Germany could ban the use of specific Huawei and ZTE devices in telecommunication networks due to security concerns. The ban could force network operators to remove existing equipment and replace it without compensation. More: - The German government stated that it is currently conducting a general security overview that is not tied to any specific manufacturer.
- According to Reuters, however, a leaked document shows that the German government is increasingly worried about the country's 5G network being dependent on China-made equipment.
- Responding to the reports, China's foreign ministry stated that it hoped Germany would "make an independent decision in line with its own interests, economic patterns, and international rules that does not receive interference from a third party."
- Recent reports have shown that Germany has become even more dependent on Huawei for its 5G radio access network equipment than its 4G network.
Zoom Out: - Sweden banned Chinese companies from participating in its 5G network infrastructure build-out in 2020. The country's regulator authority has given companies until 2025 to remove all China-made parts from their infrastructure.
- Britain has also decided that telecom companies should remove all equipment and services from Huawei by the end of 2027.
| |
The TSA has released a new directive asking airport operators to strengthen their cybersecurity defense. More: - According to the new directive, airport and aircraft operators are required to:
- develop a plan for improving their resilience and preventing infrastructure disruption and degradation,
- assess the effectiveness of their measures,
- develop network segmentation controls and policies,
- create access control mechanisms to prevent unauthorized access to critical systems,
- implement incident detection and response policies and procedures,
- and ensure that their systems are not left unpatched.
- The new measures expand on previous steps that helped mitigate and report cybersecurity attacks in the airline industry.
- Some of the measures that are already implemented in the industry are:
- reporting cybersecurity breaches to CISA,
- having a detailed cybersecurity assessment,
- having a direct point of contact, etc.
Zoom Out: - In October 2022, a series of DDoS attacks managed to shut down the websites of 14 different airports in the U.S.
- A few months ago, the TSA issued a directive that instructed the U.S. railroad industry to follow a series of steps to mitigate cybersecurity risks.
- Only a few days ago, the White House released its National Cybersecurity Strategy.
| |
A message from IMPACT The ultimate guide to partnership marketing Sales and marketing used to be the keys to business growth. However, consumer behavior has changed. Traditional channels no longer work. You need an innovative, more trustworthy solution. Partnership marketing introduces one brand to another brand’s customers. This mutually benefits both brands through revenue growth, increased brand awareness, and more. Get this ultimate guide and watch your revenue sky-rocket. Download Guide | |
Acer has announced that it has been hacked, as 160GB worth of company data has been put for sale online. The threat actor responsible for the breach has yet to be tracked. More: - The threat actor has stated that they will only accept Monero cryptocurrency and will only sell with escrow.
- Hackers have stolen information such as;
- Confidential presentations,
- Manuals for technical issues,
- Windows Imaging Format files,
- Replacement Digital Product Keys,
- ISO files,
- Backend infrastructure,
- Confidential product model documentation,
- Windows System Deployment Image files, etc.
- Over 655 directories and 2,869 files have been stolen.
- The breach occurred in February 2022.
Zoom Out: - The electronics company has been previously targeted by hackers multiple times. In March 2021, the company was hacked by the REvil ransomware gang. The threat actor demanded $50M in exchange for decrypting the data.
- In October 2021, Acer's after-sales systems in India were breached by Desorden. Tens of thousands of customers had their data stolen.
| |
LastPass has announced that the recent breach happened due to an employee not updating their software. The employee was a DevOps engineer and was targeted by hackers. More: - LastPass is one of the world's most popular password manager applications.
- The platform has over 33 million users, including over 100,000 enterprise accounts.
- The hacked engineer was part of a four-person team with the decryption keys that give access to Last Pass's cloud storage service.
- Hackers breached the employee's home computer by a security flaw tracked as CVE-2020-5741. The flaw specifically affects Plex Media Server.
- The flaw, which has a CVSS score of 7, enables the threat actor to breach the victim remotely.
- In order to avoid a similar breach in the future, Plex has made several changes, such as:
- Removing the ability to change the location of the server's data directory via the API, and
- Adding additional checks in the Camera Upload feature.
- Users are directed to update their Plex Media Server to version 1.19.3.
| |
A message from CONSTANT CONTACT Grab customers’ attention with SMS marketing. In today’s complex world, email marketing alone isn’t enough. You need to develop a rich customer engagement strategy to get a leg up on the competition and improve customer relations. Email marketing with SMS is easily scalable, timely, and powerful. It has the ability to deliver the right messages to your customers at the right times, leading to improved engagement and a huge return on your investment. Join our webinar and enhance your customer experience by using social, email, and text to drive engagement and sale. In this free webinar, you’ll learn: - How each channel moves people closer to your business
- How to harness the strengths of each channel
- How to create a great experience that impacts your bottom line
With plans starting at $9.99, you can deliver the right messages to your customers at the right times. Join Our Webinar | |
Cybersecurity company Range Force has raised a $20M Series B funding round to provide cyberattack simulations for enterprises. Cisco Systems, Barclays, Pipedrive, and Equifax are some of its clients. More: - Range Force provides a cloud-based simulator that emulates cyberattacks that help companies track their vulnerabilities.
- In addition to Cisco, Energy Impact Partners and Paladin Capital Group led the Series B funding round, with KPN Ventures, Lapa Capital Partners, and Lanx Capital Management also participating.
- The company aims to use the funding round to expand its product range.
- Since its inception, the company has raised over $55M.
| |
Quick Hits: - Demonstrating security and compliance can be time-consuming and expensive. Until you use Vanta. Start a free trial.*
- Germany-based Edgeless Systems has raised a $5M Seed funding round.
- Security researchers have tracked a cyber-espionage campaign targeting mainly Indian and Pakistani citizens with Android devices.
- The U.K. government has published new GDPR legislation, which it claims will save businesses and charities as much as $5.6B in costs in the next 10 years.
- The Emotet malware has resurfaced after a few months of going unnoticed.
*This is sponsored content. | |
Upcoming events at Inside: | |
| | Arbër is an Inside writer who also has experience in entrepreneurship. He has experience covering Consumer Tech, Venture Capital, NFTs, Crypto, etc. Arbër holds a Bachelor's degree in Business from XAMK University in Finland. When he is not reading(and writing) business news, he chooses to watch sports or anime...and then read news about sports or anime. | | Editor | Aaron Crutchfield is based in the high desert of California. Over the last two decades, he has spent time writing and editing at various local newspapers and defense contractors in California. When he's not working, he can often be found looking at the latest memes with his kids or working on his 1962 and 1972 Fords. | |
|
|