NEWSROOM

News Highlights

Comprehensive collection of ESET News, including the highest performing press releases, research, and thought leadership content gathered on single page.

Filter News

Black Hat Europe 2024: Why a CVSS score of 7.5 may be a ‘perfect’ 10 in your organization

The presentation by cybersecurity professionals from JPMorganChase at Black Hat Europe highlighted issues with the Common Vulnerability Scoring System (CVSS), emphasizing the complexities of aggregated scores. They discussed how dependencies and misestimated severity can impact patching urgency, especially for smaller companies, suggesting automation and cyber-insurers could enhance risk management.

Are pre-owned smartphones safe? How to choose a second-hand phone and avoid security risks

Are pre-owned smartphones safe? How to choose a second-hand phone and avoid security risks

Buying pre-owned smartphones allows consumers to access advanced technology affordably, yet it carries cybersecurity risks such as outdated software and potential malware. To mitigate these risks, buyers should research sellers, avoid jailbroken devices, perform factory resets, install updates, and implement security measures like encryption and multi-factor authentication to ensure safe usage.

Why system resilience should mainly be the job of the OS, not just third-party applications

Why system resilience should mainly be the job of the OS, not just third-party applications

The recent US congressional hearing on the CrowdStrike incident highlighted the need for efficient automated recovery systems to enhance ecosystem resilience. It debated whether recovery responsibility lies with software vendors or the operating system. Implementing OS-managed recovery for third-party software can streamline the process, increase robustness, and potentially prevent similar global IT disruptions.

Cybersecurity Awareness Month needs a radical overhaul – it needs legislation

Cybersecurity Awareness Month needs a radical overhaul – it needs legislation

Awareness campaigns alone cannot effectively promote cybersecurity best practices. With decades of repetitive advice, it’s essential for the industry to legislate and enforce stronger measures, like mandatory multi-factor authentication, to protect sensitive data. Regulatory frameworks, akin to GDPR, could facilitate meaningful change and shift focus towards addressing significant cyber threats.