17 February 2023
Very interesting and positive move toward more vulnerability disclosures.
“A new Belgian law will allow ethical hackers to hack into the data of Belgian companies without any prior permission. Until now such practices could land you in jail.”
#vulnerability #disclosure #security #cybersecurity
https://www.vrt.be/vrtnws/en/2023/02/15/ethical-hackers-can-now-legally-hack-belgian-companies/
Source: LinkedIn Dr. Rey Leclerc Sveinsson
14 February 2023
Wow! 50 to 70 million request per second DDoS attack hindered by Cloudflare. “Targeted websites included a popular gaming provider, cryptocurrency companies, hosting providers, and cloud computing platforms.” #security #cybersecurity #ddos #cloudflare #cyberattack
https://thehackernews.com/2023/02/massive-http-ddos-attack-hits-record.html
10 January 2023
Cybersecurity Tabletop Exercise
#
Here’s a useful resource on #cybersecurity #tabletop exercises.
Something that should be done regularly in companies. Thank you @LisaForteUK et al.
https://red-goat.com/cybersecurity-tabletop-exercise/
7 December 2022
PCI DSS v4.0 & Passwords
#
Several years of research have shown that frequent password rest cycles hurt the user, and the security of the password
1,2. Users tend to slightly modify the password rather than coming up with a new password. For example, changing MyPassword^ to MyPassword1^.
In addition, best practices suggest users have a minimum of 12 characters, mix alphanumeric and special symbols. Imagine applying this rule to each of our accounts, since passwords shouldn’t be reused. Most users do not store their password in a password manager, making these recommendations a burden and a challenge for people.
...