Christopher Burgess, Author at Security Boulevard https://securityboulevard.com/author/burgesschristopher/ The Home of the Security Bloggers Network Thu, 20 Jul 2023 19:59:40 +0000 en-US hourly 1 https://wordpress.org/?v=6.2.2 https://securityboulevard.com/wp-content/uploads/2021/10/android-chrome-256x256-1-32x32.png Christopher Burgess, Author at Security Boulevard https://securityboulevard.com/author/burgesschristopher/ 32 32 133346385 Insider Indicted for Attempting to Sabotage California Water Plant https://securityboulevard.com/2023/07/insider-indicted-for-attempting-to-sabotage-california-water-plant/ Mon, 24 Jul 2023 12:00:18 +0000 https://securityboulevard.com/?p=1981638 TeamViewer, insider, application, insider risk, case, threat Palo Alto network IP theft

Earlier this month, Rambler Gallo pled not guilty to charges that he attempted to sabotage the water treatment facility in Discovery Bay, California. The facility provides treatment for the water and wastewater systems for the town’s 15,000 residents. An unsealed federal court indictment showed Gallo logged into the Supervisory Control and Data Acquisition (SCADA) network..

The post Insider Indicted for Attempting to Sabotage California Water Plant appeared first on Security Boulevard.

]]>
1981638
SEC Sends Wells Notice to SolarWinds Executives https://securityboulevard.com/2023/07/sec-sends-wells-notice-to-solarwinds-executives/ Thu, 06 Jul 2023 11:00:19 +0000 https://securityboulevard.com/?p=1980553 SolarWinds laptop judge order litigation

On June 23, 2023, SolarWinds revealed via an SEC Form 8-K filing that the U.S. Securities and Exchange Commission (SEC) notified the company that “certain current and former executive officers and employees of the company, including the company’s chief financial officer and chief information security officer,” had received Wells Notices. What is a Wells Notice,..

The post SEC Sends Wells Notice to SolarWinds Executives appeared first on Security Boulevard.

]]>
1980553
Insider Risk: Theft of Trade Secrets Nets Thief Six Months https://securityboulevard.com/2023/06/insider-risk-theft-of-trade-secrets-nets-thief-six-months/ Wed, 14 Jun 2023 12:00:28 +0000 https://securityboulevard.com/?p=1977660 TeamViewer, insider, application, insider risk, case, threat Palo Alto network IP theft

An interesting case of insider risk wrapped up recently in the Federal District Court in Massachusetts when U.S. Senior District Court Judge William G. Young handed down a lenient sentence to Haoyang Yu. Yu, a former employee of semiconductor company Analog Devices Inc (ADI), was convicted of stealing ADI’s designs and then forming his own..

The post Insider Risk: Theft of Trade Secrets Nets Thief Six Months appeared first on Security Boulevard.

]]>
1977660
Two Years After Colonial Pipeline, What Have We Learned? https://securityboulevard.com/2023/06/two-years-after-colonial-pipeline-what-have-we-learned/ Fri, 02 Jun 2023 13:00:27 +0000 https://securityboulevard.com/?p=1975918 Colonial Pipeline, lessons, vulnerabilities pipedream supply chains CI/CD pipeline dev environment Linux

The second anniversary of the Colonial Pipeline ransomware attack has come and gone, and while many lessons have been learned and assimilated, there’s still more we can do. Security Boulevard reached out to some experts in the industry to see how far we’ve come and where work still needs to be done. For those in..

The post Two Years After Colonial Pipeline, What Have We Learned? appeared first on Security Boulevard.

]]>
1975918
U.S.-South Korea Forge Strategic Cybersecurity Framework https://securityboulevard.com/2023/05/u-s-south-korea-forge-strategic-cybersecurity-framework/ Thu, 25 May 2023 12:00:34 +0000 https://securityboulevard.com/?p=1974996 cybersecurity framework south korea data protection officer CCO

The United States and South Korea have crafted a “Strategic Cybersecurity Cooperation Framework.” The framework is part of recent bilateral accords intended to signal mutual adversaries and reaffirm the “ironclad commitment to what has become a global alliance focused on deepening defense and security ties.” North Korea’s cyberthreat shenanigans are one area of concern, as..

