CSO

The day's top cybersecurity news and in-depth coverage

CSO First Look

August 29, 2022

Sorting zero-trust hype from reality

Zero trust is not a product, but a security methodology based on defense-in-depth and least-privileged access concepts. Read more ▶

Image: Sponsored by Code42: Register for Insider Risk Summit | Free, virtual event

Sponsored by Code42: Register for Insider Risk Summit | Free, virtual event

The 3rd annual Insider Risk Summit, the industry’s leading conference on Insider Risk Management (IRM), brings together security leaders, practitioners and industry experts. Engage in industry tracks, virtually interact with security experts and earn CPE credits. Register for free now.

Password manager LastPass reveals intrusion into development system

The company states that user data remains secure and it continues to investigate the incident.

Sophisticated BEC scammers bypass Microsoft 365 multi-factor authentication

Analysis of the BEC campaign reveal weaknesses in Microsoft's authentication system.

Image: How Carrier’s product security team delivers the ‘right support for the right product’

How Carrier’s product security team delivers the ‘right support for the right product’

Carrier CPSO John Deskurakis developed a framework for product security that works for the lifecycle of all products across all business lines

Why SBOMs alone aren’t enough for software supply chain security

Organizations must be willing to ask software vendors hard risk-based questions and be prepared for that to lengthen the purchase process.

Researchers warn of darkverse emerging from the metaverse

Cybercriminals see the metaverse as a way to launch cyberattacks, launder money, and carry out disinformation campaigns.

How 2023 cybersecurity budget allocations are shaping up

Security spending is not expected to slow much next year as organizations look to improve cloud defenses, rely more on MSSPs.

CSO
Facebook Twitter LinkedIn
© 2022 CSO
140 Kendrick Street, Building B
Needham, MA 02494