Category:

Risk Management

Parliamentary panel seeks info from app companies on data breach check protocols

The Parliamentary panel asked companies about what data they collect from users and where they store it.

The committee has earlier expressed concerns over data breach by social media platforms and mobile application based companies.

The companies said that they localise data which in turn reduces response time and helps them offering better services. They said that data is stored in countries where they operate.

read more

Hackers stole source code from govt agencies, private firms: FBI

The FBI alert warned the owners of SonarQube, a web-based application that companies integrate into their software build chains to test source code and discover security flaws before rolling out code and applications into production environments.

The actors exploit known configuration vulnerabilities, allowing them to gain access to proprietary code, exfiltrate it and post the data publicly.

The FBI has identified multiple potential computer intrusions that correlate to leaks associated with SonarQube configuration vulnerabilities.

read more

Global uncertainty could risk World War Three – UK military chief

“I think we are living at a moment in time where the world is a very uncertain and anxious place and of course, the dynamic of global competition is a feature of our lives as well, and I think the real risk we have with quite a lot of the regional conflicts that are gong on at the moment, is you could see escalation lead to miscalculation,” Carter told Sky News.

read more

Pak airlines may be banned from flying to 188 countries over pilots issue

Due to the licence scam, flag carrier Pakistan International Airlines (PIA) has already been barred from flying to the UK and the European Union, The Express Tribune report said.

The scam cam to light after Ghulam Sarwar Khan, the Federal Minister for Aviation, had revealed in August that 262 pilots including 141 of the PIA held fake credentials.

read more

Cyber agency alerts against ransomware attacks of ‘Egregor’ virus

It is anticipated that Egregor ransomware may infiltrate via spam email attachments or maliciously crafted link shared via email/instant messaging chats.”

“The modus operandi used is typically breaking into organisations, stealing sensitive data, and running the malware to encrypt their files and (it) threatens ‘Mass-Media’ release of corporate data if ransom not paid in due time,” the advisory stated.

read more