Tags
January 2023
January 2023
- T-Mobile
- SecureBoot
- Ransomware
- PayPal
- Password Manager
- Password
- Norton LifeLock
- Cybercrime
- Costa Rica
- VALL-E
- Stuxnet
- Session tokens
- Royal Mail
- Passwords
- LastPass
- Federal Aviation Administration (FAA)
- CircleCI
- Artificial Intelligence (AI)
- Art
- Turla
- Scraping
- Russia
- Quantum computing
- Facial recognition
- Cryptography
- Cracking
- China
- Application Programming Interface (API)
- Trust
- Transparency
- Soverignty
- Infostealer
- Hacktivism
- Deglobalisation
- Balkanisation
December 2022
December 2022
- Worm
- Surveillance
- Okta
- Meta
- EternalBlue
- Epic Games
- Dark patterns
- Children’s Online Privacy Protection Act (COPPA)
- Windows Hardware Developer Program
- Supply-chain attack
- Supply chain
- Spyware
- RackSpace
- Offensive Cyber
- Microsoft
- Japan
- Internal API
- Inastrgam
- GPS
- Digital signatures
- Commodities
- Business Email Compromise (BEC)
- Business Email Compromise
- Amazon Web Services (AWS)
- Amazon
- Passkeys
- Mercury IT
- Medibank
- Homomorphic Encryption
- End-to-end encryption (E2EE)
- ChatGPT
- Apple
- Air Gap
- Reuglation
- Privacy
- Network and Information Systems (NIS)
- Managed Security Service Provider (MSSP)
- Managed Detection and Response (MDR)
- Eufy
- Anker
November 2022
November 2022
October 2022
October 2022
- UK Informtion Commissioner
- Twilio
- See Tickets
- Raspberry Robin
- Performance measurement
- Liz Truss
- Interserve Group
- Insider Threat
- Federal Trade Commission (FTC)
- Cyber-espionage
- Cyber Risk
- Boardroom
- Board
- Authenticaiton
- Accountability
- 0ktapus
- Uber
- Optus
- Lapsus
- Identity
- Federal Office for Information Security (BSI)
- Data Breach
- Clearview AI
- Action Fraud
- Workplace Surveillance
- Thermal imaging
- Security labels
- National Health Service (NHS)
- LockBit 3.0
- LockBit
- Fortinet
- Child Sexual Abuse Material (CSAM)
- Authentication
- Advanced
- ProxyNotShell
- Privacy Shield
- NetWalker
- Microsoft Exchange
- Joseph Sullivan
- Data Access Agreement (DAA)
- Bring Your Own Driver
- BlackByte
- Binance
- United Nations
- Ukraine
- Internet of Things (IoT)
- Internet of Things
- Internet governance
- International Telecommunicaions Union (ITU)
- Finland
- eBay
September 2022
September 2022
- Rockstar Games
- Revolut
- Personal Data Protection Bill (Indonesia)
- Multi-factor Authentication (MFA)
- Multi-factor authentication
- Kiwi Farms
- Guacamaya
- Grand Theft Auto
- Deepfakes
- Spell-jacking
- Romance scams
- Prompt injection
- Privileged Access Management (PAM)
- Intercontinental Hotels Group (IHG)
- Human Trafficking
- Bots
- Samsung
- Lazarus
- Iran
- General Data Protection Regulation
- Data Protection and Digital Information Bill
- Data protection
- Cyber-norms
- Bug bounty
- Attribution
- Albania
- Systemic risk
- One-time passwords
- Kochava
- Geolocation
- Espionage
- Belarusian Cyber Partisans
- Belarus
August 2022
August 2022
- UK Conservative Party
- Nation-state
- Lloyd’s of Londond
- wiper
- Thames Water
- South Staffordshire PLC
- Seabogium
- Reconnaisance
- RECON
- Mailchimp
- Janet Jackson
- DigitalOcean
- Cl0p
- Yanluowang
- Tornado Cash
- Starlink
- SpaceX
- Sanctions
- Right to Repair
- Phishing
- Personal accounts
- NHS 111
- Cryptocurrency
- Cloudflare
- Cloud
- Cisco
