FireSale HackBoy

Knowledge Shared By FireSale HackBoy...

Hacking

The Art Of Exploitation...

Ethical Hacking

Security Experts...Same Techniques To Make Hacker's Stuff Useless.

Black Hat Hacking

Dark Side Of Hacking... In Short Destruction Of Cyber Stuff.

Digital Stuff

All The Digital Stuff Is Under The Influence Of Cyber Attacks... Be Safe

Tuesday, June 28, 2022

CrowdStrike Falcon Pro for Mac Achieves 100% Malware Protection, Wins Fifth AV-Comparatives Approved Mac Security Product Award

AUSTIN, Texas–(BUSINESS WIRE)–CrowdStrike (Nasdaq: CRWD), a leader in cloud-delivered protection of endpoints, cloud workloads, identity and data, today announced CrowdStrike Falcon Pro for Mac has won a fifth consecutive Approved Security Product award from leading independent testing organization AV-Comparatives, achieving the highest Mac malware protection score in the AV-Comparatives Mac Security Test and Review 2022.

Throughout the Malware Protection Test, Falcon Pro achieved 100% protection against all Mac malware samples, with zero misses on detecting macOS malware and threats that reflect the current threat landscape. Additionally, Falcon accurately detected potentially unwanted applications for Mac, such as adware and bundled software, and demonstrated the ability to detect Windows malware on macOS. Although benign on macOS, Windows malware may use Mac systems to reach Windows machines, resulting in a disruptive impact on business operations. With its advanced machine learning capabilities, CrowdStrike demonstrated its ability to correctly determine between malicious and clean applications while providing comprehensive, accurate visibility.

CrowdStrike Falcon Pro for Mac uses a layered approach to protect endpoints from new and unknown malware and threats by employing both on-sensor and in-the-cloud machine learning capabilities coupled with behavior-based malware detection. Unlike traditional signature-based approaches, Falcon’s artificial intelligence-powered engines instantly protect endpoints against the complete spectrum of attacks ranging from commodity and zero-day malware, ransomware and exploits to the most advanced malware-free and fileless attacks executed by motivated threat actors. The CrowdStrike Falcon platform takes full advantage of the power of the CrowdStrike Security Cloud to lower high-cost false positives and maximize detection efficacy to stop breaches.

“It speaks volumes that CrowdStrike achieved 100% protection against all Mac malware samples,” said Michael Sentonas, chief technology officer at CrowdStrike. “AV-Comparatives is one of the leading third-party independent testing organizations and this achievement validates the power of the Falcon platform in successfully stopping breaches and autonomously protecting Mac endpoints via a single intelligent agent that uses powerful machine learning and behavior-based malware threat detection.”

The AV-Comparatives test evaluated the efficacy of 10 endpoint security products in detecting 471 recent and representative malicious Mac samples collected during the first half of 2022. The test assessed endpoint detection capabilities for a broad swath of potentially unwanted applications for Mac, including adware and bundled software, and the ability to detect Windows malware on macOS.

This recognition comes on the heels of the CrowdStrike Falcon platform achieving the maximum score of 18 points in the first 2022 AV-TEST MacOS evaluation for business users.

For additional information, please visit the CrowdStrike blog. You can also read CrowdStrike Falcon’s full review on the AV-Comparatives website.

About CrowdStrike

CrowdStrike (Nasdaq: CRWD), a global cybersecurity leader, has redefined modern security with one of the world’s most advanced cloud-native platforms for protecting critical areas of enterprise risk – endpoints and cloud workloads, identity and data.

Powered by the CrowdStrike Security Cloud and world-class AI, the CrowdStrike Falcon® platform leverages real-time indicators of attack, threat intelligence, evolving adversary tradecraft and enriched telemetry from across the enterprise to deliver hyper-accurate detections, automated protection and remediation, elite threat hunting and prioritized observability of vulnerabilities.

Purpose-built in the cloud with a single lightweight-agent architecture, the Falcon platform delivers rapid and scalable deployment, superior protection and performance, reduced complexity and immediate time-to-value.

