---
title: Business Information Security News of the Week, December 11, 2020
description: Check out the latest news on Cybersecurity and Risk Management
image: https://blog.omnistruct.com/hubfs/Webp.net-resizeimage%20(1).png
---

<https://omnistruct.com/>![Omnistruct Logo1200px](https://blog.omnistruct.com/hs-fs/hubfs/Omnistruct%20Logo1200px.png?width=300&height=64&name=Omnistruct%20Logo1200px.png)<https://omnistruct.com/>

- [Omnistruct Home](https://omnistruct.com/)

- [Omnistruct Home](https://omnistruct.com/)

Search for:

[Home](https://omnistruct.com) / Business Information Security News of the Week, December 11, 2020

# Business Information Security News of the Week, December 11, 2020

Posted by [Omnistruct Marketing](https://blog.omnistruct.com/author/omnistruct-marketing) on Dec 11, 2020 6:42:47 PM

- [Tweet](https://twitter.com/share)

![Newsletter-11_20_2020](https://blog.omnistruct.com/hs-fs/hubfs/Newsletter/Newsletter-11_20_2020.png?upscale=true&width=1116&upscale=true&name=Newsletter-11_20_2020.png)

 

# **Top Story for this Week**

 

## <https://apnews.com/article/fbi-warns-ransomware-healthcare-system-548634f03e71a830811d291401651610><https://omnistruct.com/cybersecurity-webinar-2020/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://news.delaware.gov/2020/11/15/delaware-division-of-public-health-announces-data-breach-incident/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb><https://www.brighttalk.com/webcast/18576/456526?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt>[What Exactly is CUI? (and How to Manage It)](https://hyperproof.io/resource/what-is-cui/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA)<https://www.brighttalk.com/webcast/18576/456526?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://apnews.com/article/fbi-warns-ransomware-healthcare-system-548634f03e71a830811d291401651610>

CUI, or controlled unclassified information, didn’t have much of an established identity before 2010. It went by any number of aliases and took a back seat to the more glamorous classified category. However, should CUI fall into the wrong hands, something as serious as national security could be at risk. This article will explore CUI—what it is, why it’s so important, how CUI management is changing, and the single most important action your company can take to properly manage CUI today.

 

---

# **New Known Breaches in the Past Week**

 

## <https://www.consumeraffairs.com/news/dickeys-bbq-data-breach-compromises-millions-of-credit-card-records-101620.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN><https://www.webpronews.com/sophos-suffers-data-exposure-incident/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Flight Center leaks customer data in an incredibly stupid way](https://www.techradar.com/news/flight-centre-leaks-customer-data-in-an-incredibly-stupid-way?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.webpronews.com/sophos-suffers-data-exposure-incident/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://www.consumeraffairs.com/news/dickeys-bbq-data-breach-compromises-millions-of-credit-card-records-101620.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Flight Center has confirmed that a significant data breach that occurred in 2017 was the result of sensitive information being left in a database given to hackathon participants. The compromised data included credit card numbers and passport details. By Barclay Ballard I December 07, 2020

 

## <https://www.msn.com/en-us/news/us/data-breaches-hit-thousands-of-k-12-students-federal-watchdog-reports/ar-BB1a4vzh?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN><https://thedigitalhacker.com/28-million-licensed-texan-drivers-hit-by-a-data-breach/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Greater Baltimore Medical Center Hit by Ransomware Attack](https://www.securityweek.com/greater-baltimore-medical-center-hit-ransomware-attack?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://thedigitalhacker.com/28-million-licensed-texan-drivers-hit-by-a-data-breach/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://www.msn.com/en-us/news/us/data-breaches-hit-thousands-of-k-12-students-federal-watchdog-reports/ar-BB1a4vzh?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

The Greater Baltimore Medical Center in Towson, Maryland was hit by a ransomware attack that impacted computer systems and medical procedures, the healthcare provider said Sunday. By Mike Lennon I December 07, 2020

 

## [Pennsylvania county pays 500K ransom to DoppelPaymer ransomware](https://www.bleepingcomputer.com/news/security/pennsylvania-county-pays-500k-ransom-to-doppelpaymer-ransomware/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA) <https://www.newswire.ca/news-releases/stelco-announces-cybersecurity-attack-896349927.html>

Delaware County, Pennsylvania has paid a $500,000 ransom after their systems were hit by the DoppelPaymer ransomware last weekend. By Lawrence Abrams I November 29, 2020

 

