Posts

Showing posts with the label cyber crime

Risk Management Framework for Information Systems and Organizations : NIST

Image
Risk Management Framework for Information Systems and Organizations A System Life Cycle Approach for Security and Privacy by  U.S. Department of Commerce Wilbur L. Ross, Jr., Secretary National Institute of Standards and Technology Walter Copan, NIST Director and Under Secretary of Commerce for Standards and Technology INTRODUCTION  THE NEED TO MANAGE SECURITY AND PRIVACY RISK  Organizations depend on information systems to carry out their missions and business functions. The success of the missions and business functions depends on protecting the confidentiality, integrity, availability of information processed, stored, and transmitted by those systems and the privacy of individuals. The threats to information systems include equipment failure, environmental disruptions, human or machine errors, and purposeful attacks that are often sophisticated, disciplined, well-organized, and well-funded. When successful, attacks on information systems can result in seriou...

Cyber-insurance, privacy and data security- Interesting read

Cyber-insurance, privacy and data security newsletter – May 2017 Newsletters May 23 2017 | Contributed by DAC Beachcroft Cyber threat "significant and growing" A recent report by the National Cyber Security Centre (NCSC) and National Crime Agency (NCA) (the "NCA Report") described the cyber-threat to UK business as "significant and growing". 65% of large UK firms detected a cyber security breach in the past year according to the government's Cyber Security Breaches Survey 2016 (the "Cyber Survey"). Against this background, cyber security combined with effective risk management, is a key priority for businesses in 2017. Three factors contribute to this increased threat of cyber-attacks. First, the Internet of Things (IoT) and the progression towards an ever increasing number of internet connected devices provides hackers with more attack vectors than ever before. Secondly, hackers are learnin...

The Emerging Need for Cybersecurity Diligence in M&A-Good read

Image
"The Emerging Need for Cybersecurity Diligence in M&A" April 19, 2017 | Skadden, Arps, Slate, Meagher & Flom LLP | Shilpi Gupta , Stuart D. Levi , William Ridgway Cybercrime has emerged as one of the foremost threats a company faces. As a result of a few keystrokes, a company may find its customers’ data sold on the dark web, its intellectual property in the hands of a competitor or its operations paralyzed by ransomware. It should come as little surprise, then, that cybersecurity has become a key risk factor in mergers and acquisitions. A 2016 survey by West Monroe Partners and Mergermarket found that 77 percent of top-level corporate executives and private equity partners reported that the importance of cybersecurity at M&A targets had increased significantly in recent years. Given this trend, executives and directors contemplating acquisitions should consider the following cyber-related issues when conducting due diligence. Key Considera...

IIMB, in association with SFLC, hosted a roundtable on Privacy and Data Protection in the Digital Economy, on August 04, 2016

Image
Check out a glimpse of the Round Table discussion on Privacy & Data Protection at IIM, Bangalore on Aug 4.  IIMB, in association with SFLC, hosted a roundtable on Privacy and Data Protection in the Digital Economy, on August 04, 2016 https://www.iimb.ernet.in/node/15096

Oracle’s Point-of-Sale division targeted by professional hackers

Oracle’s Point-of-Sale division targeted by professional hackers K&L Gates prev next USA August 17 2016 Oracle confirmed last week that its security was breached by a Russian organized cybercrime group infamous for hacking retailers and banks. Alarmingly, Oracle’s MICROS point-of-sale credit card payment system was one of the systems targeted in the attack. While the impact of the breach is still being investigated, the attack could have had wide impact. MICROS is one of the top three point-of-sale vendors worldwide and sells point-of-sale systems used at more than 330,000 cash registers globally. It has been reported that Oracle became aware of the breach after its staff discovered malicious code on the MICROS customer support portal and systems. It is thought that the hackers installed malware on the troubleshooting portal in order to capture customers’ credentials as they logged in. Usernames and passwords could then be used to access cust...