The post U.S.-South Korea Forge Strategic Cybersecurity Framework appeared first on Security Boulevard.

]]>
1974996
AppSec: How Do You Know Your app is 100% Secure? You Don’t https://securityboulevard.com/2023/05/appsec-how-do-you-know-your-app-is-100-secure-you-dont/ Tue, 16 May 2023 12:00:03 +0000 https://securityboulevard.com/?p=1974346 app Google application security AppSec

Insecure applications come with a cost that can be measured in billions of dollars of losses. I recently spoke with Brook Schoenfield, a distinguished engineer who quietly describes himself as an “Elder AppSec Diplomat,” on the eve of the RSA Conference. Schoenfield is the quintessential walking, talking go-to resource on anything involved with application security..

The post AppSec: How Do You Know Your app is 100% Secure? You Don’t appeared first on Security Boulevard.

]]>
1974346
Socially Engineered Into Stealing $500,000 From a Casino https://securityboulevard.com/2023/04/socially-engineered-into-stealing-500000-from-a-casino/ Tue, 11 Apr 2023 12:00:00 +0000 https://securityboulevard.com/?p=1971372 financial data Dave breach Casino

A cashier at a Colorado casino is accused of stealing half a million dollars in cash after allegedly being duped by phone calls and text messages from imposters posing as her bosses. She sits in a Colorado jail while the money is long gone. It appears to be a case of creative social engineering by..

The post Socially Engineered Into Stealing $500,000 From a Casino appeared first on Security Boulevard.

]]>
1971372
FTC Proposes Eliminating Non-Compete Clauses https://securityboulevard.com/2023/01/ftc-proposes-eliminating-non-compete-clauses/ Fri, 27 Jan 2023 13:00:15 +0000 https://securityboulevard.com/?p=1961284 FTC RegTech rules

The Federal Trade Commission (FTC) chair, Lina M. Khan, recently announced the commission’s intent to adjust a rule that would prohibit non-compete agreements by workers or independent contractors. Their rationale? Unfair competition—which, therefore, falls under the purview of the FTC. This could have a huge impact on the cybersecurity and IT industries, and open up..

The post FTC Proposes Eliminating Non-Compete Clauses appeared first on Security Boulevard.

]]>
1961284
Russia-Linked Attackers Target US Nuclear Research Facilities https://securityboulevard.com/2023/01/russia-linked-attackers-target-us-nuclear-research-facilities/ Mon, 23 Jan 2023 14:00:28 +0000 https://securityboulevard.com/?p=1961013 cybersecurity hygiene Russian Ukraine microsoft Freeze on Phishing

It made the headlines in early January; Russia is targeting U.S. nuclear scientists and research facilities. While certainly not a news flash—given that Russia’s (and the USSR’s) history of targeting U.S. nuclear technologies dates back more than 75 years. But the tools used in the latest foray remind us of the need to pay more..

The post Russia-Linked Attackers Target US Nuclear Research Facilities appeared first on Security Boulevard.

]]>
1961013
Privacy Settlements Reveal the Value of User Data https://securityboulevard.com/2023/01/privacy-settlements-reveal-the-value-of-user-data/ Thu, 12 Jan 2023 13:00:17 +0000 https://securityboulevard.com/?p=1951814 privacy GRU

Two recent class action settlements highlighted just how seriously companies should take their duty to protect users’ information. The cost of not doing so is astronomical. These settlements also speak to the rare calculus of the value of a user’s private information. Meta, the parent of Facebook just agreed to a $725 million settlement while..

The post Privacy Settlements Reveal the Value of User Data appeared first on Security Boulevard.

]]>
1951814