Navigation Links
Black Hat USA 2014 Will Again Stress Need for Security Basics with Glimpse of What May Lie Ahead

New York, NY (PRWEB) August 02, 2014

When the Black Hat conventioneers descend on Las Vegas every year, starting today August 2nd this year, one thing can be always counted on, plenty of FUD will be on the menu - also known as fear, uncertainty and doubt. The run-up has already made its share of FUD inducing headlines, like this article published by Reuters on July 31st about how hackers could use a USB device like a computer mouse or keyboard to successfully infect a system with malware, completely undetected, by leveraging the unfiltered way operating systems read and process the firmware on the device once it’s plugged in. “And that is scary stuff,” Joe Caruso, founder and CEO/CTO of Global Digital Forensics (GDF), a premier cyber security solutions provider, said. “But the way the cyber threat landscape is today, I would much rather see businesses use their resources, often very limited resources, in covering the basics like raising social engineering awareness for every employee across the board, having regular vulnerability assessments, penetration tests and deep scans performed, and putting together an effective emergency incident response plan, before directing any real concern or resources towards much more remote possibilities like these.”

New attack methods making headlines doesn’t necessarily mean they’re new, or likely

“It’s not like it’s a new concept. It was widely reported that late last year at the G20 Summit in Russia there was a little something extra in the gift bags handed out to the high ranking political officials in attendance, USB sticks and phone chargers, emblazoned with the summit logo, with spyware pre-loaded which would deploy their payload once the stick or charger was plugged into a system or device, like an tablet or smartphone," recalls Caruso. “But stunts like that take a decent amount of coordination and trust to pull off, but a well-crafted phishing or spear phishing campaign can cause exactly the same problems, are a lot easier to execute, and have a lot less overhead for the attackers, making it a cheap and easy attack to launch, making them a hacker’s dream on the risk-cost-and-reward scale. When you look at the biggest and most successful headline-making attacks, well over 90% of them started with a single employee dropping the ball by falling for a phishing or spear phishing email. So yes, that’s where the focus should be for every business with valuable ESI (Electronically Stored Information) and/or digital assets to protect. Covering the basics first and sweating the highly remote possibilities last; that’s how we structure and perform our professional vulnerability assessments and pen-testing (penetration testing), with a strong focus on social engineering. When we we’ve taken care of a client, they are in a much stronger position as far as their overall defensive cyber security posture is concerned, because we will have we’ve identified their weaknesses, from the technology to the human element, and we’ve eradicated any nasty hard-to-detect malware existing on the system or network. But there is one also one more piece to the puzzle which may be the most important of all, emergency incident response.”

When, not if, an attack occurs, an effective emergency response plan is crucial

“If any cyber security professional tells you there is such a thing as perfect cyber security protection, aside from dropping everything electronic and going back to paper and filing cabinets, don’t walk away, run!,” warns Caruso. “Cyber threats are evolving every day, threats no one ever saw coming will pop up, or someone will slip up and leave an opening an attacker is just waiting for. The difference between survival and total demise will all come down to how an organization responds. One of our biggest strengths in the security industry are our 24/7 emergency incident response teams, strategically positioned across the country and the globe to ensure we can have boots on the ground within hours, not days, to almost any metropolitan area. But most of the time we work even faster than that, with remote response options, in many cases, which allow us to be instantly on the job. Anyone can call us in an emergency, but clients that use us for our vulnerability assessments and pen-testing have some big advantages; we’ll already know the lay of the land relating to their requirements, regulatory compliance issues, data flow and digital architecture, and we will have already helped them devise and/or improve their emergency response policies and procedures so they have an easy-to-follow roadmap and escalation matrix ready to be executed at the first sniff of trouble. Our clients can also have us waiting in the wings with the “no-retainer” response services we offer our pen-testing clients. If something happens, we’re a phone call away and can jump right in knowing exactly what’s what so we can respond as efficiently and cost-effectively as possible, and if nothing happens, having us on call won’t cost them a thing. And that’s as close as you can get to a no-lose scenario in today’s digital world. Black Hat 2014 undoubtedly will offer a lot of FUD again this year, but we’re here to get you through whatever you actually encounter in the real world.”

