Top news of the week: 26.03.2022.
Data Privacy
Serpent, No Swiping! New Backdoor Targets French Entities with Unique Attack Chain
The Python script (the Serpent backdoor) is as follows: #!/usr/bin/python3 from subprocess import Popen, PIPE, STDOUT import requests import re import socket import time …
Detailed explanation of 11 new security controls in ISO 27001:2022
With the changes in ISO 27001:2022, new security controls are being introduced. Read here a detailed explanation of 11 new safeguards.
Ransomware: Why It’s Time to Think of it as a Data Management Problem
Over the last couple of years, ransomware has taken center stage in data protection, but very few people realize it is only
The Kids Online Safety Act Is a Heavy-Handed Plan to Force Platforms to Spy on Young People
Putting children under surveillance and limiting their access to information doesn’t make them safer—in fact, research suggests just the opposite. Unfortunately those tactics are the ones ...
Smashing Security podcast #267: Virtual kidnapping, two helipads, and a naughty Apple employee
A Russian bank tells its customers to stop installing security updates, an Apple employee ends up in hot water, and learn our tips to avoid being virtually kidnapped. All this and much more ...
Android's Messages, Dialer apps quietly sent text, call info to Google
Hashed text, phone call logs collected without opt-out nor specific notice
€ 20 million privacy fine against Clearview AI facial recognition system in Italy
The data protection authority issued a € 20 million privacy fine in Italy against Clearview AI for unlawful processing of data
Manage subject rights requests at scale with Microsoft Priva
Having the right technology and processes in place can make it possible to manage a large volume of SRRs efficiently and auditable. This post discusses SRR response use cases and how ...