Here is a nice video from Trend Micro that provides a good overview of what is often referred to as the business email compromise: https://youtu.be/sxybmE1rrZg
Author Archives: Shawn E. Tuma
Verizon Requires $350 Million Discount and Yahoo Share in Data Breach Liability — Good Deal?
UPDATE: Yahoo Shareholders Sue Over Massive Data Breaches (Law 360 paywall) Verizon and Yahoo have renegotiated their deal in the wake of Yahoo’s revelations of its past data breaches. Verizon had agreed to pay $4.8 billion for Yahoo’s Internet business in July 2016, but that was before Yahoo disclosed that it had two of the largest data …
David Beckham’s Exposed Emails Exemplify Shame Hacking Threat
Hackers have obtained David Beckham’s embarrassing emails from his advisors in an extortion plot in which the advisors were told “pay up or we’ll release emails,” according to a recent news report. When the advisors refused to pay the £1million demand, the hackers released the emails. This is yet another example of what I call shame hacking, a topic …
Continue reading “David Beckham’s Exposed Emails Exemplify Shame Hacking Threat”
Stolen Laptop + 3,800 PHI Records = $3.2 Millon Penalty
That’s right, Children’s Medical Center had 1 unencrypted laptop stolen that had protected health information (PHI) for 3800 patients. This stolen laptop was absolutely considered a data breach and resulted in a fine of $3.2 million. Still think data breaches are not serious business? Read more: Children’s Medical Center Pays Federal Fine Over Data Breach « …
Continue reading “Stolen Laptop + 3,800 PHI Records = $3.2 Millon Penalty”
3 Critical Cybersecurity Steps Your Company Must Take
I have presented at several cybersecurity conferences over the last few weeks and have had an opportunity to listen to and talk with some of the most highly regarded experts in this field. This includes experts from the FBI, Secret Service, private industry experts and many others. The message I have heard over and over …
Continue reading “3 Critical Cybersecurity Steps Your Company Must Take”
Learn More About the NLJ’s Cybersecurity & Data Privacy Trailblazers for Data Privacy Day!
What better way is there to celebrate Data Privacy Day than by learning more about the most recent list of Cybersecurity & Data Privacy Law Trailblazers as published by the National Law Journal? If you are so inclined, here you go: Trailblazers!
Happy Data Privacy Day!
WHAT ARE YOU DOING TO OBSERVE IT? Today is Data Privacy Day! If you have been wondering “what is Data Privacy Day?” then this is your lucky day because not only is today Data Privacy Day, but here is the answer and an explanation for why it really matters to you and your company’s future …
ALERT: Prepare Your Company for the Season of W-2 Email Scams
UPDATED: SEE BELOW IRS ‘Dirty Dozen’ Tax Scams For 2017 Include ID Theft & Bogus Refunds Hunting season just began — the season in which cybercriminals are hunting for W-2 information from your company. They do this by sending emails spoofing high-level executives, such as the company President or CEO, to lower level clerical personnel …
Continue reading “ALERT: Prepare Your Company for the Season of W-2 Email Scams”
Improving Your Cybersecurity Plan, Explained by Paul Ferrillo in WSJ
The Wall Street Journal did an interview of my friend, collaborator, prolific author, and the the original Cyber Patriot, Paul Ferrillo to discuss how companies can make their cybersecurity plan better. Here is the full article: Making Your Cybersecurity Plan Better Paul and I are both firm believers in focusing on the basics so that …
Continue reading “Improving Your Cybersecurity Plan, Explained by Paul Ferrillo in WSJ”
Trying to DDoS the White House Website to Protest Trump’s Inauguration Violates CFAA
There has been a lot of buzz this past week about protesters indicating they plan to protest President-Elect Trump’s inauguration by launching a DDoS attack on the White House website. This plan has received some high-profile publicity by articles in magazines such as Forbes and PC World. I initially learned of this discussion when I …

You must be logged in to post a comment.