- Advanced Computer Software Group
- Traffic Light Protocol
- SunBurst
- Sovereign internet
- Solorigate
- SolarWinds
- Reading list
- Quantum Cryptography
- National Cyber Force
- National cyber
- Malware
- Election security
- Election
- Disinformation
- Connected vehicles
July 2022
July 2022
- Southern Co-Op
- protestware
- Opportunity cost
- Microsoft Defender
- Facewatch
- Electric Vehicles (EVs)
- Biometrics
- Actoin bias
- Risk aggregation
- Outage
- Oracle
- Federal Bureau of Investigation (FBI)
- FaceID
- Encryption
- Data exfiltration
- Data centre
- Cloud misconfiguration
- Climate change
- Backdoors
- Alibaba
- Whistleblower
- Ring doorbell
- Online Safety Bill
- Office of Personnel Management (OPM)
- Log4Shell
- Log4j
- False Claims Act
- Cyber Safety Review Board (CSRB)
- Cyber safety
- State surveillance
- Software supply chain
- Shanghai National Police (SHGA)
- NSO Group
- Gonjeshke Darande (Predatory Sparrow)
- Attack surface
- Safety
- Kinetic cyber
- Cyber-attack
- BellTroX
June 2022
June 2022
- Targeted advertising
- Reproductive rights
- Infosecurity Europe
- Infosec2022
- Formula 1
- Environmental, Social and Governance (ESG)
- Cyber Warefare
- Cyber war
- Cyber Incident Phoneline
- Process
- People, Process, Technology
- Interpol
- Health and Location Data Protection Act
- GDPR
- Zero-day
- Tesla
- Telecommunications
- RSA Conference
- RSA
- Qbot
- Mandiant
- Known Exploited Vulnerabilities (KEV)
- Follina
- Conti
- Computer Fraud and Abuse Act (CFAA)
- Website defacement
- Privacy legislation
- Manfuacturing
- Digital Shadows
- Confluence
- Atlassian
May 2022
May 2022
- Verizon
- Digital Identity
- Data Breach Investigations Report (DBIR)
- XorDdos
- Singapore
- REvil
- Greeland
- Cyber skills
- Immigration and Customs Enforcement (ICE)
- Colonial Pipeline
- UNC2524
- Salesforce
- Mergers & Acquisitions (M&A)
- Heroku
- FIDO Alliance
- Certified Cyber Professional
- Sabotage
- Privacy nutrition labels
April 2022
April 2022
- Java
- ECDSA
- Cyberpunk
- Cyber harms
- RaidForums
- Power grid
- ICS Attacks
- Decentralised Finance (DeFi)
- Cyber-heist
- Stangnant systems
- Security Metrics
- Sandworm
- Mahesh Bank
- Hydra marketplace
- Cyclops Blink
- Viasat
- Sitel
- Satellite
- Department for Digital, Culture, Media and Sport (DCMS)
- Cyber Security Breaches Survey
March 2022
March 2022
- Risk concentration
- Resilience
- Key Risk Indicators
- Key Performance Indicators
- IC3
- Capabilities
- Ukraine IT Army
- Satellite communications (satcom)
- Online Safety Bill (UK)
- Online Safety Bill (UK legislation)
- Initial Access Broker (IAB)
- General Data Protection Regulations (GDPR)
- Exotic Lilly
- Information warfare
- Distributed Denial of Service (DDoS)
- Cyber-crime
- Conti Ransomware
- Conti (ransomware gang)
- APT41
- Anonymous
- AON
February 2022
February 2022
January 2022
January 2022
- UK Government
- Let’s Encrypt
- Hacktivist
- Cyber strategy
- Cyber Essentials
- Balrusian Railways
- Trustworthy Computing
- No Place To Hide
- Merck
- Information Commissioner’s Office (ICO)
- Home Office (UK)
- Encrochat
- Crypto.com
- Crypto-wars
- An0m
- Act of War
- Sodinokibi
- Security Programme
- Security Obstructionism (SecObs)
- Risk identification
- General Data Protection Regulation (GDPR)
- Digital Transformation
