https://www.channelfutures.com/wp-content/themes/channelfutures_child/assets/images/logo/footer-new-logo.png
  • Home
  • Technologies
    • Back
    • Analytics
    • Artificial Intelligence
    • Cloud
    • Data Centers
    • Desktop
    • IoT
    • Mobility
    • Networking
    • Open Source
    • RMM/PSA
    • Security
    • Virtualization
    • Voice/Connectivity
  • Strategy
    • Back
    • Best Practices
    • Business Models
    • Channel 101
    • Channel Programs
    • Channel Research
    • Digital Transformation
    • Diversity & Inclusion
    • Leadership
    • Mergers and Acquisitions
    • Sales & Marketing
    • Specialty Practices
  • MSSP Insider
    • Back
    • Business of Security
    • Cloud and Edge
    • Endpoint
    • Network
    • People and Careers
    • Training and Policies
  • MSP 501
    • Back
    • 2020 MSP 501 Rankings
    • 2020 Hot 101 Rankings
    • 2020 MSP 501 Report
  • Intelligence
    • Back
    • Our Sponsors
    • From the Industry
    • Content Resources
    • COVID-19 Partner Help
    • Galleries
    • Podcasts
    • Reports
    • Videos
    • Webinars
    • White Papers
  • EMEA
  • Awards
    • Back
    • Excellence in Digital Services
    • 2020 MSP 501
    • Top Gun 51
  • Events
    • Back
    • CP Conference & Expo
    • Channel Partners Evolution
    • Channel Evolution Europe
    • Channel Partners Event Coverage
    • Webinars
  • Channel Mentor
    • Back
    • Channel Market Intelligence
    • Channel Educational Series
Channel Futures
  • NEWSLETTER
  • Home
  • Technologies
    • Back
    • Analytics
    • Artificial Intelligence
    • Cloud
    • Data Centers
    • Desktop
    • IoT
    • Mobility
    • Networking
    • Open Source
    • RMM/PSA
    • Security
    • Virtualization
    • Voice/Connectivity
  • Strategy
    • Back
    • Best Practices
    • Business Models
    • Channel 101
    • Channel Programs
    • Channel Research
    • Digital Transformation
    • Diversity & Inclusion
    • Leadership
    • Mergers and Acquisitions
    • Sales & Marketing
    • Specialty Practices
  • MSSP Insider
    • Back
    • Business of Security
    • Cloud and Edge
    • Endpoint
    • Network
    • People and Careers
    • Training and Policies
  • MSP 501
    • Back
    • 2020 MSP 501 Rankings
    • 2020 Hot 101 Rankings
    • 2020 MSP 501 Report
  • Intelligence
    • Back
    • Our Sponsors
    • From the Industry
    • Content Resources
    • COVID-19 Partner Help
    • Galleries
    • Podcasts
    • Reports
    • Videos
    • Webinars
    • White Papers
  • EMEA
  • Awards
    • Back
    • Excellence in Digital Services
    • 2020 MSP 501
    • Top Gun 51
  • Events
    • Back
    • CP Conference & Expo
    • Channel Partners Evolution
    • Channel Evolution Europe
    • Channel Partners Event Coverage
    • Webinars
  • Channel Mentor
    • Back
    • Channel Market Intelligence
    • Channel Educational Series
    • Newsletter
  • REGISTER
  • MSPs
  • VARs / SIs
  • Digital Service Providers
  • Cloud Service Providers
  • CHANNEL PARTNERS ONLINE
 Channel Futures

Security


Security Central: Obama Puts FBI in Charge of Cyberthreat, PayPal Suffers Cyberattack & BlueCoat’s Shadow Data Threat Report

  • Written by Allison Francis
  • July 29, 2016

The FBI crops up frequently in cybernews these days, but this time, the story isn’t about heated disputes over smartphones or Russia. Ok… it’s a little bit about Russia.

The FBI crops up frequently in cybernews these days, but this time, the story isn’t about heated disputes over smartphones or Russia. Ok… it’s a little bit about Russia.

On Tuesday, President Obama signed a presidential directive officially putting the FBI in charge of responding to any and all cyberthreats. This directive gives the federal government a far more active role in the preventing and investigating of U.S.-based network attacks. Lisa Monaco, Obama’s homeland security adviser, said that the move was spurred by the uncertainty of who the culprits are behind such attacks – terrorists, other countries or just good old cybercriminals.