CrowdStrike: We stop breaches.

Learn more: https://www.crowdstrike.com/

Follow us: Blog | Twitter | LinkedIn | Facebook | Instagram

Start a free trial today: https://www.crowdstrike.com/free-trial-guide/

© 2022 CrowdStrike, Inc. All rights reserved. CrowdStrike, the falcon logo, CrowdStrike Falcon and CrowdStrike Threat Graph are marks owned by CrowdStrike, Inc. and registered with the United States Patent and Trademark Office, and in other countries. CrowdStrike owns other trademarks and service marks, and may use the brands of third parties to identify their products and services.

The post CrowdStrike Falcon Pro for Mac Achieves 100% Malware Protection, Wins Fifth AV-Comparatives Approved Mac Security Product Award appeared first on Cybersecurity Insiders.


June 29, 2022 at 09:08AM

Monday, June 27, 2022

World’s Leading FinTechs Sponsor MPC22, Deepen Attendee Discounts for Digital Commerce Event

PHOENIX–(BUSINESS WIRE)–MPC22 Digital Commerce Event is pleased to announce and thank its sponsors, the world’s leading FinTech brands, for covering a $50 discount towards registration fees.

“Digital commerce kept our economy running through the pandemic,” said Marla Ellerman, Executive Director of the MPC Digital Commerce Event. “It’s important for businesses to understand and participate in digital and mobile commerce, and the biggest brands in FinTech are discounting registration costs, enabling more attendees to join this year’s event.”

MPC22’s featured sponsors include:

  • U.S. Bank, the fifth-largest commercial bank in the United States
  • GoCart, a passwordless digital payment solution that enables fast and secure transactions between merchants and customers
  • Heartland, one of the largest payment processors in the United States
  • Intel, a leading semiconductor technology provider for point-of-sale payment systems
  • Aliaswire, a leading provider of integrated payments technology solutions
  • Galileo, an API-based payment processing platform and digital banking service provider
  • Kount, an online fraud and consumer insights solution provider
  • PAX Technology, one of the world’s fastest-growing electronic payment solution providers
  • MagTek, a leading provider of payments and identification technology
  • Merchant Advisory Services, a B2B financial solution that partners with payment processors to send customer payments to companies’ bank accounts
  • Aava Mobile, a world-leading market leader of POS professional tablets and omnichannel solutions

MPC22 also is supported by leading payments industry media partners, including:

  • Aite-Novarica Group, an advisory firm providing mission-critical insights on technology, regulations, markets, and operations
  • ChannelPro Network, a business and IT media company providing targeted business and technology information for IT decision makers and channel partners
  • CoinPedia, a news hub for FinTech and cryptocurrency related topics
  • CryptoNewsZ, an independent digital media platform covering a wide range of the latest global news on cryptocurrencies
  • DevPro Journal, a trade publication focused on thought leadership for software developers
  • Digital Transactions, a committed source for trends in the electronic exchange of value
  • The Green Sheet, a complete news resource for payments, FinTech, and merchant services professionals
  • Inside Telecom, a digital news platform specializing in technology and telecoms
  • NextTech Communications, a technology-focused integrated communications agency
  • People Behind Payments, a media outlet focused on bringing light to the untold successes in the payments industry
  • XaaS Journal, a resource for IT solution providers building “as a service” businesses
  • VAR Insights, a curated content source for value added resellers (VARs) in the IT channel
  • Women’s Network in Electronic Transactions (Wnet), a nonprofit organization that celebrates women in the payments and FinTech industries

Thanks to our generous sponsors, attendee costs are being discounted by $50 when you apply a unique promo code provided by each of our sponsors upon check-out. To register, please visit https://mobilepaymentconference.com/register-now-2022/.

