Cybersecurity Essentials

Data Privacy

Data privacy continues to make headlines. These issues are symptoms of a profound shift in the world of data privacy and security that have major implications for organizations. With the rise of big data and machine learning, privacy and security are now converging.

Top news of the week: 10.12.2020.

#infosec
#EHRDowntime
#ransomware
#edtech
#k12cybersecure

Data Privacy

@OrinKerr shared
On Dec 4, 2020
Apropos the 6th Circuit case below, apparently the provider scanning practice may be banned in the EU soon absent a court order (which I assume means an EU-equivalent to a wiretap order), effectively ending it there, https://t.co/qv9Jo5HHRE https://t.co/owmdZllk6b https://t.co/pf8sJGeADx
Open
E.U. Privacy Rule Would Rein In the Hunt for Online Child Sex Abuse

E.U. Privacy Rule Would Rein In the Hunt for Online Child Sex Abuse

Regulators argue that while abuse imagery on the internet is abhorrent, unchecked scanning for it by tech companies could violate privacy rights. A showdown looms.

@mikko shared
On Dec 9, 2020
«A dying man, a therapist and the ransom raid that shook the world» – Wired writes about Vastaamo https://t.co/dXJEivbXHk
Open
A dying man, a therapist and the ransom raid that shook the world

A dying man, a therapist and the ransom raid that shook the world

Patients put their trust in a therapy company to keep their notes and diagnoses private. Then the ransom demands arrived

@Infosec_Tourist shared
On Dec 10, 2020
RT @SecurityHIT: Yet another healthcare provider has been driven into EHR downtime due to a ransomware attack, amid COVID-19: Maryland’s GBMC Health https://t.co/QrgxAdGdSa #EHRDowntime #ransomware #infosec
Open
Ransomware Attack on Maryland’s GBMC Health Spurs EHR Downtime

Ransomware Attack on Maryland’s GBMC Health Spurs EHR Downtime

This week's breach roundup is led by a ransomware attack on GBMC HealthCare. The provider has been operating under EHR downtime procedures for several days, after hackers encrypted the ...

@matthew_d_green shared
On Dec 7, 2020
This writeup on Instahide is worth reading. Turns out it’s hard to hide the training inputs to an ML model, particularly if you don’t realize this is a security problem. https://t.co/8ijYum5JlI
Open
InstaHide Disappointingly Wins Bell Labs Prize, 2nd Place

InstaHide Disappointingly Wins Bell Labs Prize, 2nd Place

InstaHide (a recent method that claims to give a way to train neural networks while preserving training data privacy) was just awarded the 2nd place Bell Labs Prize (an award for …

@Dejan_Kosutic shared
On Dec 9, 2020
Free webinar: How to set the ISO 27001 scope | 27001Academy https://t.co/74PrGmDlYO https://t.co/WeH109qeDw
Open
Free webinar – How to set the ISMS scope according to ISO 27001

Free webinar – How to set the ISMS scope according to ISO 27001

Register for this free webinar to learn about defining the ISMS scope when implementing ISO 27001, what to include/exclude, what to document, examples, etc.

@thegrugq shared
On Dec 6, 2020
RT @K12CyberMap: State Shocked by Cyberattack That Audits Warned for Years https://t.co/gyTN7XvqcE #edtech #k12cybersecure
Open
State Shocked by Cyberattack That Audits Warned for Years

State Shocked by Cyberattack That Audits Warned for Years

Just before Thanksgiving, Baltimore County Public Schools were hit by a ransomware attack, worrying school districts across the state. But state audits have routinely found vulnerabilities ...

@josephfcox shared
On Dec 3, 2020
These new findings are based on GDPR requests. In Europe, residents can request their data from companies, including US contractors. Norwegian broadcaster NRK did this to a ton of companies, and sketched out some of the Venntel supply chain https://t.co/6rvd0wxInS https://t.co/plkc5XycjO
Open
How an ICE Contractor Tracks Phones Around the World

How an ICE Contractor Tracks Phones Around the World

New documents show how Venntel, which sells some of its location data to ICE, CBP, and the FBI, obtains the information from ordinary apps.

@opexxx shared
On Dec 3, 2020
My Phone Was Spying on Me, so I Tracked Down the Surveillants https://t.co/3Jqk3tyUh3
Open
My Phone Was Spying on Me, so I Tracked Down the Surveillants

My Phone Was Spying on Me, so I Tracked Down the Surveillants

There are 160 apps on my phone. What they're actually doing, I don't know. But I decided to find out. This is an English translation, read the original here. I have a feeling these ...