Security News

‘Evolving’ PCI DSS 3.2 Requirements Become MANDATORY on February 1, 2018

‘Evolving’ PCI DSS 3.2 Requirements Become MANDATORY on February 1, 2018

Herjavec Group Contributors: David Mundhenk and Alex Spanovic, Security Consulting Services The current PCI DSS 3.2 requirements were previously considered best practices but are set to become operational in February. For example, multi-factor authentication becomes mandatory as of February 1, 2018. Companies must adhere to these compliance requirements, especially where payments are concerned.  Review the full PCI DSS 3.2 update... Read More
January 10, 2018
NEW REPORT: Cybersecurity Conversations For The C-Suite in 2018

NEW REPORT: Cybersecurity Conversations For The C-Suite in 2018

In 2018, get back to basics.  As we become accustomed to cyber attacks compromising enterprise environments and flashy breach headlines splashed across the news, we risk becoming complacent towards the enterprise need for a proactive cyber defense. It’s time we double down on compliance, cyber hygiene, and the elements of a proactive defense strategy in order to combat advanced cyber threats.... Read More
January 8, 2018
Threat Update: Meltdown and Spectre Side-Channel Vulnerabilities

Threat Update: Meltdown and Spectre Side-Channel Vulnerabilities

Herjavec Group is aware of a set of security vulnerabilities—known as Meltdown and Spectre—that affect modern computer processors. Exploitation of these vulnerabilities could allow an attacker to obtain access to sensitive information. Users and administrators are encouraged to review Vulnerability Note VU#584653, Microsoft's Advisory, and Mozilla's blog post for additional information and refer to their OS vendor for appropriate patches. Firefox... Read More
January 4, 2018
Webinar: Are You Ready For PCI D-Day?

Webinar: Are You Ready For PCI D-Day?

Join Herjavec Group's David Mundhenk, a member of the PCI Dream Team, for a discussion around PCI DSS 3.2.  The current PCI DSS 3.2 requirements were previously considered best practices but are set to become operational in February. For example, multi-factor authentication becomes mandatory as of February 1, 2018. Companies must adhere to these compliance requirements, especially where payments are... Read More
January 2, 2018

BNN: Robert Herjavec on bitcoin: Invest in the infrastructure, not the speculation

Our CEO & Founder, Robert Herjavec, recently spoke to Business News Network (BNN) about the surge of bitcoin -- now approaching $13,000, why cryptocurrency is worth it, and how cryptocurrency is affecting the cybersecurity industry. In addition, he also speaks about the underlying technology of cryptocurrency, blockchain, and why investors should consider investing in the infrastructure, not the speculation. Watch... Read More
December 7, 2017

The 2017 Identity and Access Management Report

Cybersecurity Ventures predicts that organizations globally will spend more than $16 billion annually on IAM products and services by 2022. The Identity and Access Management (IAM) industry is facing many challenges as businesses understand the need for increased digital identity security. Many high-profile breaches in the past three years have occurred as a result of weak IAM practices. This annual... Read More

Threat Update: Turla Group Malware Targets UK

New intelligence is available from the United Kingdom's National Cyber Security Centre (NCSC) on two tools used by the Turla group to target the UK, known as Neuron and Nautilus. The malware, often used in conjunction with the Snake rootkit, could allow attackers to gain remote access to and control of the target environments. The report, available here, contains indicators of... Read More
November 30, 2017

Herjavec Group Cybersecurity Cast: The 2017 Cybercrime Podcast: State of the Industry

Herjavec Group has launched its very own podcast, The Cybersecurity Cast! Produced by Herjavec Group, The Cybersecurity Cast features discussions on the latest news, trends, vulnerabilities, and exploits in the cybersecurity space. Topics include healthcare, ransomware, identity and access management, and more. Episode 5: The 2017 Cybercrime Podcast - State of the Industry Tune into Herjavec Group's Cybersecurity Cast to... Read More

Palo Alto Networks: Doing Multifactor Authentication the PCI Way

Mention the term multifactor authentication (MFA), to a typical system or application administrator, and you will encounter a wide range of responses, from a look of complete confusion to those sporting a barely contained, albeit outright scowl. Such individuals routinely log into dozens or even hundreds of computer and network systems daily to perform their administrative tasks. The use of... Read More
November 21, 2017