Sat.Oct 28, 2017 - Fri.Nov 03, 2017

article thumbnail

I'm Joining Report URI!

Troy Hunt

What if I told you. that you can get visitors to your site to automatically check for a bunch of security issues. And then, when any are found, those visitors will let you know about it automatically. And the best bit is that you can set this up in a few minutes and add it to your site with zero risk. Or if you like, set it up so that it can automatically block certain types of attacks.

Risk 238
article thumbnail

Partner Spotlight: Q&A with Entrust Datacard

Thales Cloud Protection & Licensing

Inspired by National Cybersecurity Awareness Month (NCSAM), I kicked off our partner spotlight series earlier this month with one of our valued partners in the privileged account management space. In this piece we turn our attention to identity management and transaction security and we spotlight Entrust Datacard. The company is a provider of identity and secure transaction technologies that make business and personal experiences – such as making purchases, crossing borders, accessing e-governme

Insiders

Sign Up for our Newsletter

This site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.

article thumbnail

GhostWriter AWS Issue Impacts Thousands of Amazon S3 Buckets

eSecurity Planet

Affected buckets are owned by major news sites, popular retailers and leading ad networks.

Retail 74
article thumbnail

NopSec Unified VRM Highlight: My Risk

NopSec

IT Security and Risk teams in every organization have one common goal: to protect the company’s data from breaches by strengthening its security posture. Each member of the team has different goals (that work towards the common goal) depending on their roles. While the Engineers and Analysts are more focused on the day to day remediation of vulnerabilities, CISOs and upper level management are more concerned with the overall strategic role of cybersecurity within the organization’s goals.

Risk 52
article thumbnail

How to Avoid Pitfalls In Automation: Keep Humans In the Loop

Speaker: Erroll Amacker

Automation is transforming finance but without strong financial oversight it can introduce more risk than reward. From missed discrepancies to strained vendor relationships, accounts payable automation needs a human touch to deliver lasting value. This session is your playbook to get automation right. We’ll explore how to balance speed with control, boost decision-making through human-machine collaboration, and unlock ROI with fewer errors, stronger fraud prevention, and smoother operations.

article thumbnail

Bypassing Browser Security Warnings with Pseudo Password Fields

Troy Hunt

It seems that there is no limit to human ingenuity when it comes to working around limitations within one's environment. For example, imagine you genuinely wanted to run a device requiring mains power in the centre of your inflatable pool - you're flat out of luck, right? Wrong! Or imagine there's a fire somewhere but the hydrant is on the other side of train tracks and you really want to put that fire out but trains have still gotta run too - what options are you left with?

Passwords 214
article thumbnail

Why practical Blockchain must become a reality

Thales Cloud Protection & Licensing

In just a few short years, Bitcoin, the innovative cryptocurrency underpinned by Blockchain technology, has earned broad legitimacy and won plaudits from many top technologists, investors, and even bankers. With the concept now proven, attention has shifted to the technology behind Bitcoin in the hope that it might help to solve more problems than digital currency.

LifeWorks

More Trending

article thumbnail

Incremental "Gains" Are Just Slower Losses

The Falcon's View

Anton Chuvakin and I were having a fun debate a couple weeks ago about whether incremental improvements are worthwhile in infosec, or if it's really necessary to "jump to the next curve" (phrase origin: Guy Kawasaki's " Art of Innovation ," watch his TedX ) in order to make meaningful gains in security practices. Anton even went so far as to write about it a little over a week ago (sorry for the delayed response - work travel).

InfoSec 40
article thumbnail

Weekly Update 59

Troy Hunt

I've actually had a day off today.

article thumbnail

In Case You Missed It: Money 20/20 Conference Highlights

Thales Cloud Protection & Licensing

Money 20/20 is always one of my favorite conferences to attend. Every year, I am blown away by the innovation that is shaping the digital payments industry, and this year’s show did not disappoint. The conference features a variety of topics and sessions regarding all aspects of financial services, from cryptocurrency to banking. This year, I noticed a recurring theme: user experience, not payments, drives business.

article thumbnail

Secdo 5.0 Makes Behavioral-Based Bet on Automated Incident Response

eSecurity Planet

Secdo 5.0 offers security professionals new, behavioral-based tools to block threats to their systems.

45
article thumbnail

Why Giant Content Libraries Do Nothing for Your Employees’ Cyber Resilience

Many cybersecurity awareness platforms offer massive content libraries, yet they fail to enhance employees’ cyber resilience. Without structured, engaging, and personalized training, employees struggle to retain and apply key cybersecurity principles. Phished.io explains why organizations should focus on interactive, scenario-based learning rather than overwhelming employees with excessive content.

article thumbnail

Design For Behavior, Not Awareness

The Falcon's View

October was National Cybersecurity Awareness Month. Since today is the last day, I figured now is as good a time as any to take a contrarian perspective on what undoubtedly many organizations just did over the past few weeks; namely, wasted a lot of time, money, and good will. Most security awareness programs and practices are horrible BS. This extends out to include many practices heavily promoted by the likes of SANS, as well as the current state of "best" (aka, failing miserably) practices.