“This directive establishes a clear framework to coordinate the government’s response to such incidents,” Monaco said on Tuesday at a cybersecurity conference at Fordham University in New York. “It spells out which federal agencies are responsible. And it will help answer a question heard too often from corporations and citizens alike — ‘In the wake of an attack, who do I call for help?'”

The move also has interesting timing, as just days ago, the journalistic organization Wikileaks came out with 20,000 emails lifted from the Democratic National Committee (DNC). The information revealed that the party actively plotted and schemed to cripple Senator Bernie Sanders’ presidential campaign. Experts and officials speculate that Russia may have been behind the attack.

Enter the FBI. Along with them, The Department of Homeland Security and the Cyber Threat Intelligence Integration Center will be joining the fight to help prevent and contain the effect of cyber-attacks.

“We’re harnessing all elements of national power, just as we do in dealing with other threats, like terrorism,” Monaco said. “No tool is off the table.”

Having a robust set of “tools” is certainly the name of the game in defense these days, whether you’re an organization, a political party or an online payment tool. PayPal users can certainly relate. Hackers are using the popular virtual payments system to spread the Chtonic banking Trojan. This week, hackers were observed using the PayPal platform to “request money” from folks via email. The emails contain the subject “You’ve got a money request,” and appear to be sent directly from PayPal. Seemingly legitimate, the emails are bypassing spam filters and are landing directly in Gmail inboxes.

“The sender does not appear to be faked. Instead the spam is generated by registering with PayPal (or using stolen accounts) and then using the portal to request money,” said security company Proofpoint in an advisory. “PayPal’s money request feature allows adding a note along with the request, where the attacker crafted a personalized message and included a malicious URL. In a double whammy, the recipient here can fall for the social engineering and lose $100, click on the link and be infected with malware, or both.”

As it turns out, the scale of this campaign appears to be pretty small and low-impact, the bad link having only been clicked a few dozen times. PayPal was also alerted of the issue.  Even still, researchers are calling the malware hack “interesting and troubling.” Interesting and troubling indeed.

To wrap up the week, let’s get our heads stuck in the clouds for a moment. Network security firm Blue Coat just released findings of the First Half 2016 Shadow Data Threat Report, which stated that the majority of cloud applications are completely falling down on the job in terms of protecting valuable and sensitive enterprise data.

According to the announcement, Blue Coat analyzed thousands of cloud applications and found that 99 percent of the apps were sorely lacking vital security, compliance controls and features needed to protect enterprise data in the cloud.

“The vast majority of business cloud apps we analyzed do not meet enterprise standards for security and can put companies at risk for compromise even though virtually every enterprise uses them,” said Aditya Sood, PhD and Director of Security and Elastica Cloud Threat Labs at Blue Coat. “This is troubling when you think about the financial risks faced by enterprises due to insecure or non-compliant apps. Understanding which cloud applications your employees are adopting and using is an important step to identifying which apps are business ready and which apps need to be replaced with more secure alternatives.”

The report reveals more disconcerting findings, essentially all pointing to the fact that the cloud is riddled with security threats and pitfalls that could potentially harm organizations. The sun may break through the digital clouds sometime in the future, but for now, enterprises everywhere should take note and do everything they can to protect against breaches.

 

 

Tags: Cloud Service Providers Digital Service Providers MSPs VARs/SIs Security

Related


  • Word conclusion on paper
    Microsoft Conclusion on SolarWinds Hack 'Conflicts' with Other Messages
    A concerning aspect of this attack is that security companies were a clear target.
  • Hybrid clouds
    IBM, Oracle, Dell, VMware Put Hybrid Cloud Center Stage
    We highlight platforms and initiatives each company has so far unveiled in February.
  • New challenges and opportunities_many path options
    The Top IT Challenges Executives Will Face in 2021
    Obstacles include bridging the IT skills gap, managing remote workers and managing migration to the cloud.
  • Staged Approach to Security Services
    The Smart Money’s on a Staged Approach to Security Services Provision
    Countering threats to customers is best achieved with a staged approach to security services.