- Democratic People’s Republic of Korea (DPRK)
- UK Information Commissioner
- Positive Security
- NortonLifeLock
- Google Docs
- Crypto-mining
- Predicitions
December 2021
December 2021
November 2021
November 2021
- Tardigrade
- Product Security and Telecommunication Infrastructure Bill
- Nigeria
- GoDaddy
- Diversity
- Biomanfuacturing
- Rowhammer
- Private Key Infrastructure (PKI)
- National Security and Investment Act 2021
- Monzo
- Emotet
- Vulnerability disclosure
- Offensive security tools
- National Transport Safety Board (NTSB)
- Federal Bureuax of Investigation (FBI)
- Ethics
- Cyber defence
- Client-Side Scanning (CSS)
- Unicode
- Trojan Source
- Personal Information Privacy Law (PIPL)
October 2021
October 2021
September 2021
September 2021
- United Arab Emirates (UAE)
- Release the hounds
- Kaseya
- Dimitri Alperovitch
- Defend Forward
- BlackMatter
- Profession
- Passwordless
- OWASP Top 10
- Open Web Application Security Project (OWASP)
- Open Infrastructure Manager (OMI)
- OMIGOD
- Wireless charging
- User behaviour
- Threat model
- Side-channel attacks
- Proton Mail
- National Security Agency (NSA)
- Juniper
- Encryption backdoors
- Proxyware
- Google Firebase
August 2021
August 2021
- Surveillance state
- Secure by design
- Data protection regulation
- Data broker
- Cosmos DB
- Securities Exchange Commission (SEC)
- Pearson
- Moral outrage
- Investor relations
- Machine learning (ML)
- Machine learning
- iCloud Photos
- iCloud
- Doxxing
- Cyber Runway
- Code poisoning
- Chiled sexual abuse
- Trusted Platform Module (TPM)
- Mass-surveillance
- Cyber offense
- Biometric authentication
- Spoofing
- PrintNightmare
- President Biden
- AIS
July 2021
July 2021
- Risk management
- Hafnium
- Data Sovereignty
- APT 40
- APT 31
- Windows Print Spooler
- Online anonymity
- Leaks
- Information Comissioner’s Office (ICO)
- Great Firewall of China
- Great Firewall
- CCTV
- Random Number Generators
- Kaspersky Password Manager (KPM)
- Kaspersky
- John Deere
- CVE-2021-34527
- Taskforce on Innovation, Growth and Regulatory Reform (TIGRR)
June 2021
June 2021
- Safety by Design
- MITRE
- Joint Cyber Unit
- eSafety
- D3FEND
- ATT&CK
- South Korea
- Law enforcement
- General Practice Data for Planning and Reearch (GPDPR)
- Electronic Arts (EA)
- Crpyto-wars
- Computer games
- Threat modelling
- Policy
- macOS
- Lawful Access
- iOS
- JBS
- Games cheats
- FireEye
- Economics
- DarkSide
- Credit risk
- Breach costs
May 2021
May 2021
- U.S. Military
- U.K. National Cyber Force (NCF)
- Privacy defaults
- Operation Venetic
- Nuclear weapons
- NHS Digital
- Email security
- Cybercrime economics
- Amazon Sidewalk
- Technology detection dogs
- Health Services Executive (HSE)
- Colonial Pipelines
- Axa
- Asia
- West Midlands Trains
- Security engagement
- Security awareness
- Public exploits
- Phishing simulation
- Information Security Maturity Report
- DBIR 2021
- CyberUK
- ClubCISO
- 10 Steps to Cyber Security
- Royal United Services Institute (RUSI)
- Moriya
- Energy networks
- Energy
- Cyber power
- Critical infrastructure
- Command and Control (C2)
- BAE Systems
- SS7
- Smishing
- Reputation
- Physical threat
- Operational resiliance
- Metropolitan Police Department (Washington DC)
- Law enforcement takedown
- Confidential informant
- Canada
- Boris Johnson
- Beavers
