Russians perpetrated the SolarWinds hack and now Colonial Pipeline. In both cases Russian citizens attacked private corporations causing vast social implications. There is no indication at this point that the Russian government was involved in either attack, both are cases of criminals being criminals. The need for cybersecurity is greater than ever and growing constantly.
Read MoreThe hackers haven’t published the decryption keys or otherwise done anything in good will to help the situation. Many people are calling this act of war by Russia though I believe that is too extreme. Perhaps we can try diplomacy first?
Read MoreWelcome back to the NCM adventure! Not only have we achieved our original goals but we keep extending the project’s functionality. This continuous improvement could spawn its own blog series but either way we end up with a great system. The question is now and always: how can we improve more?
Read MoreWe were using SolarWinds’ NCM (Network Configuration Management) tool at the time for configuration backups and auditing. We followed Fireeye’s mitigation recommendations from their blog post and took our server offline, evaluated hashes and other indicators of compromise, and determined that we were not compromised.
Read MoreI received some emails related to new authentication requirements when working on my Github projects after the holidays.
Read MoreI started a tradition when I blogged last year about security predictions. Hopefully my third kick at the prediction can yields better results! Obviously last year’s list missed a global pandemic, subsequent lockdown, and a major shift in how people work.
Read More