by Security Centric, on 11 Dec 2021, 3:25:30 pm
A new remote code execution vulnerability has been discovered affecting a common software library used in many systems and applications. A Java library, log4j2, is widely used in embedded systems …
Read Storyby Security Centric, on 10 Sept 2021, 1:18:32 pm
A new troubling remote code execution vulnerability has been discovered that affects customers using Office 365 and Office 2019 on Windows 10 and is already being exploited by malicious actors …
Read Storyby Security Centric, on 18 Aug 2021, 4:01:02 pm
If you were to ask us what the main cybersecurity mistakes organisations routinely make were, the one where businesses rely on their everyday IT team or providers to also perform …
Read Storyby Security Centric, on 22 June 2021, 11:18:46 am
The fact that ransomware is continuing to be a prolific threat probably isn’t news to those of you in the world of cybersecurity – however we know that most organisations …
Read Storyby Security Centric, on 10 June 2021, 5:06:25 pm
It’s always a great day for someone who loves reading reports when the annual Verizon Data Breach Investigation Report (DBIR) gets released. However, we know not everyone enjoys reading 119 …
Read Storyby Security Centric, on 2 Feb 2021, 10:36:23 am
As most companies come fully back into the office from the holiday period and Australia adjusts into a “COVID normal” routine, many organisations are in a place to plan strategy …
Read Storyby Security Centric, on 22 Dec 2020, 11:35:07 am
There's no doubt that 2020 has created some unique challenges across every organisation, and since information security touches on arguably each of them, it also created some challenges for cyber …
Read Storyby Security Centric, on 8 Dec 2020, 9:43:01 am
Like all areas of business this year, it’s important for organisations to get up-to-date information about the current state of ongoing cyber threats in the wake of changes due to …
Read Storyby Security Centric, on 5 Nov 2020, 1:11:42 pm
By now we’re all aware that COVID-19 has changed the way we work. Organisations have had to adjust their ICT environments to accommodate the mandated work-from-home requirements, and these adjustments …
Read Storyby Security Centric, on 10 Sept 2020, 11:17:42 am
For many businesses who transact online, the holiday season brings with it an increased spend from consumers. For some, it’s their peak earning point of the year. Unfortunately, this increase …
Read Storyby Sash, on 16 July 2020, 4:54:49 pm
Background The public figure Twitter account hijacking extends well past social media and has many parallels to business and enterprise systems. Whenever there is a breach, it should be review …
Read Storyby Jeff, on 28 May 2020, 9:59:27 am
Traditional authentication schemes see users needing to create, and remember, separate login details for each service or system they use. With the average organisation using over 1000 distinct cloud services, …
Read Storyby Jeff, on 28 Apr 2020, 7:00:00 am
The COVID-19 pandemic, and the ever-increasing number of employees shifting to remote work has seen explosive growth for Zoom’s platform. This growth has come with heavy scrutiny of Zoom’s security …
Read Storyby Security Centric, on 17 Mar 2020, 1:59:39 pm
The handy folk at Sumo Logic, behind the multipurpose security analytics tool, have used published data to present and dissect near real time data of COVID-19 spread. Data is broken …
Read Storyby Eddie, on 5 June 2019, 7:15:00 am
Seen above is real source code we got access to in a recent web application penetration test by exploiting security vulnerabilities caused by poor secure coding practice. While inspecting source …
Read Storyby Security Centric, on 31 May 2019, 11:30:00 am
It seems that every other week, someone is touting a new solution to cyber security. They tell you that all we need to do is install our boldly coloured box …
Read Storyby Security Centric, on 11 Apr 2019, 4:30:00 pm
Although cybersecurity insurance can appear attractive, it is important that businesses understand it cannot feasibly serve as a replacement for threat mitigation. The majority of cyber threats are avoided by …
Read Storyby Security Centric, on 9 Apr 2019, 7:15:00 am
Overview Injection vulnerabilities are the most common result of mixing user input with system control. An injection vulnerability can have catastrophic results for a system, potentially leading to a full …
Read Storyby Security Centric, on 4 Apr 2019, 4:30:00 pm
On the 22nd of February 2018, the Notifiable Data Breach (NDB) scheme came into effect for all organisations with personal information security obligations under the Australian Privacy Act. Since this …
Read Storyby Security Centric, on 2 Apr 2019, 7:30:00 am
The information security framework for the Australian Government is driven by two main documents: the Protective Security Policy Framework (PSPF) owned by the Attorney-General’s Department, and the Information Security Manual …
Read StoryThe purpose of this blog is to make available the real-world lessons, experience, observations and mistakes that are part of the daily life of a group of cyber security professionals.
Read about:
Level 34, 201 Elizabeth St
Sydney, NSW 2000
Call us: +61 2 9199 0000