| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|
| Su | Mo | Tu | We | Th | Fr | Sa |
|---|---|---|---|---|---|---|

Threat Intelligence, Crypto Among Topics at Must-See Sessions
Our handpicked list of compelling RSA 2015 sessions will help you find the cybersecurity signal above the conference noise.
A widely reported Russian cyber-spying campaign against diplomatic targets in the United States and elsewhere has been using two previously unknown flaws in software to penetrate target machines, a security company investigating the matter said on Saturday.
Threat actors have set up several new C&C servers and dozens of new malicious URLs -- and now targeting White House staffers, Trend Micro says.
Even though its activities were exposed last year, a cyberespionage group dubbed Pawn Storm has ramped up its efforts over the past few months, targeting NATO members and potentially the White House.

Many ordinary people imagine hackers as Guy Fawkes-mask-wearing rebels living on the margins of society, suspicious of government, and courageous or crazy enough to follow wherever their computer wizardry takes them. In reality, said experts, many just want a steady job.

More small businesses are falling victim to “ransomware,” in which malicious code locks up computer files and cybercriminals demand a ransom to free them.
Online dating hackers are becoming much more sophisticated in the way they target and steal money victims' cash. Cybercriminals are now asking their "dates" to install a custom-made smartphone app that installs malware and allows them to extract details for blackmail purposes, Global Dating Insights reports.
Fourteen C&Cs dismantled to take out nerve center of a botnet that spanned 190 countries.

Analysts believe that recent point-of-sale (POS) malware attacks targeting more than 100 terminals in Brazil were the handiwork of a single person – who managed to steal more than 22,000 unique credit cards numbers in a little over a month.

Survey results indicate a lack of information about the security safeguards in place is fueling respondents’ worries about Internet of Things (IoT).

A new report released this week by Trend Micro and the Organization of American States (OAS) shows a dramatic increase in cyberattacks directed against critical infrastructure owners and operators.

Tokenization, where credit card numbers and other sensitive data is replaced by random characters, can be a secure alternative to encryption in many cases -- but would not have helped in the majority of retail breaches over the past two years.
Trend Micro’s Tom Kellerman and David Hoovler, former trial attorney at the U.S. Justice Department, discuss the report that criminal hackers doing the bidding of the Russian government hacked into a non-classified White House computer network last year.
A new ransomware variant detected by Trend Micro as BAT_CRYPVAULT.A, or CRYPVAULT, is being distributed as an attachment in spam emails and is targeting mostly Russian speakers

Trend Micro just released a new report that shows how many businesses are vulnerable to Sony-like attacks. Trend Micro Chief Cybersecurity Officer Tom Kellermann breaks down the report.
Hacking attacks that destroy rather than steal data or that manipulate equipment are far more prevalent than widely believed, according to a survey of critical infrastructure organizations throughout North and South America.
Hackers are trying to tamper with critical infrastructure with cyberattacks designed to delete files, manipulate equipment and shut down networks, according to a new international survey.
You don't have to be a celebrity to get nailed by a nude photo. According to a report by Trend Micro, sextortion—the use of compromising photos or videos to extract money from victims—is on the rise.

Recent research from IBM Security and the Ponemon Institute disclosed a major lack of mobile security – according to the results, almost 40% of large companies aren’t taking the necessary measures to protect their mobile apps.
The Health Information Trust (HITRUST) Alliance will sponsor a study to analyze the effects of cyber attacks on healthcare organizations.
While observing the evolution of point-of-sale malware, called NewPosThings, Trend Micro traced suspicious traffic back to two U.S. airports.
The majority of consumers aren't willing to alter their behavior to preserve privacy in the era of the Internet of things, even though it remains a huge issue for people, a Trend Micro survey of 1,903 individuals from 18 countries found.

Repackaged applications can present multiple enterprise security risks. Expert Nick Lewis explains what these fake apps are and how to defend against them.

A big part of what makes technology exciting is the promise it holds for the future.
Quickly patching vulnerable software is key to keeping computer systems secure. Yet, consumers are increasingly leaving their systems open to attack by failing to patch two ubiquitous third-party programs: Oracle's Java and Adobe's Flash.
Experts Weight Reasons for New Regulatory Warnings
In recent years we've seen increasing numbers of companies fall victim to ransomware that encrypts a compromised computer's files, threatening to delete them all if a Bitcoin ransom isn't paid to the attacker…

Although compliance rules are supposed to set minimum standards for protecting data, many companies treat them as maximum benchmarks.
Trend Micro Chief Cybersecurity Officer Tom Kellermann examine GitHub under cyber-attacks for the fourth day. He speaks with Bloomberg's Alix Steel on "Street Smart."

Organizations are collecting, processing, and analyzing more and more network traffic.
Software and tech predictions have been the talk of IT town for a good bit of time, particularly when 2014 came to a close. Despite the fact that predictions are just that – predictions – and may either come to fruition or not, they point businesses in the right direction in terms of the trends to watch out for in their respective fields.

The final piece of the info sharing legislative puzzle was laid down on Tuesday as lawmakers push toward an April session that could see cyber bills hit the floors of both chambers.

For years, criminals have been tricking people into performing embarrassing sexual acts on the Internet, and then blackmailing them with recordings of that behavior.
Sextortion rings that dupe victims into recording themselves performing sexual acts and afterward demanding ransom or they will publicly distribute the recordings are on the rise according to a report by Trend Micro.
Researchers have picked up on a new spam campaign that sends victims phishing messages from a .gov account that thwarts email validation systems.
Next-generation endpoint security suite could be a billion dollar play
Security researchers have uncovered a new targeted attack campaign against Israeli and European organizations launched by the state-sponsored threat group known as ‘Rocket Kitten’.

The Apple Watch hasn't even been released yet—but one company is betting it's going to be a big hit with business users, and has made an app to turn the smartwatch into an office.
Trend Micro's Tom Kellermann and Cylance CEO Stuart McClue discuss why hackers are targeting health insurance companies.
Experts analyze bank breach investigation developments
Since 2006, when the earliest exploit kit (WebAttacker) was made available in the crimeware market, these hack toolkits have become one of the preferred ways for cybercrooks to deliver malware to unsuspecting users.
Why experts say employee education is critical
Lenovo may have publicly buried bloatware, but it’s anything but dead. After the company’s Superfish scandal, we shopped Best Buy and found it alive and well on major vendors’ PC offerings. A little research should save you from the worst of it, though. Here’s what we learned.
The tools and tactics being used to go after victims reveal growing sophistication, and gamers need to look out, security researchers say.

Additional login step brings extra layer of protection against hackers for Apple’s messaging and video chat, but more can be can be done say experts

Kathleen Pender has answers to reader questions about online tax filing, credit scores and how long to keep tax records.
Dell is getting deeper into the business of securing corporate networks, releasing a new integrated security suite based on encryption technology it acquired when it purchased Credent in 2012.
Security researchers have discovered two point-of-sale (POS) malware families: “PwnPOS,” which showcases attackers' “simple but thoughtful construction” for skirting detection, and the “LogPOS” family that uses Microsoft Windows' mailslots to deliver stolen credit card data to attackers.