CSO

The day's top cybersecurity news and in-depth coverage

CSO First Look

March 11, 2022

Cyber incident reporting measures approved in the omnibus spending bill

Critical infrastructure entities and federal agencies will have to report significant cyber incidents to CISA within 72 hours and ransomware attacks within 24 hours under legislation passed by the House that will likely become law. Read more ▶

Image: Sponsored by Akamai: Financial Services Malware Just Won’t Die. What to Do About It.

BrandPost Sponsored by Akamai

Sponsored by Akamai: Financial Services Malware Just Won’t Die. What to Do About It.

Emotet, described as among the most dangerous types of malware for financial services organizations, has returned.

Dirty Pipe root Linux vulnerability can also impact containers

Researchers have shown that the Dirty Pipe vulnerability can be used to modify protected files and gain root rights.

SEC plans four-day cybersecurity breach notification requirement

The US stock market regulator wants to tighten reporting requirements for security breaches at publicly traded firms.

Image: HackerOne calls for end of security by obscurity

HackerOne calls for end of security by obscurity

The bug hunting platform offers a proposal for greater corporate cybersecurity responsibility and transparency.

Alleged REvil ransomware hacker extradited and arraigned in Texas

The DOJ charges that Ukrainian national Yaroslav Vasinskyi made $2.3 million from ransoms, after demanding more than $760 million from companies that had fallen victim to REvil ransomware attacks.

Operationalizing a “think like the enemy” strategy

MITRE ATT&CK and new security technology innovation make this possible.

Op-ed: Women in cybersecurity need more than inspiration

Why are there so few women in cybersecurity? Here’s one big reason that hardly anyone talks about: caregiving responsibilities.

CSO
Facebook Twitter LinkedIn
© 2022 CSO
140 Kendrick Street, Building B
Needham, MA 02494