News

Latest news about B2B cyber security >>> PR agencies: add us to your mailing list - see contact! >>> Book an exclusive PartnerChannel for your news!

OT security is of great importance
OT security is of great importance

The security of the operating system and applications is of crucial importance for the economic success of all companies. However, very few people know that so-called OT security is just as vulnerable as IT. In the manufacturing industry in particular, companies now often have their own production facilities that are linked to the internal IT landscape. Simeon Mussler, COO at Bosch CyberCompare, explains which three aspects companies need to address first to adequately protect their industrial assets. Raising awareness Trojans, phishing e-mails, data leaks - while the media has again reported a lot about…

Read more

Identity Security for Zero Trust
Identity Security for Zero Trust

While the majority of organizations understand the importance of identity security, only 9 percent are taking an agile, holistic, and mature approach to protecting identities in their hybrid and multi-cloud environments. That's according to a new study by CyberArk. This also provides a maturity model that helps security leaders assess their current strategies, uncover risks and strengthen cyber resilience. For the report, The Holistic Identity Security Maturity Model: Raising the Bar for Cyber ​​Resilience,1 CyberArk and the Enterprise Strategy Group (ESG) surveyed 1.500 security professionals worldwide, including…

Read more

Mobile phishing against company employees
Mobile phishing against company employees

Stolen employee credentials are one of the most effective ways for attackers to infiltrate a company's infrastructure. In 2022, the number of mobile phishing attacks was higher than ever. Once they have the credentials of any of the accounts in hand, it is much easier for them to bypass the security measures and gain access to sensitive data. But how do the attackers get these credentials? In many cases, the answer is mobile phishing. A global study by Lookout, The Global State of Mobile Phishing Report, found that the number of…

Read more

Top malware in March
Top malware in March

Last month, security researchers uncovered a new malware campaign from the notorious Emotet Trojan. As reported earlier this year, since Microsoft announced it would block macros in Office files, Emotet attackers have been looking for alternative ways to proliferate malicious files. In the most recent campaign, the attackers have chosen a new strategy: they send spam emails that contain a malicious OneNote file. Once opened, a fake message appears, tricking the victim into clicking on the document, thereby downloading the Emotet infection. Once installed, the malware can steal email user credentials such as login credentials…

Read more

Heavily exploited vulnerabilities up to five years old!
Heavily exploited vulnerabilities up to five years old!

As Tenable's Threat Landscape Report shows, the most frequently attacked vulnerabilities have typically been known for many years. The attackers are counting on the fact that the patches have not been used and that no one is monitoring the gaps. With Microsoft Exchange, Log4Shell or Follina, there were always old vulnerabilities. Tenable's annual Threat Landscape Report is out. The report confirms the continued threat of known vulnerabilities—that is, those for which patches have already been made available—as the prime vector for cyberattacks. The results are based on the analysis of cyber security incidents, vulnerabilities…

Read more

Security study: Poor preparation for emergencies
Security study: Poor preparation for emergencies

In 2023, security departments must work more purposefully in vulnerability management and supply chain security. This is a central result of the "State of Security Preparedness 2023" study published by the security provider Ivanti. In contrast to their international colleagues, the degree of maturity of German security departments is only mediocre. This is particularly evident in business-critical issues such as dealing with weak points and in security training for business partners in the company's own distribution chain. German security teams have some catching up to do According to the Ivanti study, the maturity of German IT security departments is significantly lower than in neighboring European countries and worldwide. Just 19% of respondents estimate...

Read more

Finance: Many identity-related security breaches 
Finance: Many identity-related security breaches

Identity-related security breaches are on the rise in financial services, according to the SailPoint study: a staggering 93 percent of respondents said they had been compromised in the past two years. SailPoint Technologies has published the study “The state of identity security 2023: A spotlight on financial services”. The research highlights the need for better identity security in the financial services industry and shows that while more financial service providers are emphasizing identity security, attacks on corporate security remain commonplace. For example, 93 percent of those surveyed stated that they...

Read more

State of the Phish Report: Enormous ransomware damage
State of the Phish Report: Enormous ransomware damage

The current "State of the Phish" report shows that ransomware attacks pose an increasing threat to German companies. Ransomware attacks wreak havoc. Who Pays the Ransom: Only 4 out of 10 companies get the full data back. That's according to the ninth annual State of the Phish report released today by leading cybersecurity and compliance firm Proofpoint. 85 percent of German companies were affected by a ransomware attack last year. 63 percent of these attacks were successful. Defying ransom: only 41 percent get data back Less than half (41 percent)…

Read more

Huge rise in endpoint ransomware

WatchGuard's Internet Security Report Q4/2022 shows the increase in endpoint ransomware and less network malware. The analysis confirms that encrypted connections have become the method of choice for spreading malware. The latest WatchGuard Internet Security Report (ISR) for the fourth quarter of 2022 shows how massively end devices are the focus of attackers. While the number of malware detected on the network is declining, the researchers at the Threat Lab have seen a surge in ransomware on endpoints - the increase is a staggering 627 percent. Over 600 percent more ransomware…

Read more

Ransomware Report: LockBit in attack mode
Ransomware Report: LockBit in attack mode

LockBit continues to shape the ransomware scene. The ransomware group again tops the list of groups selling ransomware-as-a-service (RaaS). In February 2023, LockBit reported a total of 126 victims on its leak page, according to analysis by Malwarebytes' threat intelligence team. It is not for nothing that the threat intelligence team at Malwarebytes named LockBit as one of the five biggest cyber threats for companies in 2023 in its “2023 State of Malware” report. As early as 2022, LockBit consistently proved to be by far the most active ransomware group. According to Malwarebytes, it was responsible for almost a third of all known…

Read more