## [Ransomware attacks target backup systems, compromising the company ‘insurance policy’](https://www.scmagazine.com/home/security-news/ransomware/ransomware-attacks-target-backup-systems-compromising-the-company-insurance-policy/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq) <https://www.newswire.ca/news-releases/stelco-announces-cybersecurity-attack-896349927.html>

Before Clay Heuckendorf and members of his team could even hazard a guess as to why some of a client’s backup data was missing, bad actors launched a ransomware attack right before their eyes. By Teri Robinson I December 07, 2020

 

## <https://www.forbes.com/sites/leemathews/2020/11/28/notorious-ransomware-gang-hits-producers-of-big-brother-master-chef-and-the-voice/?&web_view=true&sh=2221715c73bb&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[FireEye Hacked By Nation-State Group Seeking Government Info](https://www.crn.com/news/security/fireeye-hacked-by-nation-state-group-seeking-government-info?cid=nl_alert&mkt_tok=eyJpIjoiWVdNek1qSTNZMll6TlRobCIsInQiOiI1aFwvb2xHckNcL1R4VHJnOGtyWmVSWmhpTEh6N0MyWVdVdTVBUkVkQXNaWGViM3VqVFFLNXd3alBZMEJ1cEFTa2xoSVRFWDFld1FRSEZlb0ZjcGxVNnczNDh6Q29MV2xlckZ3T2ZlNHl1ckh5OXh3aEdPRlVxXC91M3ZhblJTU0h3eSJ9&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.forbes.com/sites/leemathews/2020/11/28/notorious-ransomware-gang-hits-producers-of-big-brother-master-chef-and-the-voice/?&web_view=true&sh=2221715c73bb&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://www.newswire.ca/news-releases/stelco-announces-cybersecurity-attack-896349927.html>

FireEye was recently breached in what’s believed to be a state-sponsored attack designed to gain information on certain of the threat intelligence vendor’s government customers. By Michael Novinson I December 08, 2020

 

## <https://securethoughts.com/real-estate-firm-exposed-vast-database-to-meow-bot-attack/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://www.natlawreview.com/article/bad-medicine-hospital-hit-multiple-data-breach-class-actions-unauthorized-access?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://www.bleepingcomputer.com/news/security/healthcare-provider-aspenpointe-data-breach-affects-295k-patients/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Ransomware forces hosting provider Netgain to take down data centers](https://www.bleepingcomputer.com/news/security/ransomware-forces-hosting-provider-netgain-to-take-down-data-centers/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.bleepingcomputer.com/news/security/healthcare-provider-aspenpointe-data-breach-affects-295k-patients/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://www.newswire.ca/news-releases/stelco-announces-cybersecurity-attack-896349927.html>

Cloud hosting and IT services provider Netgain was forced to take some of their data centers offline after suffering a ransomware attack in late November. By Lawrence Abrams I December 8, 2020

 

---

# **General Cybersecurity News**

## <https://threatpost.com/broadvoice-leaks-350m-records-voicemail-transcripts/160158/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN><https://sea.pcmag.com/news/40565/the-us-is-number-one-for-data-theft?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Hackers threaten to disrupt COVID-19 vaccine supply chain](https://thehill.com/policy/cybersecurity/528852-hackers-threaten-to-disrupt-covid-19-vaccine-supply-chain?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://sea.pcmag.com/news/40565/the-us-is-number-one-for-data-theft?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://threatpost.com/broadvoice-leaks-350m-records-voicemail-transcripts/160158/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Government officials and health-care groups are growing increasingly concerned about nation states and criminal hackers targeting the supply chain for COVID-19 vaccines. By Maggie Miller I December 6, 2020

## <https://www.khaleejtimes.com/business/local/over-50m-cyber-attacks-recorded-in-gcc?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Cyber Exposures Soar During Pandemic](https://www.shrm.org/resourcesandtools/hr-topics/technology/pages/cyber-exposures-soar-during-pandemic.aspx?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.khaleejtimes.com/business/local/over-50m-cyber-attacks-recorded-in-gcc?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://threatpost.com/broadvoice-leaks-350m-records-voicemail-transcripts/160158/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Although it is logical that cyberattacks have risen during the pandemic—and there is anecdotal evidence that it is occurring, including our own experience—an interesting new report on the number and effect of the cyberattacks was recently released by Allianz, which provides cyber liability insurance products. By Linn Foster Freedman I December 8, 2020

 

