How Do You Define Prevention?

In discussions about cybersecurity, a word that gets used a lot is “prevention.” How do you prevent cyberattacks before they succeed? Will the cybersecurity measures currently in place offer the prevention of losses due to a cyberattack? What part of an attacker’s playbook does prevention actually stop?
read more

Continue reading

PCI 3.2 Compliant Organizations Are Likely GDPR Compliant

PCI DSS version 3.1 will be retired on October 31, 2016, with version 3.2 being the only valid version beginning the 1st of November. From that date, any new validation of PCI compliance will have to be against version 3.2. The new requirements will, however, be considered 'best practices' until Feb. 1, 2018 when they will be mandatory.
read more

Continue reading

Nymaim Starts Using PowerShell to Download Payload

A recently discovered variant of the Nymaim dropper brings several new features and capabilities, including new obfuscation and delivery methods, the use of PowerShell, and what researchers call an interesting anti-analysis and anti-detection mechanism.
read more

Continue reading