Vietnam, Iran...

Read more

LofyLife: Campaign distributes infected open source code packages
Kaspersky_news

Two days ago, on July 26, Kaspersky experts discovered a new malicious campaign called 'LofyLife' using the internal automated system monitoring open source repositories. The public collection of open source code packages is thus compromised. The campaign uses four malicious packages that proliferate 'Volt Stealer' and 'Lofy Stealer' malware in the open-source npm repository. They collect various information from their victims, including Discord tokens and credit card information, and spy on them over time. Infected Open Source Code Packages The npm repository is a public collection of open source code packages widely used in front-end web apps, mobile apps, robots and routers and…

Read more

Phishing simulations: employees not vigilant enough
Phishing simulations: employees not vigilant enough

Employees are not vigilant enough when receiving emails. A current Kaspersky analysis of phishing simulations in companies shows that many employees usually do not notice hidden pitfalls in company matters and notifications about alleged delivery problems in e-mails. Almost one in five clicked on the link in the email templates that imitated this type of phishing attack. Other common phishing e-mails, which announce that one's own computer has been hacked or promise a profit, are hardly successful with a click conversion of one to two percent. According to estimates, 9 out of 10 attacks start via phishing…

Read more

Security Warnings: 70 percent of businesses are overwhelmed 
Kaspersky_news

Nearly three in four organizations (70 percent) are struggling to keep up with the volume of alerts generated by their security analysis tools. This translates into a lack of resources for key strategic tasks, leading organizations to turn to process automation and outsourcing, as shown in the recent ESG study, SOC Modernization and the Role of XDR, commissioned by Kaspersky . In addition to the volume of alerts, however, the variety of alerts is also a concern for more than two-thirds (67 percent) of those in a security operations center...

Read more

Financial industry: Training reduces cybersecurity risks
Financial industry: Training reduces cybersecurity risks

As a Kaspersky study for the financial industry shows: employee training is essential to minimize cyber security risks. More than one in three companies has experienced a security incident that can be traced back to employees. The behavior and knowledge of employees with regard to cyber risks is a factor that should not be underestimated in the German financial sector, as a current Kaspersky study shows. Those surveyed in Germany see the greatest risks as the non-observance of company guidelines, the use of shadow IT and remote work, e.g. in the home office. In fact, according to the survey, 39 percent of organizations surveyed had…

Read more

Detect stalkerware with open source tool TinyCheck

Stalkerware is not only used for private tracking of people. This can also be used to spy on employees’ smartphones. The open source tool TinyCheck helps to check mobile devices. Kaspersky's open-source tool for detecting stalkerware, 'TinyCheck', will have a hub where the latest developments and changes in use will be presented. The website also helps to further strengthen the community of everyone involved in the development of the tool and the fight against stalkerware and spyware. Stalkerware for spying TinyCheck was launched in 2019 after a…

Read more

Ransomware guide to current techniques and methods

In an open letter, a group of professors from the field of IT security call on the federal government to implement more measures against encryption software, so-called ransomware. For companies that have not yet been affected by a ransomware attack, on the other hand, only 67 percent would be willing to do so in principle...

Read more