Leave a comment Cancel reply

-or-

Log in with your Channel Futures account

Alternatively, post a comment by completing the form below:

Your email address will not be published. Required fields are marked *

Related Content

  • 2021 Channel Influencer Awards
  • Palo Alto Networks Unveils Bridgecrew Acquisition, Prisma Access 2.0
  • Tactical Threat Intelligence Has a Critical Place in a Layered Cybersecurity Strategy
  • Why Cloud Storage Protection Is a Top Opportunity for MSPs

Galleries

View all

Channel Partners Virtual 2021 Is the Hottest Ticket in Town

February 26, 2021

Industry Perspectives

View all

The “Roaring 20s” Are Coming

February 25, 2021

Three Ways MSPs Can Improve Supply Chain Security

February 24, 2021

SASE: The Key to Mitigating Business Transformation Risk

February 22, 2021

Webinars

View all

A Partner’s Perspective on Channel Success in 2021

March 17, 2021

XDR and Why it Matters to MSPs

March 24, 2021

Top Security Trends Impacting Technology Security Providers In 2021

March 25, 2021

White Papers

View all

Ready To Add Cutting Edge IoT Solutions To Your Portfolio?

  • 1
February 25, 2021

What Is The Value Of Distribution For The Internet Of Things?

February 25, 2021

The Internet of Things (IoT): Where do You Begin?

  • 1
February 25, 2021

Upcoming Events

View all

Channel Partners Virtual

March 2, 2021 - March 4, 2021

Channel Partners Conference & Expo

November 1, 2021 - November 4, 2021

Videos and Fastchats

View all

FASTCHAT: How SOAR Eliminates Security Challenges and Elevates Service Provider Revenues

January 6, 2021

Happy Holidays from Channel Partners & Channel Futures!

December 21, 2020

FASTCHAT: How Old, Unpatched Technologies Are Creating New Security Threats for MSPs and Their Customers

December 3, 2020

Twitter

ChannelFutures

Amazon WorkSpaces @awscloud DaaS client will be available on @IGEL_Technology virtual endpoint client OS.… twitter.com/i/web/status/1…

February 26, 2021
ChannelFutures

.@VMware cutting more workers in California as part of ongoing #workforcerebalancing. #layoffs… twitter.com/i/web/status/1…

February 26, 2021
ChannelFutures

#CPVirtual is March 2-4. It’s the hottest ticket in town — any town, since it’s 100% online — so make sure you have… twitter.com/i/web/status/1…

February 26, 2021
ChannelFutures

.@datto, @ThreatLocker partner to streamline #MSP secure business operations. dlvr.it/RtYvJK https://t.co/nKGnwbblNO

February 26, 2021
ChannelFutures

Infographic: Why Partner with Sierra Wireless and GetWireless? dlvr.it/RtYh1m https://t.co/KcBFzXIx7l

February 26, 2021
ChannelFutures

Infographic: The Sierra Wireless Essential Series dlvr.it/RtYgxv https://t.co/CatxbRHzXr

February 26, 2021
ChannelFutures

#Threatprotection is no small matter for #MSSPs. Find out what vendors say you have to do this year to protect your… twitter.com/i/web/status/1…

February 26, 2021
ChannelFutures

Cloud strategies and cybersecurity are key, and #COVID19 will have more impact than #Brexit on U.K. channel, says… twitter.com/i/web/status/1…

February 26, 2021

MSSP Insider

Newsletters and Updates

Sign up for The Channel Report, Channel Futures Update, MSP 501 Newsletter and more.

Live Channel Events

Get the latest information on the next industry-leading Channel Partners event.

Channel Partners Online

Want more? Find more channel news and analysis on our sister site, Channel Partners.

Media Kit And Advertising

Want to reach our audience? Access our media kit

DISCOVER MORE FROM INFORMA TECH

  • Channel Partners Online
  • Channel Partners Events
  • MSP 501
  • MSSP Insider
  • IoT World Today
  • Webhostingtalk

WORKING WITH US

  • Contact
  • About us
  • Advertise
  • Newsletter

FOLLOW Channel Futures ON SOCIAL

  • Privacy
  • CCPA: “Do Not Sell My Data”
  • Cookie Policy
  • Terms
Copyright © 2021 Informa PLC. Informa PLC is registered in England and Wales with company number 8860726 whose registered and Head office is 5 Howick Place, London, SW1P 1WG.
This website uses cookies, including third party ones, to allow for analysis of how people use our website in order to improve your experience and our services. By continuing to use our website, you agree to the use of such cookies. Click here for more information on our Cookie Policy and Privacy Policy.
X