CSO

The day's top cybersecurity news and in-depth coverage

CSO First Look

October 01, 2021

APT29 targets Active Directory Federation Services with stealthy backdoor

The FoggyWeb post-exploitation backdoor is persistent and steals configuration databases and security token certificates. Read more ▶

Image: Sponsored by Terranova Security: Register for the 2021 Gone Phishing Tournament.

Sponsored by Terranova Security: Register for the 2021 Gone Phishing Tournament.

Get a clear picture of your organization’s true phishing click rate with in-depth, data-driven insight when you sign up for the Gone Phishing Tournament. Co-Sponsored by Microsoft. Register Now.

4 lessons from recent Microsoft Azure cloud vulnerabilities

The discovery of serious vulnerabilities in Azure's Cosmos database and Linux VM shows you can't take cloud security for granted. Here's how to reduce the risk from current and future vulnerabilities.

Consumers are done with passwords, ready for more innovative authentication

Surveys indicate that consumers are becoming more open to biometrics and multi-factor authentication.

Image: Cybercriminals bypass 2FA and OTP with robocalling and Telegram bots

Cybercriminals bypass 2FA and OTP with robocalling and Telegram bots

The automated bots are highly successful because they effectively emulate legitimate service providers.

6 steps for third-party cyber risk management

If you have third-party partners, you need a third-party cyber risk management program. Here are six key steps to follow.

New US CISO appointments, August 2021

Keep up with news of CSO, CISO, and other senior security executive appointments.

CSO
Facebook Twitter LinkedIn
© 2021 CSO
140 Kendrick Street, Building B
Needham, MA 02494