Policy
-
Sarcoma Ransomware Group Claims Cyberattack on Manchester Credit Union
A ransomware group called Sarcoma has claimed a cyberattack on Manchester Credit Union, citing a failed attack while assuring that customer data remains secure. The incident has raised concerns over the financial sector’s increasing cyber vulnerabilities.
-
Fragmented Compliance Practices Leave Organizations Vulnerable to Risks
A new report from Swimlane reveals that only 29% of organizations believe their compliance programs meet internal and external standards, prompting concerns over fragmented workflows and manual processes that leave teams vulnerable to penalties and security risks.
-
The Critical Shift Towards Tokenization of Personal Data in Digital Identity Verification
Recent data breaches underscore the pressing need for the tokenization of personal data in digital identity verification. Experts urge a shift towards innovative security measures to protect against rising cyber threats and enhance user privacy.
-
UK Government Unveils Cyber Resilience Bill to Strengthen National Security
The UK government has introduced the Cyber Resilience Bill to enhance national cybersecurity measures, expand the definition of critical national infrastructure, and enforce stricter incident reporting requirements, reflecting a proactive approach to managing cyber threats.
-
The Misconception of Data Security as Privacy: A Call for Accountability
A recent feature article emphasizes the critical distinction between information security and data privacy, urging organizations and regulators to prioritize ethical data practices over mere compliance.
-
Organizations Struggle to Address Cybersecurity Vulnerabilities, New Report Reveals
A recent report from Cobalt has revealed that organizations are fixing less than half of their cybersecurity vulnerabilities, with serious implications for security posture, particularly regarding generative AI applications.
-
AI-Driven Fraud Threats Challenge Identity Verification in Cybersecurity
As AI-driven technology becomes more prevalent among cybercriminals, firms specializing in identity verification, such as Trulioo and Microblink, face an ongoing battle to counter increasingly convincing synthetic identities and fraudulent documents, emphasizing the need for advanced AI detection methods and multilayered defenses.
-
Future of CVE Program in Question Amid Funding Concerns
The Common Vulnerabilities and Exposures (CVE) Program is at a crossroads as funding concerns arise, prompting discussions on its future management and governance amidst a backdrop of rising vulnerabilities.
-
Ransomware Negotiations: A Balancing Act Between Ethics and Survival
Organizations face a challenging dilemma when their data is held hostage by ransomware, grappling with the decision to negotiate or pay ransoms. This article explores the organized nature of ransomware gangs, trends in ransom amounts, ethical considerations, and best practices for effective negotiations and response.