ABOUT MPC DIGITAL COMMERCE EVENT

MPC Digital Commerce Event is the premier annual conference and exhibition on the future of alternative payments worldwide. MPC is known for bringing together thought leaders, innovators and decision-makers from financial, technology, government, retail, marketing, and mobile industries to discuss the evolution of the payments industry. Attendees benefit from access to the world’s foremost experts in emerging payments and commerce, blockchain and digital currencies, cybersecurity and consumer privacy, customer experience and loyalty, and customer engagement and marketing.

ABOUT MPC22

MPC22, which marks the 12th year of the Digital Commerce Event, is set for August 22 to 24, 2022. This year’s theme, “The Currency of Change,” will focus on alternative payment technologies in established and emerging markets and their impact on the future of commerce. For more information, visit www.mobilepaymentconference.com.

The post World’s Leading FinTechs Sponsor MPC22, Deepen Attendee Discounts for Digital Commerce Event appeared first on Cybersecurity Insiders.


June 27, 2022 at 09:09PM

Alternative Investment Institutions Increasing Investment in Digital Transformation with Embedded Security; Partnering with MSPs Critical to Success

BOSTON–(BUSINESS WIRE)–ECI, the leader in public cloud and cybersecurity managed services for the global financial services industry, recently commissioned IDC to write the white paper “Cybersecurity and Digital Transformation of Global Alternative Asset Institutions: A Critical Pairing” to understand the intersection of cybersecurity and digital transformation (DX) for global alternative investment institutions. As the alternative investment industry tackles a rapidly changing threat landscape, increased regulation, and a continuous need to innovate, most firms are increasing their DX and security budgets and cite security as critically important to their DX initiatives.

Senior leaders from 400 global alternative investment institutions in U.S., Canada, France, U.K., and Germany were surveyed to understand the current state of digital transformation and cybersecurity, identify key barriers and benefits of an aligned strategy, and explore the growing role of consulting services as strategic partners.

Major findings:

Investment in cybersecurity and digital transformation is growing, but execution in-house is decreasing with outsourcing trends increasing.

89% of surveyed institutions are increasing their digital transformation and security budget in 2022 over 2021, and nearly half (48%) are increasing spending by at least 10 percent. Survey findings also indicate that institutions are increasingly leveraging consulting services and managed services providers to support initiative execution and management.

  • Nearly 30% of institutions plan to heavily outsource to managed services providers in the next two years, more than doubling the current usage (12%)
  • More than half of respondents (51%) will either heavily outsource to MSSPs or use a mix of MSSPs and managed threat detection and response providers in the next two years
  • In addition to specific project work, 67% of respondents listed staff augmentation as a core reason to leverage consulting services

Cybersecurity is a driving force for digital transformation

More than half (57%) of respondents identified security/privacy as their top concern about implementing digital transformation, and over one-third (35%) placed policy development and investigations as a top concern as well, yet:

  • 61% had undertaken security-focused digital transformation projects in 2021
  • 47% indicated that risk assessment management was also a top priority for their digital transformation efforts, and
  • 42% ranked security strategy and road mapping as a priority

“What these findings show is that the alternative investment market recognizes the value of coupling digital transformation and cybersecurity strategies, and firms are prepared to invest in such efforts, but struggle with execution due to obstacles outside of their control like staffing shortages,” said David Andrade, CEO of ECI. “This presents an enormous opportunity for third-party vendors, such as consulting firms and managed services providers, to step into more of a strategic partnership with these institutions and help enable lasting change.”

Institutions need outside expertise for time-intensive processes and emerging technologies

Threat monitoring, alerting and response is a time-consuming activity requiring specifically skilled and trained personnel; however, given the industry-wide skills gap, institutions are exploring vendor managed security solutions as a more cost-effective approach that allows in-house teams to focus on routine business and digital transformation efforts.

  • 80% of institutions in North America and 81% in Europe indicated that cybersecurity consulting services are critical to digital transformation efforts
  • The cybersecurity attributes outsourced most often include security operations center (SOC) presence and management (51%) and advanced threat detection technology (50%)
  • 44% of respondents indicated that utilizing emerging tools and technologies are critical for enabling turn-key modernization in their enterprise

“Digital transformation initiatives with embedded cybersecurity are top of mind for most industries due to the significant impact DX can have on a company’s profitability, growth and risk management,” said Philip Harris, Director, Cybersecurity Risk Management Services at IDC. “With security taking a critical role, companies are turning to outsourced resources to both scale initiatives and build or maintain a strong security posture in the process.”

