Bayshore Networks and aDolus Forge Supply Chain Security Partnership
3 min read
Bayshore Networks and aDolus Forge Supply Chain Security Partnership
By Norma Dowler on July 23, 2020

The aDolus FACT™ platform provides independent software update validation to ensure safe upgrades and a more secure supply chain NANAIMO, BC, CANADA, July 22, 2020 --aDolus Technology Inc.

Continue Reading
Don’t Judge an Ebook by Its Cover
3 min read
Don’t Judge an Ebook by Its Cover
By Ron Brash on May 12, 2020

Interesting times lead to interesting opportunities. The current pandemic is proving no exception, but, sadly, it’s an opportunity for some attackers who have laid a rather cunning trap. As...

Continue Reading
3 Month Reprieve for Utilities on Cybersecurity Supply Chain Standards
3 min read
3 Month Reprieve for Utilities on Cybersecurity Supply Chain Standards
By Eric Byres on April 21, 2020

Earlier this month, as the coronavirus accelerated its alarming sprint across North America, NERC requested that FERC defer a number of looming deadlines for Reliability Standards....

Continue Reading
Windows 10 Certificate Validation Bug Exposes a Fundamental Weakness
3 min read
Windows 10 Certificate Validation Bug Exposes a Fundamental Weakness
By Eric Byres on January 17, 2020

The announcement Tuesday from the NSA about the new cryptographic vulnerability in the Microsoft Windows operating system sent ripples of shock through our entire community. In case you...

Continue Reading
Sniffing Out Fakes: From Saffron in Marrakech to Digital Certificates
4 min read
Podcast: Where Do Your Bits Really Come From?
3 min read
Podcast: Where Do Your Bits Really Come From?
By Eric Byres on September 26, 2019

Earlier this year I attended the Public Safety Canada Industrial Control System Security symposium in Charlottetown, PEI (FYI the PSC ICS events are outstanding - worth attending, even if...

Continue Reading
Will the DoD’s CMMC Encourage Bad Password Habits?
4 min read
Will the DoD’s CMMC Encourage Bad Password Habits?
By Eric Byres on September 19, 2019

Last Wednesday (September 11), the U.S. Department of Defense released a draft of its Cybersecurity Maturity Model Certification (CMMC) for public comment. The idea is for the DoD to...

Continue Reading
When the Security Researchers Come Knocking, Don’t Shoot the Messenger
3 min read
When the Security Researchers Come Knocking, Don’t Shoot the Messenger
By Eric Byres on November 8, 2018

Our own Jonathan Butts and Billy Rios were interviewed this month on the CBS Morning News about their research showing that medical devices like pacemakers and insulin pumps can be hacked...

Continue Reading
Who Infected Schneider Electrics’ Thumbdrive?
3 min read
Who Infected Schneider Electrics’ Thumbdrive?
By Eric Byres on September 12, 2018

On 24 August 2018 Schneider Electric issued a security notification alerting users that the Communications and Battery Monitoring devices for their Conext Solar Energy Monitoring Systems...

Continue Reading
Building (or Losing) Trust in our Software Supply Chain
3 min read
Building (or Losing) Trust in our Software Supply Chain
By Eric Byres on May 10, 2018

Back in 2014, when I was managing Tofino Security, I became very interested in the Dragonfly attacks against industrial control systems (ICS). I was particularly fascinated with the ways...

Continue Reading
Loading more posts
No more posts to load
1 2 3 4

Stay up to date