­
8 11, 2018

Bank Attacks Put Password Insecurity Back in the Spotlight 

 

Two separate attacks on banks in the United States and Pakistan revealed this week highlight once again the inherent weakness of a security practice that relies on passwords or knowledge-based credentials to protect critical information. International bank HSBC said it was a victim of a credential-stuffing and became aware of unauthorized access to online accounts between Oct. 4 and Oct. 14, according to a notice filed with the state of California. Credential stuffing attacks use [...}

2 11, 2018

Cisco security appliances under attack, still no patch available 

 

A vulnerability (CVE-2018-15454) affecting a slew Cisco security appliances, modules and firewalls is being exploited in the wild to crash and reload the devices.The vulnerability is in the Session Initiation Protocol (SIP) inspection engine of Cisco Adaptive Security Appliance (ASA) Software and Cisco Firepower Threat Defense (FTD) Software, and allows unauthenticated, remote attackers to cause [...}

Sep 2018

Trust services in Republic of Albania

 

(This article is published on the SEEDIG (South Eastern European Dialogue on Internet Governance) portal, which is an open, inclusive space for dialogue on Internet governance issues between stakeholders from South Eastern Europe and the neighbouring area)

In preparation for the cybersecurity month, the National Authority for Electronic Certification and Cyber Security (NAECCS) of Albania is releasing information on the regulation and use of electronic signatures, electronic identification and other trust services in the country.  According to the authority, there are now two accredited providers of trust services in Albania: the National Agency for Information Society, which provides trust services for the public administration and the private sector, and ALEAT, which provides services for citizens. In September 2018, there were 9668 qualified certificates (for electronic identification and electronic signatures) issued for civil servants and private entities, and 784 303 qualified certificates issued for citizens (and integrated into national ID cards). NAECSS reports that trust services are largely used for accessing electronic public services via the e-Albania portal, which currently offers a total of 1268 such services. Among these, 68 e-services require the use of electronic signatures, while 54 involve electronic stamps.

Find article on https://seedig.net/seesummary-september-2018/