## <https://www.prnewswire.com/news-releases/parks-associates-68-of-smbs-are-concerned-about-cybersecurity-vulnerabilities-at-their-business-locations-301173643.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb><https://fortbendstar.com/slider/cybersecurity-expert-offers-advice-for-safe-shopping-avoiding-scams/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[California’s CPRA: It’s Time to Cut Ties with Old Data](https://www.cmswire.com/digital-marketing/californias-cpra-its-time-to-cut-ties-with-old-data/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://fortbendstar.com/slider/cybersecurity-expert-offers-advice-for-safe-shopping-avoiding-scams/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://threatpost.com/broadvoice-leaks-350m-records-voicemail-transcripts/160158/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

California has made history once again. In early November, California voters approved a ballot initiative known as Proposition 24, which enacted the California Privacy Rights Act (CPRA). In an attempt to further increase the protection of consumer data, the Golden State has gone beyond any other state to create an omnibus privacy regulation. By Sweeney Williams | December 8, 2020

 

## <https://www.cmswire.com/digital-marketing/californias-cpra-its-time-to-cut-ties-with-old-data/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq>[Experian 2021 Data Breach Industry Forecast wants the public to protect their data](https://www.localdvm.com/news/national/experian-2021-data-breach-industry-forecast-wants-the-public-to-protect-their-data/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.cmswire.com/digital-marketing/californias-cpra-its-time-to-cut-ties-with-old-data/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq> <https://threatpost.com/broadvoice-leaks-350m-records-voicemail-transcripts/160158/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

This year has shown many of us that virtually we can achieve many things, but with us utilizing the internet more, cybercriminals can gain easier access to our data. By Nordea Lewis I December 9, 2020

 

| [![Need help evaluating your supplier's risk?](https://no-cache.hubspot.com/cta/default/5223782/8ed335ee-99c3-4878-adb7-81c640ac5e4d.png)](https://cta-redirect.hubspot.com/cta/redirect/5223782/8ed335ee-99c3-4878-adb7-81c640ac5e4d) |
| --- |

 

---

# **MSP News**

 

## <https://smallbiztrends.com/2020/10/teaching-kids-about-cybersecurity.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN><http://www.sbnonline.com/article/lack-of-cybersecurity-could-threaten-key-partnerships/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://www.business.com/articles/steps-to-help-smbs-thrive/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq>[How Managed IT Services Benefit the Manufacturing Industry](https://yourstory.com/mystory/managed-it-services-benefit-manufacturing-industry?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.business.com/articles/steps-to-help-smbs-thrive/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq> <https://smallbiztrends.com/2020/10/teaching-kids-about-cybersecurity.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Nowadays, all types of businesses require IT support to improve the efficiency of their operations. The manufacturing firms also rely on managed IT services to reap the maximum benefits of information technology. The IT support professionals take the IT burden of manufacturing units and enable them to focus on their core business aspects. Also, they take care of the hardware and software assets of the enterprises. By Roger Trevino I December 6, 2020

 

[![Learn how Omnistruct can help build the right cybersecurity solution!](https://no-cache.hubspot.com/cta/default/5223782/8a994d80-0bbf-4120-8ddd-5bda423f0efc.png)](https://cta-redirect.hubspot.com/cta/redirect/5223782/8a994d80-0bbf-4120-8ddd-5bda423f0efc)

 

---

# **CVE Announcements This Week**

 

## <https://techhq.com/2020/11/ai-ml-cyber-security-protection-enterprise-jobs-cybersecurity-best-darktrace/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://insurancenewsnet.com/oarticle/coalition-partners-with-malwarebytes-to-protect-customers-from-cyberthreats?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb#.X7Po4GgzbIU><https://www.canadianunderwriter.ca/insurance/cyber-insurance-most-frequent-and-costly-claims-revealed-1004200430/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://www.ttnews.com/articles/how-trucking-can-fend-cyberattacks?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Payment Card Skimmer Group Using Raccoon Info-Stealer to Siphon Off Data](https://thehackernews.com/2020/12/payment-card-skimmer-group-using.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.ttnews.com/articles/how-trucking-can-fend-cyberattacks?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://www.helpnetsecurity.com/2020/10/19/cybersecurity-automation-jobs/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

A cybercrime group known for targeting e-commerce websites unleashed a "multi-stage malicious campaign" earlier this year designed with an intent to distribute information stealers and JavaScript-based payment skimmers. December 07, 2020 I Ravie Lakshmanan

 

