HIPAA has a variety of requirements that healthcare providers should be aware regarding data security and data breach response. Below are some common questions and responses: What are HIPAA requirements with regard to plans for data loss & recovery? Providers are required to establish a contingency plan to deal with emergencies or events that impact [...]
A hacker compromises a major corporation and hides in the shadows for months, silently reading e-mails and monitoring traffic. The hackers notify the company and make demands. The FBI infiltrates the hacker group until the mole is exposed and expunged. This sounds like a movie, but this is real life. The latest release by the [...]
Could the combination of computer technology and employee misconduct jeopardize your data security? The answer is yes. Workplace computer misconduct threatens the security of important, sensitive company data every day. Insider fraud perpetrated by employees and contractors has become a common menace that could result in malicious attacks or data theft. Typically, organizations focus on [...]
With St. Patrick’s Day just around the corner, here’s a little something to ponder with your green beer: Have you ever considered that some computer hackers might just be leprechauns? What—leprechauns as computer hackers? Sure, it sounds a little crazy, but think about it for a moment. Hackers and leprechauns have quite a few common [...]
A recent report from Mandiant Corporation in Alexandria, Virginia describes what they believe to be an ongoing cyber espionage campaign originating from the Chinese government’s People’s Liberation Army, Unit 61398. Based upon their data breach investigations, this unit dubbed APT1, for Advanced Persistent Threat 1, has spanned more than 5 years, utilizes servers in at least a dozen countries [...]
This week, Mandiant, a Virginia-based cybersecurity firm released an extensive report accusing a Chinese military unit of hundreds of attacks on American businesses in search of intellectual property. Some of the targets included The Associated Press, The Wall Street Journal, The New York Times, Twitter, Facebook, and most recently, Apple. Each of these companies were [...]
If your organization handles customer transactions via payment cards, you’ve likely heard of the Payment Card Industry Data Security Standard (PCI DSS) and its goal to protect against data breaches. The PCI DSS is a set of technical and operational standards established for businesses that handle cardholder information for debit, credit, prepaid, e-purse, ATM, and [...]
A national pizza chain recently reported a data breach on its online credit/bank card system that allowed hackers to steal and duplicate 200 to 250 pizza-goer identities that have been found to be used in 26 states, as well as Africa and Asia. The police suspect an outside predator planted malicious software on the store [...]
Credit Card Fraud On The Rise According to annual Card Issuers’ Safety Scorecard Report released by Javelin Strategy and Research Organization, fraud prevention practices continue to decline, while fraud detection initiatives significantly increase. Javelin conducts an independent, third-party analysis of the top 23 US credit card issuers that examines consumer-facing security features related to fraud [...]
Being a happily married woman, the news of a hack on the E-Harmony dating site was not much of a concern for me. However, as an avid LinkedIn user, the hack that occurred on that particular business/social networking site caught my attention. Fortunately, my need for concern was small because I follow a few simple [...]