#CIO#CISO. CEO of TCE Strategy. Technology and #cybersecurity advisor. Professional speaker and #author of "Secure Enough? 20 Questions on Cybersecurity".
"The lawsuit cites several examples of Netflix leadership asserting that the company does not collect and share user data with advertisers even as the company has long used 'intentional engineering to track and log users’ viewing habits, preferences..." buff.ly/lZ9llZW
"While the DINUM has not shared any further details regarding this breach, a threat actor claimed responsibility for the incident over the weekend...and said they gained access to the platform following a social engineering attack." ift.tt/c2EJK5d
"Meta said it discovered the problem with the AI-powered High Touch Support (HTS) tool on May 31. The tool is meant to help users locked out of their Instagram accounts regain access by sending them a new password link." buff.ly/q9CtIRS
Three zero-days fixed in June's #Microsoft#PatchTuesday updates, along with literally 200 other vulnerabilities. Patch early, patch often. ift.tt/sQZiGlq
"Several of the GOP opponents are longstanding surveillance skeptics and are some of the loudest voices within the conference for requiring a warrant before searching the foreign-collected data for Americans." buff.ly/DC3aKaW
Is this a good idea? A bad idea? A moot point because the law will be ignored if it actually becomes a law? "Sen. Adam Schiff (D., Calif.) is proposing a bill that would ensure a human is involved when the Pentagon uses AI in weapons and protects..." buff.ly/6Kjuq4C
"The lawsuit cites several examples of Netflix leadership asserting that the company does not collect and share user data with advertisers even as the company has long used 'intentional engineering to track and log users’ viewing habits, preferences..." buff.ly/bHDhNrR
"The reach was artificial, but the reactions were often authentic. In that respect, the model the Pentagon contractors appear to be using now is more akin to a media-buy strategy: distributing state-funded journalism-like content through the same ad... buff.ly/U0vhxpm
"The Computer Misuse Act was drafted before the rise of cloud computing, ransomware gangs, cryptocurrency laundering and the modern cybersecurity industry. Researchers and industry groups have argued for years that the law’s broad unauthorized-access... buff.ly/YzOIJQr
"The charges carried a maximum of five years in prison for the computer intrusion count, followed by a mandatory consecutive two-year term for the identity theft count, a fine of $250,000, and three years' supervised release." ift.tt/gvy4exd
"The researchers with Calif, a Palo Alto-based security research company, say the software they wrote links together two bugs and a handful of techniques to corrupt the Mac’s memory and then gain access to parts of the device that should be inaccessible." buff.ly/EPGGZRQ
Microsoft has a tremendous amount of control over how vulnerabilities in their products are disclosed. Offer more money as bug bounties. Be easier to work with. There are levers to pull here. buff.ly/rMKjgt0
Not good news. "Similarly, the new IBB cash prize for a critical vulnerability is $2,257, compared to the previous $9,250 reward. High-severity bugs now fetch $1,009, while they used to earn a $4,429 payout. And low-severity bugs earn researchers $68..." buff.ly/EmSoA4v
"The sanctioned entity had been created two weeks before the Russian invasion of Ukraine and facilitated disinformation, interference, and disruptive cyberattacks against members of the EU." ift.tt/YyazNcu
I'm a fan of this technology. It's going to be a rough few years, but long-term I think it will level the playing field for those of us that aren't hoarding zero-days for offensive purposes. buff.ly/U8vAqvw