-
Webinar Jul 31, 2024
Entrust distrust: now what?
Google Chrome and Mozilla have announced that after Oct 31 and Nov 30 respectively the browsers will distrust newly issued public Entrust SSL certificates.
-
News Article Jul 30, 2024
The online tracking technology 'is not good for the web' and should be restricted, the group says, even as Google again delays plans to drop the browser technology.
-
News Article Jul 30, 2024
In a July 29 blog post, Microsoft researchers said during a ransomware attack, having full administrative permission on an ESXi hypervisor can mean that the threat actor can encrypt the file system, which may affect the ability of the hosted servers to run and function. It also lets the threat actor access hosted VMs and potentially exfiltrate data or move laterally within the network.
-
News Article Jul 30, 2024
Recent research has shown the Play ransomware group, also known as PlayCrypt and Balloonfly, is deploying a Linux variant that targets ESXi environments. Play has displayed increases in activity throughout 2024, as the group was ranked the most prolific ransomware group in April of 2024.
-
Podcast Jul 30, 2024
Root Causes 408: Takeaways from Recent Conversations with PQC Experts
We recap key takaways from recent conversations about post-quantum cryptography (PQC) with leading experts.
-
News Article Jul 29, 2024
Internal documents from Leidos Holdings Inc., a leading IT services provider to various U.S. government agencies—including the Defense Department—have been leaked online by hackers. According to a Bloomberg News report on July 23, the documents are believed to have been exfiltrated during a breach of a system operated by Diligent Corp., which Leidos used for its operations.
-
News Article Jul 29, 2024
A Taiwanese company claimed that withdrawing mis-issued software certificates by an industry-agreed deadline could crash air traffic control, paralyse healthcare facilities and bring down parts of the national grid.
-
Podcast Jul 26, 2024
Root Causes 407: Whatever Happened to Passkeys?
WebAuthn arrived last year with great fanfare. But here we are in the latter half of 2024, and they are rarely used. In this episode we discuss why.
-
News Article Jul 25, 2024
The notorious Chinese Smishing Triad gang, known for its SMS phishing attacks against Pakistan, the US, and European nations, has now set its sights on iPhone users in India. The group is exploiting iMessage and the government-owned India Post in a sophisticated phishing scam.
-
News Article Jul 24, 2024
On July 19, several organizations experienced delays to a Microsoft and Crowdstrike outage that began the night before. Complications such as delayed flights continue to affect individuals worldwide days after the outage.
-
News Article Jul 24, 2024
A network misconfiguration by an AT&T Mobility employee caused the 12-hour network outage in February that blocked more than 25,000 emergency 911 calls, according to a July 22 report released by the Federal Communications Commission (FCC).
-
News Article Jul 23, 2024
Automating SSL certificate renewals is essential for businesses of all sizes to avoid outages and security risks associated with expired certificates. The renewal process can be complex and time-consuming, especially for organizations with large or intricate IT infrastructures. With upcoming changes reducing SSL certificate validity periods to 90 days, the need for efficient renewal processes is even more critical. Automated SSL renewal solutions offer significant benefits, including preventing expirations, saving time, and ensuring accuracy. Sectigo’s Certificate Manager Pro provides a comprehensive, automated solution to manage and renew SSL certificates seamlessly, enhancing security and reducing administrative burdens.