## <https://www.somagnews.com/can-your-kids-be-a-cybersecurity-risk-at-home/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://www.globenewswire.com/news-release/2020/11/09/2122492/0/en/Check-Point-Software-Launches-Industry-s-First-Cyber-Security-Platform-with-Autonomous-Threat-Prevention.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://www.prnewswire.com/news-releases/netdiligence-publishes-tenth-annual-cyber-claim-study-301174738.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb><https://www.spglobal.com/marketintelligence/en/news-insights/latest-news-headlines/as-threats-grow-cyber-insurance-seen-as-more-of-a-necessity-61377276?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://www.prnewswire.com/news-releases/aon-launches-digital-cyber-insurance-for-small-and-middle-market-businesses-301183472.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[QNAP patches QTS vulnerabilities allowing NAS device takeover](https://www.bleepingcomputer.com/news/security/qnap-patches-qts-vulnerabilities-allowing-nas-device-takeover/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.prnewswire.com/news-releases/aon-launches-digital-cyber-insurance-for-small-and-middle-market-businesses-301183472.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://www.helpnetsecurity.com/2020/10/19/cybersecurity-automation-jobs/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Network-attached storage (NAS) maker QNAP today released security updates to address vulnerabilities that could enable attackers to take control of unpatched NAS devices following successful exploitation. By Sergiu Gatlan I December 7, 2020

 

## <https://www.prnewswire.com/news-releases/netdiligence-publishes-tenth-annual-cyber-claim-study-301174738.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb><https://www.timesnownews.com/business-economy/personal-finance/insurance/article/as-cyberattacks-rise-know-how-cyber-insurance-can-protect-your-hard-earned-money/685749?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://www.globenewswire.com/news-release/2020/12/02/2138291/0/en/Verisk-BlueVoyant-Forge-Strategic-Partnership-to-Drive-Cyber-Risk-Insights-for-Insurance-Organizations.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Chrome, Edge and Firefox May Leak Information on Installed Apps](https://www.securityweek.com/chrome-edge-and-firefox-may-leak-information-installed-apps?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.globenewswire.com/news-release/2020/12/02/2138291/0/en/Verisk-BlueVoyant-Forge-Strategic-Partnership-to-Drive-Cyber-Risk-Insights-for-Insurance-Organizations.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://www.helpnetsecurity.com/2020/10/19/cybersecurity-automation-jobs/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Two information disclosure vulnerabilities recently identified in the Chrome, Edge, and Firefox web browsers may be exploited to obtain information on applications on the system, Fortinet reports. By Ionut Arghire I December 07, 2020

 

## <https://portswigger.net/daily-swig/imagemagick-pdf-parsing-flaw-allowed-attacker-to-execute-shell-commands-via-maliciously-crafted-image?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt>[This new cyberattack can dupe DNA scientists into creating dangerous viruses and toxins](https://www.zdnet.com/article/this-new-cyberattack-can-dupe-scientists-into-creating-dangerous-viruses-toxins/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA)<https://portswigger.net/daily-swig/imagemagick-pdf-parsing-flaw-allowed-attacker-to-execute-shell-commands-via-maliciously-crafted-image?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt>

A new form of cyberattack has been developed which highlights the potential future ramifications of digital assaults against the biological research sector. By Charlie Osborne | November 30, 2020

 

## <https://portswigger.net/daily-swig/cnas-and-cves-can-allowing-vendors-to-assign-their-own-vulnerability-ids-actually-hinder-security?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_XrPXN6TbtNHZUleFtqz4RMO3UloYIuOmlsm1ssfbAJX8ribvor-63v9sHMoBA7i4O_DpU><https://securityaffairs.co/wordpress/111646/ics-scada/automation-systems-opens-flaw.html?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Forescout reports 33 new TCP/IP vulnerabilities](https://searchsecurity.techtarget.com/news/252493283/Forescout-reports-33-new-TCP-IP-vulnerabilities?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://securityaffairs.co/wordpress/111646/ics-scada/automation-systems-opens-flaw.html?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://www.forbes.com/advisor/homeowners-insurance/scary-scams/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Forescout Technologies disclosed 33 new vulnerabilities, including four remote code execution flaws, in four different open source TCP/IP stacks used by major IoT, OT and IT device vendors, according to a report published Tuesday. By Alexander Culafi I December 8, 2020

 

## <https://portswigger.net/daily-swig/cnas-and-cves-can-allowing-vendors-to-assign-their-own-vulnerability-ids-actually-hinder-security?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_XrPXN6TbtNHZUleFtqz4RMO3UloYIuOmlsm1ssfbAJX8ribvor-63v9sHMoBA7i4O_DpU>[Cisco fixes Security Manager vulnerabilities with public exploits](https://www.bleepingcomputer.com/news/security/cisco-fixes-security-manager-vulnerabilities-with-public-exploits/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq) <https://www.forbes.com/advisor/homeowners-insurance/scary-scams/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Cisco has released security updates to address multiple pre-authentication vulnerabilities with public exploits affecting Cisco Security Manager that could allow for remote code execution after successful exploitation. By Sergiu Gatlan I December 7, 2020

 

## <https://www.bleepingcomputer.com/news/security/fake-microsoft-teams-updates-lead-to-cobalt-strike-deployment/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://www.eurekalert.org/pub_releases/2020-11/sri-she110920.php?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://portswigger.net/daily-swig/sad-dns-researchers-pull-source-code-as-dns-cache-poisoning-technique-deemed-too-dangerous?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb><https://www.zdnet.com/article/malware-creates-online-stores-on-top-of-hacked-wordpress-sites/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://www.careersinfosecurity.com/cisa-warns-password-leak-on-vulnerable-fortinet-vpns-a-15472?&web_view=truee&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[PlayStation Now bugs let sites run malicious code on Windows PCs](https://www.bleepingcomputer.com/news/security/playstation-now-bugs-let-sites-run-malicious-code-on-windows-pcs/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.careersinfosecurity.com/cisa-warns-password-leak-on-vulnerable-fortinet-vpns-a-15472?&web_view=truee&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://www.forbes.com/advisor/homeowners-insurance/scary-scams/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-8fsDeaDJXWhOIF7z7KPYs4pJcQE6jS2bSHDiAa8qxCzqgLEJsbp867yYzGBk85k-1aCHdN>

Security bugs found in the PlayStation Now (PS Now) cloud gaming Windows application allowed attackers to execute arbitrary code on Windows devices running vulnerable app versions. By Sergiu Gatlan I December 7, 2020

 

## <https://portswigger.net/daily-swig/vulnerability-in-firefox-for-android-allowed-attackers-to-steal-cookies-local-files?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb><https://thehackernews.com/2020/11/critical-unpatched-vmware-flaw-affects.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-_qD5GPWDbLQ7gORQKZCCOPRBHGwpiWftOw4EODeA_zP0BVzL60pG2MIdNh5hU-e2TOomzt><https://securityboulevard.com/2020/12/old-vulnerabilities-open-the-door-for-wannacry-ransomware/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[All Kubernetes versions affected by unpatched MiTM vulnerability](https://www.bleepingcomputer.com/news/security/all-kubernetes-versions-affected-by-unpatched-mitm-vulnerability/?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://securityboulevard.com/2020/12/old-vulnerabilities-open-the-door-for-wannacry-ransomware/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA><https://portswigger.net/daily-swig/vulnerability-in-firefox-for-android-allowed-attackers-to-steal-cookies-local-files?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb>

The Kubernetes Product Security Committee has provided advice on how to temporarily block attackers from exploiting a vulnerability that could enable them to intercept traffic from other pods in multi-tenant Kubernetes clusters in man-in-the-middle (MiTM) attacks. By Sergiu Gatlan I December 8, 2020

 

## <https://portswigger.net/daily-swig/vulnerability-in-firefox-for-android-allowed-attackers-to-steal-cookies-local-files?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb>[Adobe Warns Windows, macOS Users of Critical-Severity Flaws](https://threatpost.com/adobe-windows-macos-critical-severity-flaws/162007/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq) <https://portswigger.net/daily-swig/vulnerability-in-firefox-for-android-allowed-attackers-to-steal-cookies-local-files?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9jiKtt1_WG1HE_gJ1lnLPS9juQRV_m73c94ryxaBHs03V9pXrvxQxbVUa7G-OIde8PJLRb>

Adobe Systems has stomped out critical-severity flaws across its Adobe Prelude, Adobe Experience Manager and Adobe Lightroom applications. If exploited, the serious vulnerabilities could lead to arbitrary code execution. By Lindsey O'Donnell I December 8, 2020

 

---

# **Regulations, Frameworks, and Controls**

 

