Wednesday, May 17, 2017

WannaCry ransomware uses NSA Windows exploit to wreak havoc worldwide

Security Digest
Information security news and advice from TechTarget's network | May 17, 2017
TechTarget
FEATURED STORY
WannaCry ransomware prompts legacy MS17-010 patch
by Michael Heller, Senior Reporter

Microsoft responds to WannaCry ransomware with an MS17-010 patch for legacy systems as new ransomware variants spread to more countries around the globe. (SearchSecurity.com)

Advertisement
NEWS
 
Microsoft slams NSA over cyberweapon in WannaCry ransomware

Microsoft blames the U.S. government for cyberweapon stockpiling as WannaCry ransomware infections continue to spread, though some experts say Microsoft shares responsibility. (SearchSecurity.com)

 
Android clickjacking attacks possible from Google Play apps

Google implemented clickjacking attack mitigations in Android but left a potential avenue for malicious actors that won't be fixed until Android O is released. (SearchSecurity.com)

 
Risk & Repeat: Critical Windows bug triggers disclosure debate
This week's Risk & Repeat podcast looks at how a simple tweet about a Windows bug from Project Zero researcher Tavis Ormandy sparked a debate about vulnerability disclosure. (SearchSecurity.com)
 
 
 

Trump cyber executive order focuses on cyber-risk management

The Trump cyber executive order arrived, with a focus on cyber-risk management and reports. But key details are missing in terms of implementing changes. (SearchSecurity.com)

 
Timeline: Symantec certificate authority improprieties
Timeline: Follow along as Google and Mozilla raise issues with Symantec certificate authority actions, and then attempt to return trust to the CA giant. (SearchSecurity.com)
 
Cisco vulnerability from WikiLeaks' Vault 7 dump finally patched
News roundup: A Cisco vulnerability disclosed in the Vault 7 dump finally has a patch. Plus, Google's fuzzing bot finds over 1,000 bugs in five months, Comey dismissed and more. (SearchSecurity.com)
 
 
 
EXPERT ADVICE
 
Why WPA2-PSK can be a security risk even with an uncracked key

WPA2-PSK is a popular way to bolster wireless security, but it's not perfect. Expert Joseph Granneman explains WPA2 and other aspects of the complicated history of Wi-Fi security. (SearchSecurity.com)

 
Applying the new FDA medical device guidance to infosec programs
New FDA medical device guidance demonstrates the need for better cybersecurity during manufacturing and use. Expert Nick Lewis explains how enterprises can use the recommendations. (SearchSecurity.com)
 
 
 
 

Cloud privacy: Baseline features and emerging techniques

Achieving cloud privacy can be a lofty task for enterprises, but it's not as impossible as it seems. Expert Ed Moyle outlines how to keep cloud data private with newer techniques. (SearchCloudSecurity.com)

 
What is NIST's guidance on lightweight cryptography?

NIST released a report on lightweight cryptography. Expert Judith Myerson reviews what the report covers and what NIST recommends for standardization. (SearchSecurity.com)

 
About This E-Newsletter
This e-newsletter is published by the TechTarget network. To unsubscribe from Security Digest, click here. Please note, this will not affect any other subscriptions you have signed up for.

TechTarget Security Media Group, 275 Grove Street, Newton, MA 02466. Contact: webmaster@techtarget.com

Copyright 2017 TechTarget. All rights reserved.
TechTarget

No comments: