Showing posts with label Larissa Gaston. Show all posts
Showing posts with label Larissa Gaston. Show all posts

Monday, February 13, 2017

Deception-based Ransomware Detection: What It Is and Why You Need it

The FBI deemed criminal ransomware a $1 billion industry in 2016. And the ransomware trend is expected to continue in 2017 as incentives increase and the hacking software spreads. The problem is it’s getting easier...

from Deception-based Ransomware Detection: What It Is and Why You Need it

Thursday, January 19, 2017

Behind the Scenes of a Phishing Campaign

In a previous Imperva Hacker Intelligence Initiative (HII) report we delved into some of the financial aspects of phishing and credential theft. Obviously, one of the important factors in the cost of a campaign is...

from Behind the Scenes of a Phishing Campaign

Tuesday, January 17, 2017

Defend Against PHPMailer Vulnerability with 0day Protection

On December 25th 2016, a critical new vulnerability in PHPMailer was made public. The open source PHP library for email handling embeds email functionality in web applications. This recent vulnerability takes advantage of insufficient validation...

from Defend Against PHPMailer Vulnerability with 0day Protection

Thursday, January 5, 2017

Remote Code Execution (RCE) Attacks on Apache Struts

Since 2010, 68 vulnerabilities of Apache Struts—the popular open source framework used for building web applications—have been published. Although all of them have been mitigated through patches, hackers still constantly exploit these vulnerabilities to launch...

from Remote Code Execution (RCE) Attacks on Apache Struts

Thursday, December 29, 2016

The State of Web Applications’ Vulnerabilities in 2016

Part of our job on the Imperva web application security team is supplying inclusive mitigation to new security vulnerabilities in web applications as soon as they become public. Imperva continually gathers information regarding new vulnerabilities...

from The State of Web Applications’ Vulnerabilities in 2016

Tuesday, December 20, 2016

Botnets, Insider Threats, and Russian Hackers: Our 2016 Cyber Security Predictions in Review

At the end of 2015 we offered several predictions regarding the evolving cyber security landscape for 2016. We’ll be releasing our 2017 predictions soon, but before we do, we thought we’d see how accurate our...

from Botnets, Insider Threats, and Russian Hackers: Our 2016 Cyber Security Predictions in Review