- Babuk
April 2021
April 2021
March 2021
March 2021
February 2021
February 2021
- Solorwinds
- Initial Access Brokers (IABs)
- Bad IR
- Accellion
- SIEM
- Security vs Usability
- Mitre ATT&CK
- GRU
- Exaramel
- European Commission
- EU-UK Data protection adequacy
- Citibank
- Agence Nationale de la Sécurité des Systèmes d’Information (ANSSI)
- The Long Hack
- The Big Hack
- TeamViewer
- Supermicro
- Package managers
- Isis
- Industrial control systems
- Dependency confusion
- Cyber-warfare
- Bloomberg
- Trustwave
- SpamCop
- Interoperability
- Cleaview AI
- Cisco Talos
January 2021
January 2021
December 2020
December 2020
November 2020
November 2020
- Vishing
- UK National Cyber Force (NCF)
- UK National Cyber Force
- Sopra Steria
- Public health
- Measurement
- Home Depot
- Cyber public health
- USSOCCOM
- Speculative Execution
- Regional Comprehensive Economic Partnership (RCEP)
- Microsoft Pluton
- Meltdown
- Location tracking
- Data brokers
- Association of South-East Asian Nations (ASEAN)
- Tim Berners-Lee
- TicketMaster
- Password Strength
- Nutrition labels
- Inrupt
- Cyber skills gap
- Voice over IP (VOIP)
- United States of America (USA)
- United States of America
- UK Information Commissioner’s Office (ICO)
- Regulatory penalty
- Redaction
- Marriott International
- Marriott
- Huawei
- Clean Network Program
- 5G
October 2020
October 2020
- McDonald’s
- Industrial Control Systems (ICS)
- Donald Trump
- Charities
- Application Programing Interfaces (API)
- Persistent engagement
- CyberFirst
- Coronairus (COVID-19)
- Contact Tracing
- British Airways (BA)
- British Airways
- NHS Test & Trace
- Integrity
- Detection
- Cell-mate
- US Treasury
- Huawei Cyber Security Evaluation Centre (HCSEC)
- Grindr
- EvilCorp
- Consumer security labels
September 2020
September 2020
- YOLOsec
- Value generation
- Security value
- Security strategy
- Pseudo-national threat
- Nationalism
- FOMOsec
- Commodity controls
- Windows Server
- NetLogon
- Experian
- Standard Contractual Clauses (SCCs)
- National cyber capability
- Global Initiative on Data Security
- EU-US Personal data transfers
- Data Protection Commission (Ireland)
- Vulnerability Disclosure Policy (VDP)
- Security spending
- Security Spend
- Secure Cyber Risk Aggregation and Measurement (SCRAM)
- Quantification
- Personal liability
- Massachusetts Institute of Technology (MIT)
- Hiscox
- Gartner
- Fiduciary responsibility
- Cybersecurity and Infrastructure Agency (CISA)
- Cyber Readiness Report
- CEO liability
August 2020
August 2020
- Webex
- Security budgeting
- NZX (New Zealand Stock Exchange)
- JML (Joiners-Movers-Leavers)
- FBI (Federal Bureaux of Investigation)
- DDOS (Distributed Denial of Service)
- Threat Intelligence
- Mailto
- fraudulent data request
- Cover-up
- CISO
- ReVoLTE
- Prediction
- Ofqual
- MITRE Shield
- Estimation
- Automated decision-making
- Accuracy
- 4G LTE
- 2020 Exam Results
- Smart devices
- Satellite Internet
- Market manipulation
- Liam Fox
- Energy markets
- Disinformation campaigns
- Bug bounties
- Black Hat
- Secure Boot
- No More Ransom Project
- GRUB
- Garmin
- Evil Corp
- Cyber-sanctions
- CWT Travel
- Boothole
July 2020
July 2020
- WastedLocker
- Test & Trace
- Sport
- New York Department of Financial Services (NYDFS)
- Deepfake audio
- Data protection impact assessment (DPIA)
