HackDig : Dig high-quality web security articles for hackers

Zoom watermarking: pros and cons

Metadata, which gives background information on pieces of data, is typically hidden. It becomes a problem when accidentally revealed. Often tied to photography mishaps, it can be timestamps. It might be location. In some cases, it can be log analysis. Many tutorials exist to strip this information out. This is because it can reveal more than intended when it
Publish At:2021-01-20 19:00 | Read:108 | Comments:0 | Tags:Privacy audio data embed leak privacy recording The Intercep

What’s up with WhatsApp’s privacy policy?

WhatsApp has been in the news recently after changes to its privacy policy caused a surge of interest in rival messaging app Signal. Initial reports may have worried a lot of folks, leading to inevitable clarifications and corrections. But what, you may ask, actually happened? Is there a problem? Are you at risk? Or should you keep using your apps as you wer
Publish At:2021-01-18 12:24 | Read:166 | Comments:0 | Tags:Privacy data data collection encryption facebook messaging p

Best Practices for Securing Modern Data Architecture

Today’s cloud-native data management platforms can help businesses unlock the potential of their data. These modern data management and storage platforms are designed to deliver lean, high-performance architecture for agile application teams to ensure solid business outcomes, such as rapid time to market. Modern platforms, built for the cloud and in t
Publish At:2021-01-04 14:17 | Read:109 | Comments:0 | Tags:Data Protection Security Services Data Data Management

Data Destruction: Importance and Best Practices

As discussed in an earlier piece, data should be treated as a valuable currency. But there is another aspect to data handling that needs to be considered: data as a liability. Having your data fall into the wrong hands can be incredibly damaging to you and your team, which is all the more reason to have a sound and secure data destruction policy for the las
Publish At:2020-11-19 10:41 | Read:400 | Comments:0 | Tags:Data Protection Data Data Management

Connected Data Stores Elevate the Requirements of Data Security and Governance Platforms

Since it is highly unlikely that my wife will read a blog on data security, I think I can safely share that she is a snoop around birthdays, anniversaries and holidays. My wife cannot stand the suspense of not knowing what gift might be in store. The gift’s value is not relevant; it is the not knowing that kills her. My strategy is to hide her gifts i
Publish At:2020-10-23 15:10 | Read:553 | Comments:0 | Tags:Data Protection Security Services Data Data Security Governa

The 5 Best Ways to Handle Sensitive Data

There are two significant trends occurring right now that shouldn’t be a surprise to anyone reading this post. First, businesses are gathering and leveraging more and more data to improve their core services. Second, more compliance and regulatory standards are popping up from governments and private organizations. As these businesses realize that collecting
Publish At:2020-10-22 00:01 | Read:572 | Comments:0 | Tags:Featured Articles IT Security and Data Protection data data

Achieving Compliance with Qatar’s National Information Assurance Policy

Qatar is one of the wealthiest countries in the world. Finances Online, Global Finance Magazine and others consider it to be the wealthiest nation. This is because the country has a small population of under 3 million but relies on oil for the majority of its exports and Gross Domestic Product (GDP). These two factors helped to push the country’s GDP measure
Publish At:2020-10-08 01:01 | Read:479 | Comments:0 | Tags:Featured Articles Regulatory Compliance Complaince data Info

Thinking Outside the Dox: What IT Security Can Learn From Doxing

Doxing is rightfully regarded as a dangerous threat, potentially exposing personal information where it shouldn’t be. But, defenses derived from doxing may strengthen corporate cybersecurity at scale.  Doxing is the dark side to widespread data dispersal and discovery. Data is leveraged to harm individuals or organizations, often as retaliation f
Publish At:2020-10-06 10:10 | Read:382 | Comments:0 | Tags:Data Protection Threat Intelligence Data Data Breach Persona

CORS: How to Use and Secure a CORS Policy with Origin

CORS (Cross-Origin Resource Sharing) enables resource sharing that pulls data from a lot of different sources. Like any relatively open aspect of the internet, it can be a risk. Learn how to test your web applications to create a secure CORS policy. Origins and Key Concepts CORS began as a way to make application resource sharing easier and more effective.
Publish At:2020-09-30 12:45 | Read:548 | Comments:0 | Tags:Application Security Security Services CORS Data

Preventing Shadow IT from Blindsiding your Zero Trust Plan

I’ve spoken before about Zero Trust approaches to security, but for many of those starting on their journey, there isn’t an obvious place to start with the model. With this post, I wanted to share an example approach I’ve seen working that many organisations already have in place and can be easily rolled into a larger program of Zero Trust hardening: underst
Publish At:2020-09-30 12:20 | Read:298 | Comments:0 | Tags:Featured Articles IT Security and Data Protection Cloud data

When Your Heartbeat Becomes Data: Benefits and Risk of Biometrics

Knowing who your users are today is more important than ever. This explains, in part, why integrating biometric usage into identity and access management (IAM) appears appealing. Throw in some artificial intelligence (AI) to help manage all these data points, and the future of biometrics looks pretty wild. The appeal of using biometrics for identity and acc
Publish At:2020-08-21 08:25 | Read:622 | Comments:0 | Tags:Data Protection Identity & Access Biometric Security Biometr

How to Ensure Secure and Complete Data Destruction

Data security means keeping data out of the wrong hands. This is especially important when storage media is no longer usable and needs to be decommissioned. The data must be truly destroyed, for both security and compliance.  The trouble is ‘deleting’ data doesn’t really delete data. It’s still possible to extract data from
Publish At:2020-08-17 10:00 | Read:700 | Comments:0 | Tags:Data Protection Risk Management Big Data Corporate Data Crit

Cloud workload security: Should you worry about it?

Due to the increasing use of the cloud, organizations find themselves dealing with hybrid environments and nebulous workloads to secure. Containerization and cloud-stored data have provided the industry with a new challenge. And while you can try to make the provider of cloud data storage responsible for the security of the data, you will have a hard time tr
Publish At:2020-07-29 15:18 | Read:522 | Comments:0 | Tags:Business application layer cloud cloud resources cloud workl

Future-Proofing Data With a Data Encryption Plan

Data volume storage needs are growing exponentially across hybrid multicloud environments. Meanwhile, companies are being faced with a greater number of regulations to follow, as well as increased exposure to data ransomware, theft and misuse. Many regulations, such as the General Data Protection Regulation, highlight encryption as an example of appropriate
Publish At:2020-07-08 10:58 | Read:645 | Comments:0 | Tags:Cloud Security Data Protection data encryption Compliance Da

Sextortionists Using Social Engineering Tactics to Collect Victims’ Data

Security researchers observed sextortionists leveraging social engineering techniques to steal their victims’ personal information.SANS’ Internet Storm Center (ISC) discovered that sextortionists had begun creating profiles for young women on dating websites. They used those profiles and the stated interest of finding “good times” to
Publish At:2020-06-16 16:30 | Read:784 | Comments:0 | Tags:IT Security and Data Protection Latest Security News data se

Tools

Tag Cloud