Survey findings show that most institutions recognize the value of DX with embedded security and are actively investing in these projects. Leveraging outsourced experts is a leading trend to ensure organizations are taking full advantage of DX opportunities and security is only increasing in significance to these projects and organizational success.

About this research

This research was conducted by IDC in March 2022. The target audience was CXO and Director+ level employees from global alternative investment institutions located in U.S., Canada, France, U.K., and Germany. Alternative investment institutions include private equity, venture capital, hedge funds, commodity and derivatives trading houses.

To learn more about these findings, download the full IDC White Paper, sponsored by ECI, Cybersecurity and Digital Transformation of Global Alternative Asset Institutions: A Critical Pairing, doc #US49115722, June 2022.

About ECI

ECI is the leading provider of managed services, cybersecurity and digital transformation for alternative investment services organizations across the globe. With its unmatched platform of solutions, ECI provides assured business acceleration through technology, partnering with clients to drive innovation. More than 1,000 customers worldwide with over $3 trillion of assets under management put their trust in ECI. For more information, visit www.eci.com.

The post Alternative Investment Institutions Increasing Investment in Digital Transformation with Embedded Security; Partnering with MSPs Critical to Success appeared first on Cybersecurity Insiders.


June 27, 2022 at 09:09PM

Peer Software and Pulsar Security Announce Strategic Alliance to Enhance Ransomware and Malware Detection Across Heterogenous, On-Premises and Cloud Storage Systems

CENTREVILLE, Va.–(BUSINESS WIRE)–Peer Software today announced the formation of a strategic alliance with Pulsar Security. Through the alliance, Peer Software will leverage Pulsar Security’s team of cyber security experts to continuously monitor and analyze emerging and evolving ransomware and malware attack patterns on unstructured data.

PeerGFS, an enterprise-class software solution that eases the deployment of a modern distributed file system across multi-site, on-premises and cloud storage, will utilize these attack patterns to enable an additional layer of cyber security detection and response. These capabilities will enhance the Malicious Event Detection (MED) feature incorporated in PeerGFS.

“Each ransomware and malware attack is encoded to infiltrate and propagate through a storage system in a unique manner that gives it a digital fingerprint,” said Duane Laflotte, CTO, Pulsar Security. “By understanding the unique behavior patterns of ransomware and malware attacks and matching these against the real-time file event streams that PeerGFS collects across the distributed file system, Peer can now empower its customers with an additional layer of fast and efficient cyber security monitoring. We are excited to be working with Peer Software on this unique capability.”

As part of the agreement, Pulsar Security will also work with Peer Software to educate and inform enterprise customers on emerging trends in cyber security, and how to harden their systems against attacks through additional services like penetration testing, vulnerability assessments, dark web assessments, phishing simulations, red teaming, and wireless intrusion prevention.

“Ransomware attacks have become so common that almost every storage infrastructure architecture plan now also requires a cyber security discussion,” said Jimmy Tam, CEO, Peer Software. “But whereas other storage-based ransomware protection strategies have focused mainly on the recovery from an attack, Peer Software’s goal in working with Pulsar Security is to prioritize the early detection of an attack and limiting the spread in order to minimize damage, speed recovery, and keep data continuously available for the business.”

About Peer Software

Peer Software’s mission is to simplify file management and orchestration for enterprise organizations. IT administrators constantly face the unenviable task of trying to architect, build and operate resilient, highly available 24/7 global operations while simultaneously striving to add flexibility and agility in their technology choices to quickly adapt to ever evolving business and technical demands. Through its global file service, storage observability and analytics solutions, Peer helps enterprises meet these challenges across edge, data center, and cloud environments.

