Tag Archive for: industry

Tech industry signs cyber security charter

  1. Tech industry signs cyber security charter  ComputerWeekly.com
  2. Siemens, Airbus and Others Ink Charter on Critical Infrastructure, IoT  Infosecurity Magazine
  3. Siemens builds consortium of powerhouses for a community of cyber trust  VentureBeat
  4. Full coverage

internet security news – read more

FBI-DHS “amber” alert warns energy industry of attacks on nuke plant operators

(credit: Nuclear Regulatory Commission)

The Department of Homeland Security and FBI have issued a joint report providing details of malware attacks targeting employees of companies that operate nuclear power plants in the US, including the Wolf Creek Nuclear Operating Corporation, The New York Times reports. The attacks have been taking place since May, as detailed in the report issued by federal officials last week and sent out to industry.

The “amber” alert to industry—the second-highest level of severity for these types of reports from the FBI and DHS—noted that the attacks had been focused on employees’ personal computers but had not managed to jump to control systems. Administrative computers and reactor control systems in most cases are operated separately, and the control networks are generally “air-gapped”—kept disconnected from networks that attach to the Internet.

There is no evidence that information on plant operations was exposed. FBI and DHS analysts have not been able to determine the nature of the malware planted by the attempted hacks, which used a “spear-phishing” campaign targeting senior industrial control engineers at nuclear facilities. The tailored e-mails contained fake résumés and appeared to be from people seeking control engineering jobs, according to the report seen by the Times.

Read 3 remaining paragraphs | Comments

Technology Lab – Ars Technica

Target’s data breach settlement sets a low bar for industry security standards – Networks Asia


Networks Asia

Target's data breach settlement sets a low bar for industry security standards
Networks Asia
Target's multistate data breach settlement over its 2013 data breach outlines the kind of security measures enterprises should have in order to not be found negligent with customer data. The problem is, the settlement doesn't go far enough to improve …

data breach – Google News