Network Security News | Ingalls Information Security

Articles of interest from the week of September 30, 2019

Written by John Frasier | Sep 30, 2019 4:00:00 AM

Rethinking Responsibilities and Remedies in Social-Engineering Attacks

The idea that humans are the weakest link shouldn’t guide the thinking on social-engineering defense. (By James Plouffe, ThreatPost) NOTE: Our Managed Detection and Response helps make your organization click-proof.

Cities Are Easy Prey for Cybercriminals. Here's How They Can Fight Back

Make no mistake: the world is in the early stages of a techno-war against city governments and urban infrastructure. And while some cities have bolstered their capabilities to patch their vulnerabilities, they are entirely unprepared for the scale of cyberthreats that are coming. (By Robert Muggah and Marc Goodman, World Economic Forum) NOTE: Our Managed Detection and Response solution has a proven track-record of solving these issues for the city and local governments that we serve. We can essentially help them fight back against the cybercriminals.


National Cybersecurity Awareness Month

Held every October, National Cybersecurity Awareness Month (NCSAM) is a collaborative effort between government and industry to raise awareness about the importance of cybersecurity and to ensure that all Americans have the resources they need to be safer and more secure online. (Department of Homeland Security) NOTE: To celebrate being a Champion of National Cybersecurity Awareness Month, Ingalls Information Security is offering a free one-hour consultation to discuss your organization's risk profile.  We'll discuss the most important security controls your organization should be focused on and we'll provide recommendations on how to close your most critical control gaps.


Guess what? You Should Patch Exim Again!

Hot on the heels of a patch for a critical RCE Exim flaw comes another one that fixes a denial of service (DoS) condition (CVE-2019-16928) that could also be exploited by attackers to pull off remote code execution. (By Zeljka Zorz, HelpNetSecurity)


How To Stop Being The Last To Know When Your Data Is Breached

Another week, another data breach. This time around, it’s the meal-delivery service DoorDash, which just announced that hackers had stolen data from 4.9 million customers, delivery workers and merchants back in May. (By Suzanne Rowan Kelleher, Forbes) NOTE: Whether your incident is the result of a hacker, malware, advanced persistent attack or a negligent employee, Ingalls Information Security is prepared to respond quickly to security incidents with our incident response team.