About Pulsar Security

Pulsar Security is a team of highly trained and qualified ethical hackers whose job is to leverage cybersecurity experience and proprietary tools to help businesses defend against malicious attacks. Pulsar is a Veteran, privately owned business built on vision and trust, whose leadership has extensive military experience enabling it to think strategically and plan beyond the problems at hand. The team leverages offensive experience to offer solutions designed to help analyze and secure businesses of all sizes. Our industry experience and certifications reveal that our engineers have the industry’s most esteemed and advanced on the ground experience and cybersecurity credentials.

Follow Peer Software on Twitter and LinkedIn.

Follow Pulsar Security on Twitter and LinkedIn.

The post Peer Software and Pulsar Security Announce Strategic Alliance to Enhance Ransomware and Malware Detection Across Heterogenous, On-Premises and Cloud Storage Systems appeared first on Cybersecurity Insiders.


June 27, 2022 at 09:09PM

Phison and Cigent Deliver Advanced Cybersecurity Protection in Storage Controllers and Firmware

SAN JOSE, Calif.–(BUSINESS WIRE)–Phison Electronics Corp. (TPEX: 8299), a global leader in NAND flash and storage solutions, and Cigent® Technology, Inc., the leader in embedded cybersecurity technology, today announced an innovative partnership program called Cigent Secure SSD™ Ready. This strategic partnership embeds select Phison storage devices and controllers with Cigent’s built-in cybersecurity enhancements – features that Phison’s storage partners can easily switch on and resell as an option to their global channel partners and customers.

“We couldn’t be more excited about our exclusive partnership with Cigent to equip selected Phison products with the most secure storage solution on the market,” said Sebastien Jean, CTO, Phison. “Phison OEM partners and PC OEMs now have a turnkey solution that provides unparalleled storage-based data security across the entire storage ecosystem/PC supply chain.”

Existing software-based security solutions are ineffective at protecting data on endpoints or removable media. Sophisticated adversaries often launch enterprise-wide attacks at a single endpoint, bypassing or disabling software-based protections. A Ponemon Institute study found that 68 percent of organizations have experienced an endpoint attack that successfully compromised data or IT infrastructure. The same report found endpoint-initiated attacks increased nearly 70 percent year over year.

“Our alliance with Phison makes it easy for Phison’s storage partners to deliver next-gen data security to customers that require enhanced endpoint data protection in order to defend sensitive information from today’s increasingly sophisticated threats,” said John Benkert, CEO of Cigent Technology, Inc.

Phison and Cigent have closely collaborated to embed security protections directly into the storage device, guarding against all known attacks. Critical features of the Cigent Secure SSD Ready firmware include:

  • Rendering secured portions of a drive unreadable and therefore invisible at the sector level.
  • Keys derived from user-supplied credentials use the maximum length allowed and are never stored in their final form.
  • Keep-Alive heartbeat detects if security software is disabled and automatically hides data.
  • Secure data access logs are stored in firmware and cannot be altered or wiped.
  • True Erase™ data destruction verification ensures complete data erasure.
  • Dual-Mode delivers two distinct drives on a single SSD with the ability for independent operating systems entirely invisible to each other at the BIOS level – thus creating a secret and secure drive that adversaries cannot access or even know to exist.
  • Cigent’s cloud-based management console enables enterprise-wide data security, zero-trust data security controls, and integration with existing security solutions.

“Kanguru is a leading supplier of secure storage solutions. We are excited to leverage the Cigent Secure SSD Ready program to enable our customers to leverage the combined protection of the Kanguru and Cigent technology suites to protect their data from all attacks,” said Nate Cote, EVP, Kanguru.

About Cigent

Cigent® protects your most valuable asset – your data – with Cigent Secure SSDs™ that prevent compromise by attackers who gain remote or physical access to a device and zero trust access controls that protect individual files wherever they go. Funded by In-Q-Tel™ and founded by experts in storage, data forensics, and cybersecurity to develop a new standard in data protection. For more information, please visit www.cigent.com.