- Windows DNS
- SIM Swapping
- SigRed
- Schrems II
- SAP NetWeaver
- Perfect 10 Vulnerabilities
- EU-US Privacy Shield
- Digital risk
- Digital divide
- Digital Balkanisation
- Critical national infrastructure
- 5G Mobile Networks
- OAuth
- Internet Balkanisation
- Hong Kong national security law
- Hong Kong
- Cosmic Lynx
- Regulation
- Natanz
- Mass hacking
- Internet Archive
- Efficiency vs Resilience
- EARN-IT Act
- Barclays
June 2020
June 2020
- TikTok
- Netsentinel
- MageCart
- Maersk
- Lawful Access to Encrypted Data Act
- Incident Response
- Google Analytics
- Exchange
- Enchrochat
- Distributed Denial of Secrets
- Copy and paste
- Card skimming
- Browser cache
- Breach notification
- Blueleaks
- Vault 7 Leaks
- Treck
- South Africa Postbank
- Public Key Infrastructure (PKI)
- Payment cards
- Like-farming
- Cyberstalking
- Copy-paste compromises
- Central Intelligence Agency (CIA)
- Central Intelligence Agency
- Australia Cyber Security Centre (ACSC)
- Training data
- Stalkerware
- Risk Avoidance
- Private Investigators
- Platform abuse
- Lawful hacking
- Hack-for-hire
- Dark Basin (aka Snowstorm)
- Corporate Espionage
- Citizen Lab
- Child exploitation
- Babylon Health
- REvil (Sodinokibi)
- Password stats
- Maze Group
- Israel
- Cybercrime business model
- Cyber security spending
May 2020
May 2020
- University of Cambridge
- Threat Metrix
- Octopus Scanner
- NTT Communications
- National Crime Agency (NCA)
- Mandient
- Legal privilege
- GitHub
- EasyJet
- DDoS-as-a-Service
- Capital One
- Winnti
- Virtualisation
- Collection 1
- ADT
- CyberTalks
- ThunderSpy
- Thunderbolt
- Risk quantification
- Ransomware costs
- NHSX
- Market Pricing
- Marcus Hutchins (MalwareTech)
- Malware analysis
- High-performance computing (HPC)
- Hedging
- Elexon
- CyberHedge
- Roblox
- Password Reuse
- Ohio (US State)
- Legal sector
- Grubman Shire Meiselas & Sacks (GSM)
- Credential Stuffing
- Computer gaming
- Video Conferencing (VC)
- Video Conferencing
- Sheffield City Council
- Office 365
- Mobile Device Management (MDM)
- Local Government
- Diversity and Inclusivity
- Bring Your Own Device (BYOD)
- Automatic Number-plate Recognition (ANPR)
- Antivirus (AV)
April 2020
April 2020
- Zero-click
- ZecOps
- Web shells
- Vulnerability identification
- UK Ministry of Defence
- Surveillance programmes
- Mail.app
- IBM Data Risk Manager
- IBM
- Cloud Hopper
- SkyWrapper
- Pastebin
- North Rhine-Westphalia
- Know your customer (KYC)
- Germany
- Department of Defense (US)
- Compliance risk
- AttackerKB
- AiR-ViBeR
- Zoom
- Travelex
- Rostelecom
- ransom payments
- cyber economics
- asymmetric threat
- TheyHelpYou
- Community Hubs
- Security Watercooler
- Morrisons
- Amazon Detective
March 2020
March 2020
- Third-sector data protection
- Schools & Education
- Phineas Fisher
- FSB
- FIN7
- DNS Hijacks
- Dharma
- Chubb
- Booz Allen Hamilton
- VPN
- Remote Working
- Remote Access
- VPN Security
- Securing Virtual Meetings
- Privacy vs Surveillance
- Pi-Hole
- Phased Array
- Pale Blue Dot
- Money Mules
- DuckDuckGo
- DNS Blocklist
- Whisper
- U.S. Cyber Strategy
- SMB
- Cyberspace Solarium Commission
- Avast
- US EARN IT
- Smart cameras
- Loyalty Cards
- Location Privacy
- LLHS
- INsecurity
- Certificate Scam
- Security Education
- IoT
- Authorised Push Payment