## <https://www.itproportal.com/features/embracing-managed-service-providers-in-the-post-covid-19-world-transformation/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--KhWN0AG2UFGn-zb5wkDgUJZVJtmwO35BjfOnhLw19R9e7bo9dOkMt8V-6EWwsl8R4yDb9><https://www.globenewswire.com/news-release/2020/12/01/2137665/0/en/ProcessUnity-Introduces-Cybersecurity-Program-Management-Solution.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[Congress prepares to move on NDAA, which is loaded with cyber provisions](https://www.cyberscoop.com/congress-solarium-commission-defense-authorization-ndaa/?web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://www.globenewswire.com/news-release/2020/12/01/2137665/0/en/ProcessUnity-Introduces-Cybersecurity-Program-Management-Solution.html?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://www.openpr.com/news/2148389/cyber-insurance-market-next-big-thing-major-giants-american?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--bZS74_WZe1IDlpd0Z6DuKMLZcZmRMDuUWzB2uaX6wFusI-z5BS8N513GN3u_X92ecTCaX>

This year’s annual defense policy bill, known as the National Defense Authorization Act (NDAA), is loaded with provisions that would reshape the federal bureaucracy on cybersecurity. It would create a national cyber director in the White House and strengthen the Department of Homeland Security’s Cybersecurity and Information Security Agency (CISA), among other changes. By Tim Starks I December 7, 2020

 

## <https://digitalguardian.com/blog/new-government-contractor-cybersecurity-requirements-loom?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--zBe9qs7dLb0oqPwUqWKrCWxjJHh16PzZR5DeZ7yarkDFARGBXcnZnaOlzM66vGKIWha4k><https://securityboulevard.com/2020/12/nist-sp-800-53-control-families-explained/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA>[IoT Cybersecurity Improvement Act Signed Into Law](https://www.securityweek.com/iot-cybersecurity-improvement-act-signed-law?&web_view=true&utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9QHulcpkbQ6bR9bjYE7RbW4SJDoeljnqH4_6BRCb_NFqBCEQaaam8bDeM3tCR1w4oiMHGq)<https://securityboulevard.com/2020/12/nist-sp-800-53-control-families-explained/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz-9fbfoUgA8Lwv75OyckAkoWQoLqs6997cYhnFQrF5Vs8gRINsArfPBC96FiVrNLPWcqitkA> <https://www.openpr.com/news/2148389/cyber-insurance-market-next-big-thing-major-giants-american?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--bZS74_WZe1IDlpd0Z6DuKMLZcZmRMDuUWzB2uaX6wFusI-z5BS8N513GN3u_X92ecTCaX>

The IoT Cybersecurity Improvement Act of 2020 requires the National Institute of Standards and Technology (NIST) to develop and publish standards and guidelines on addressing issues related to the development, management, configuring, and patching of IoT devices. By Ionut Arghire I December 08, 2020

 

---

 

[![Get a Free Consultation Now!](https://no-cache.hubspot.com/cta/default/5223782/7a13ece4-0f5b-4385-b275-f4c9cf174a2f.png)](https://cta-redirect.hubspot.com/cta/redirect/5223782/7a13ece4-0f5b-4385-b275-f4c9cf174a2f)

| Sincerely, **Omnistruct Marketing** 866-683-8827 [www.omnistruct.com](https://omnistruct.com/?utm_campaign=Cybersecurity%20News&utm_source=hs_email&utm_medium=email&_hsenc=p2ANqtz--bZS74_WZe1IDlpd0Z6DuKMLZcZmRMDuUWzB2uaX6wFusI-z5BS8N513GN3u_X92ecTCaX) --- Omnistruct, 2740 Fulton Avenue #101-02, Sacramento, CA 95821, USA, (866) 683-8827 [Unsubscribe                  ](https://email.omnistruct.com/business-information-security-news-october-9-2020#)[Manage preferences](https://email.omnistruct.com/business-information-security-news-october-9-2020#) |
| --- |

 

 Topics: [Omnistruct Newsletter](https://blog.omnistruct.com/tag/omnistruct-newsletter)

### Recent Posts

- [Cyber Security Programs](https://omnistruct.com/)
- [Why NIST CSF?](https://omnistruct.com/why-nist-csf/)
- [Pricing By Outcome](https://omnistruct.com/by-outcome/)
- [Pricing By Service](https://omnistruct.com/by-service/)
- [About](https://omnistruct.com/company/)
- [Contact](https://omnistruct.com/contact/)
- [Blog](https://omnistruct.com/blog/)
- [Partners](https://omnistruct.com/partners/)
- [News](https://omnistruct.com/news/)

![Omnistruct](https://blog.omnistruct.com/hubfs/Omnistruct_July2019%20/Images/Omnistruct1%20(1).png)

#### Get Social

<https://twitter.com/Omnistruct> <https://www.linkedin.com/company/omnistruct/>

Omnistruct Inc® - Copyright 2019 - Terms of Use - Privacy Policy