NSA strongly urged network administrators that work in or with the Defense Department to prioritize patching, but the vulnerability extends to all companies that rely on the VMWare products.
Even with a training program in place, the real silver bullet comes with catching a potential breach at the precise moment an employee puts the business at risk.
The final draft of the National Defense Authorization Act contains a provision calling for a Senate-confirmed position to orchestrate cyber strategy and coordinate incident response. The position would, in theory, serve an important role in cooperative efforts between government and industry.
In today’s distributed work environment, security leaders must reiterate how cyber resilience supports overall business resilience during these challenging times.
The vulnerability can be patched, but only on the manufacturer side. That means any device shipped without addressing it will be exposed during the booting process, and security teams will need to reflash or rip out and replace the motherboard entirely to ensure an attacker is truly flushed out of the system after backup and recovery.
The biggest area of IoT growth – and ransomware concern – lies in the retail supply chain, which makes for a particularly attractive ransomware target.
Fast Five
Selected by the SC Media Editorial team every Tuesday.
Sign up now for the top five issues cybersecurity pros need to know this week.