To thrive in this digital world, only trust proven cyber security experts

*Global Digital Forensics is a recognized industry leader in the fields of computer forensics, cyber security and emergency incident response , with years of experience assisting clients in the government, banking, healthcare, education and corporate arenas. For a free consultation with a Global Digital Forensics specialist, call 1-800-868-8189 about tailoring a cost-effective plan which will meet your unique needs, without wasting resources on solutions you simply don’t need. Emergency responders are also standing by 24/7 to handle intrusion and data breach emergencies whenever and wherever they arise. Time is critical if a cyber incident has occurred, so don’t hesitate to get help. For more information, visit

Read the full story at

Source: PRWeb
Copyright©2014 Vocus, Inc.
All rights reserved

Related medicine news :

1. High Blood Pressure May Be Especially Lethal for Blacks
2. Hispanic lung cancer patients tend to live longer than blacks and whites
3. Health Care Disparities Might Affect Black Kids Cancer Survival
4. Study says screening accounts for much of black/white disparity in colorectal cancer
5. Blacks and Hispanics at higher risk for precancerous colorectal polyps
6. Blacks Less Likely to Get Help on Scene After Cardiac Arrest: Study
7. Eye Changes May Predict Heart Disease in Blacks With Diabetes
8. Quality of care, other issues may cause worse results in black prostate cancer surgery patients
9. Blacks, Hispanics Have Higher Colon Polyp Risk Than Previously Thought
10. Exercise Controls Weight in White Girls Better Than in Black Girls: Study
11. 9 in 10 Blacks With High Blood Pressure Have Early Heart Disease
Post Your Comments:
(Date:12/1/2015)... Illinois (PRWEB) , ... December 01, 2015 , ... ... and share medical images have been lifted as IMAGE Information Systems launches MED-TAB™ ... Society of North America Annual Meeting from November 29 to December 4, 2015. ...
(Date:12/1/2015)... ... December 01, 2015 , ... For many X-rays taken at ... accurate interpretation by the radiologist. The marking utensils are so small, however, they ... found a way to alleviate this problem. , He developed the patent-pending MARK ...
(Date:12/1/2015)... CA (PRWEB) , ... December 01, 2015 , ... ... Health Center of Excellence (BHCOE) today announced that the organization has awarded Education ... San Francisco, with a Distinguished Award. The award celebrates exceptional special needs providers ...
(Date:12/1/2015)... ... ... Lutronic, a leading innovator of aesthetic and medical laser and energy-based technology, announced ... the United States. Clarity is a Superior Dual Wavelength Platform which combines two ... platform that is easy to own and operate. , For over a decade, ...
(Date:12/1/2015)... (PRWEB) , ... December 01, 2015 , ... XTC ... selected 10 semi-finalists to head to Las Vegas for CES 2016, the world’s largest ... CEO of Consumer Technology Association Gary Shapiro, Founding Partner of Pacific Investments Veronica Serra, ...
Breaking Medicine News(10 mins):
(Date:12/1/2015)... Dec. 1, 2015   Nottingham Spirk , ... announced the publication of a free whitepaper ... Medical Market". The whitepaper gives medical product companies, ... penetrating this lucrative segment. Nottingham Spirk ... to manage their own health, save money (i.e., ...
(Date:12/1/2015)... BOULDER, Colo. , Dec. 1, 2015 ... ARRY ) today announced that its Chief ... present at the Oppenheimer Annual Healthcare Conference ... to participate in the conference through a ... , --> ...
(Date:12/1/2015)... BANGALORE, India and ... (NASDAQ, TASE: MYL) today announced that it expects to ... for developing country markets funded by international donors, TLE400 ... + Efavirenz 400 mg) for $99 per patient, per ... (CHAI) to develop TLE400. The significantly reduced price could ...
Breaking Medicine Technology: