SMBs are easy targets for cyberattacks


Despite cybersecurity threats being on the rise, many small and medium businesses (SMBs) still lack basic security measures, according to AI security company Cyber Upgrade.
It's no secret that hackers target smaller businesses due to inadequate cybersecurity safeguards, as most underestimate the associated risks as well as lacking the resources of larger enterprises.
Enterprises lose millions each year due to poor AI models


Underperforming AI models, which are built using inaccurate or low-quality data, are resulting in misinformed business decisions.
A study for Fivetran, conducted by Vanson Bourne, polled 550 from organizations with 500 or more employees and finds that on average they lose six percent of their global annual revenues, or $406 million, to poor AI models.
Compliance failings leave enterprises vulnerable to data breaches


A new report from Thales reveals that 43 percent of enterprises failed a compliance audit last year, with those companies 10 times more likely to suffer a data breach.
Based on a survey of almost 3,000 IT and security professionals it also finds that 93 percent of IT professionals believe security threats are increasing in volume or severity, a significant rise from 47 percent last year.
Cyber fusion -- what is it and why is it important for security? [Q&A]


Today's IT security teams face several key challenges. Tasked with combating the rising volume and frequency of sophisticated cyber threats, they are bombarded with a tsunami of alerts generated by countless security tools that deliver little context or value-add insight.
Effectively processing and analyzing all this data to identify actionable threat intelligence requires considerable time and effort.
Only 10 percent of companies have full observability into cloud environments


A new study shows that in 2024, the biggest challenge to gaining observability into cloud-native environments -- cited by 48 percent of respondents -- is lack of knowledge among the team. This is up from 30 percent in 2023.
The report from Logz.io shows only 10 percent of organizations are utilizing full observability, that is, observing the real-time status of every component of the entire technology stack.
Enterprises bank on AI to improve supply chain resilience


New research for supply chain solutions company Cleo, based on a study carried out by Dimensional Research, shows 30 percent of companies plan to use trending technologies like artificial intelligence and automation to better meet supply-chain related business commitments.
It finds 97 percent of companies surveyed invested in supply chain technologies in 2023, with 81 percent stating their supply chain investment delivered business improvement in less than 24 months and 35 percent getting benefits in the same year.
Careless users cause data loss incidents


A new study from Proofpoint shows that 85 percent of organizations polled experienced at least one data loss incident in the past year. Even the country with the lowest percentage -- the UK -- still had 73 percent of respondents reporting at least one incident in the past 12 months.
What's particularly interesting though is that careless users, accounting for 70.6 percent, are much more likely to cause these incidents than compromised (48.1 percent) or misconfigured systems (45.3 percent).
'Blame game' with service providers puts organizations at risk


Organizations are putting their critical operations at risk by enabling the widespread continuation of a 'blame game' culture between their IT teams and third-party service providers, according to a new report.
The survey from Dynatrace finds that 91 percent of organisations are still playing the blame game with IT service providers when problems occur. This increases the reliance on war-room-style meetings to identify and resolve the cause of problems, which extends the duration of incidents and creates tense workplace environments that heighten the risk of losing skilled talent.
70 percent think misinformation could impact elections


As the US Congress talks about potentially banning TikTok, a new survey from Media.com shows that 70 percent of social media users are moderately to extremely concerned that misinformation will impact the 2024 US Presidential election.
Respondents are also inclined to hold social media companies accountable for misinformation and hate speech, with a slim majority (51 percent) favoring increased regulation and 62 percent calling for legal action for social platforms that allow misinformation to spread.
What can we expect from the third decade of cloud computing? [Q&A]


Cloud has been a cornerstone of the computing industry for many years. As it enters its third decade in 2024, economic pressures, anti-monopoly moves and more mean things will look different for hyperscale providers.
We spoke to Amol Dalvi, VP of Product of Nerdio, to discuss what we can expect to see over the next 10 years.
Dark web election posts up almost 400 percent


The number of new posts on dark web forums about elections surged by 394 percent in 2023 compared to 2022, research released this week by cybersecurity firm NordVPN reveals. And in the first two months of 2024 alone, users have already published almost half as many posts.
With more than 60 countries holding national elections in 2024, representing over half of the world's population, this is a significant year in history for global democracy so it's unsurprising that there's an increase in interest.
Logs, metrics and traces -- unlocking observability [Q&A]


Ensuring observability has always involved three pillars: logs, metrics and traces. However, the reality is that most organizations simply store this information in silos which are incapable of communicating with one another.
Jeremy Burton, CEO of Observe, believes organizations need to go beyond the three pillars of past failed solutions and instead view observability as purely a data problem. We talked to him to learn more.
New solution offers faster response to MS365 compromises


Business email compromise (BEC) is one of the most common and expensive threats to organizations so they need to respond to attacks quickly and effectively.
To allow companies to investigate and respond to Microsoft 365 compromises such as BEC, account takeover (ATO) and insider threats, Cado Security is introducing a new feature to its platform so customers can automatically import the Microsoft 365 Unified Audit Log (UAL) by timeframe, user, IP, or workload.
Companies expose 35,000 sensitive SaaS assets each year


A new report from DoControl finds that companies are generating approximately 286,000 new SaaS assets, such as files or recordings, each week. However, it also found the public exposure of 35,000 sensitive assets at the average company, a significant lapse in data management and access controls.
The report finds a 182 percent increase in employees sharing company-owned assets via their personal email too. In 2023, findings show that the average company had one out of six employees share data with their personal email account (1.3 million assets).
Attackers exploit email forwarding rules to compromise accounts


Detections for malicious email forwarding rules have risen by nearly 600 percent in 2023, as adversaries compromised email accounts, redirected sensitive communications to archive folders and other places users are unlikely to look, and attempted to modify payroll or wire transfer destinations, re-routing money into the criminal’s account.
This is one of the findings in the latest Threat Detection Report from Red Canary. Half of the threats in top 10 leverage malvertising and/or SEO poisoning, occasionally leading to more serious payloads like ransomware precursors that could lead to a serious attack if not detected.
Ian's Bio
Ian spent almost 20 years working with computers before he discovered that writing about them was easier than fixing them. Since then he's written for a number of computer magazines and is a former editor of PC Utilities. Follow him on Mastodon
© 1998-2025 BetaNews, Inc. All Rights Reserved. About Us - Privacy Policy - Cookie Policy - Sitemap.