2021

Remove cybersecurity-network-security
article thumbnail

Another SolarWinds Orion Hack

Schneier on Security

While the alleged Russian hackers penetrated deep into SolarWinds network and hid a “back door” in Orion software updates which were then sent to customers, the suspected Chinese group exploited a separate bug in Orion’s code to help spread across networks they had already compromised, the sources said.

Hacking 363
article thumbnail

Don’t Bother Using The “Device Filter” Security Feature Offered By Your Home Network Router

Joseph Steinberg

The MAC address “device filtering” feature of your LAN’s router is unlikely to provide you with any significant security benefits – and, if you enable the feature, it may cause you heartaches. In the case of many routers, all of your other devices may lose Internet connectivity when you perform such an update.

Wireless 360
Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

National Security Risks of Late-Stage Capitalism

Schneier on Security

Early in 2020, cyberspace attackers apparently working for the Russian government compromised a piece of widely used network management software made by a company called SolarWinds. It was a huge attack, with major implications for US national security. SolarWinds certainly seems to have underspent on security. Who is at fault?

Risk 363
article thumbnail

How Cyber Safe is Your Drinking Water Supply?

Krebs on Security

percent of utilities have identified all IT-networked assets, with an additional 21.7 percent of utilities have identified all IT-networked assets, with an additional 21.7 percent had identified all OT-networked assets, with an additional 22.5 percent had identified all OT-networked assets, with an additional 22.5

Hacking 363
article thumbnail

Newsweek Expert Forum Welcomes Cyber Security Expert Joseph Steinberg

Joseph Steinberg

Cyber Security Expert, Joseph Steinberg, has joined Newsweek’s Expert Forum, the premier news outlet’s invitation-only community of pioneering thinkers and industry leaders. Steinberg was selected for the forum based on his proven expertise in the fields of cybersecurity, privacy, and artificial intelligence.

article thumbnail

At Least 30,000 U.S. Organizations Newly Hacked Via Holes in Microsoft’s Email Software

Krebs on Security

On March 2, Microsoft released emergency security updates to plug four security holes in Exchange Server versions 2013 through 2019 that hackers were actively using to siphon email communications from Internet-facing systems running Exchange. Speaking on condition of anonymity, two cybersecurity experts who’ve briefed U.S.

Hacking 364
article thumbnail

Chinese Supply-Chain Attack on Computer Systems

Schneier on Security

And second, there are easier, more effective, and less obvious ways of adding backdoors to networking equipment. From the current Bloomberg story: Mike Quinn, a cybersecurity executive who served in senior roles at Cisco Systems Inc. ”) Here’s me in 2018: Supply-chain security is an incredibly complex problem.