About Phison

Phison Electronics Corp. (TPEX:8299) is a global leader in NAND Flash controller IC and storage solutions. We provide a variety of services from controller design, system integration, IP licensing to total turnkey solutions, covering applications across SSD (PCIe/SATA/PATA), eMMC, UFS, SD and USB interfaces, reaching out to consumer, industrial and enterprise markets. As an active member of industry associations, Phison is on the Board of Directors for SDA, ONFI, UFSA and a contributor for JEDEC, PCI-SIG, MIPI, NVMe and IEEE-SA.

To learn about Phison, please visit Phison website and read our blog.

About Kanguru

Kanguru is a global leader in manufacturing high-security data storage products, providing a broad range of FIPS 140-2 Certified, AES 256-Bit hardware encrypted Defender® secure SSDs, flash drives, and hard drives. Additionally, Kanguru provides a fully-integrated remote management security platform to help organizations manage their secure Defender devices and enforce their security policies anywhere in the world with the Kanguru Remote Management Console™ (KRMC™). As a TAA compliant manufacturer with convenient features like onboard antivirus, secure firmware, physical write protect switch and more, Kanguru stands out as a world leader in portable data security. For more information on Kanguru, please visit www.kanguru.com.

The post Phison and Cigent Deliver Advanced Cybersecurity Protection in Storage Controllers and Firmware appeared first on Cybersecurity Insiders.


June 27, 2022 at 09:08PM

StillVulnerable Campaign for cyber attack victims to Speak Up

All these days, we have seen companies sharing their cyber attack experiences and intelligence with government and monitoring groups. But now, here’s a new platform where victims like businesses, activists and institutions can directly speak or share their digital assault experiences with the world.

Digital Peace Now launched a StillVulnerable campaign which acts as a platform where company representatives and individuals can speak about how a digital disruption has changed their lives by hitting their company hard on operational and financial note.

Already the platform has added experiences of 10 different victims from cyber attacks and that includes Heidi Kuhn, the CEO of non-profit organization Roots of Peace who was deceived digitally to wire $1 million to a Chinese bank by cyber criminals.

StillVulnerable also included the voice of Viktor Zhora, the deputy chief of Ukraine’s Cybersecurity agency. Zhora explained how the war with Russia was costing his nation both economically and on humanitarian grounds.

The platform also included experiences of a JBS Meat worker, a ransomware attack of $11 million and Tim Brown, the Vice President of Cybersecurity division of SolarWinds, hit whose company.

What the platform says is cyber criminals do not show discrimination in attacking their victims and can attack any large or small company.

Digital Peace wants its platform be identified by world leaders around the world and states that the governments drew across the world.

 

The post StillVulnerable Campaign for cyber attack victims to Speak Up appeared first on Cybersecurity Insiders.


June 27, 2022 at 10:33AM

Sunday, June 26, 2022

American Bank Data Breach caused from Cyber Attack

A Michigan based American bank named Flagstar Bank has sent notification to almost all its customers about a data breach that took place in December last year.

According to the email sent to its customers on June 2nd of this year, the bank’s management detected unauthorized access to the company’s IT network between December 3rd, 2021 and December 4th, 2021.

Investigations revealed later that cyber criminals launched a digital assault on the IT infrastructure of the Flagstar Bank to siphon personal information of customers, including contact details.

As of now, there is no evidence of data misuse or information sale on the web. However, the email suggested some precautionary measures to be taken by customers to ward off any kind of a digital threat like identity theft in the future.

Maine Attorney’s General Office website mentioned some details about the attack and stated that the incident could have apparently affected about 1.6 million customers and from them, a small section of customers might have also lost valuable information, such as details about their social security numbers.

There is no information on why the bank took almost 5-6 months to inform the details of the cyber attack on its valuable customers.

Note- Last year, Flagstar made an official announcement that it became a victim of sophisticated cyber attack as hackers exploited a vulnerability in Accellion software and intruded its network. The impact details are yet to be known.

 

The post American Bank Data Breach caused from Cyber Attack appeared first on Cybersecurity Insiders.


June 27, 2022 at 10:32AM