Welcome to This Week’s [in]Security. Non-Compliance Lesson, DSSv4 related, Skimmers, Other Payments. New breaches: 7 breachers per capita, Shields &...
Welcome to This Week’s [in]Security. Covid19 passes 5M infected and nearly 100K US dead. Brazil, Russia. Leaked data on China's infections. Failed herd immunity. Misinformation. Distancing gimmicks. Isolation fatigue. New and updated PCI FAQs. PCI GEAR. Magecart evading scans. Verizon's annual breach report (DBIR). Breach notice speak. 116M+ breached records. COVID related breaches. Contact tracing APIs and apps. Deleting yourself from the Internet. Apple v FBI again. Security and memory safety. Dark Web checkup. Quantum computing update. COVID related fraud. Not invented here risk. Negative interest rates. Disturbing AI. Incels. Dust bowl 2.0. Hurricanes. The South Atlantic Anomaly. Recycling munitions. And more.
Now here's this week’s selection of news, opinions, and research. Quickly skim annotated links organized by topic: compliance and payment security, breaches, regulation, bugs, privacy, hacking/malware, other security & risk, and more. We hope you enjoy and find them useful.
Coronavirus updates. We recently change the way we report COVID articles to you so it is less overwhelming. Many COVID articles will appear within our normal blog section headings each with a sub-group dedicated to COVID-19. For example:
Our first regular reports on coronavirus can be found at https://controlgap.com/blog/this-weeks-insecurity-issue-147. And our first use of the trending topic section can be found https://controlgap.com/blog/this-weeks-insecurity-issue-149.
The spread and the curve:
Lockdown and reopening:
Treatments, Testing, Triage, and Trials, and things we learned:
Guidance, Response and Recovery:
Behaviour - the good, the bad, and the ugly:
Masks, anti-maskers, and distancing:
News and announcements relating to Payment Security, PCI, Card Brands, Payments, Payment Malware and Fraud.
PCI FAQs - 4 New - 1 Updated - P2PE, SSF, PFI
Covering breaches, leaks, data exposures, ransomware (as potential breach), and their fallout.
COVID related breaches - unemployment, stimulus, apps:
Articles about privacy related news, risks, and trends.
COVID-19 Contact tracing and surveillance:
News about laws, regulations, and standards affecting security, privacy, technology, and public interest.
Covering developments and opportunities that may help improve security.
Articles about newly discovered vulnerabilities and research.
News covering active trends and events.
COVID-19 Crime, Cybercrime, Fraud, ...:
Articles covering other types of risks.
COVID-19 Other risks and impact:
A variety of scientific, technical, historical, and more light-hearted news.
PCI DSS can be hard and not preparing for it just makes things harder. Following this advice is guaranteed to make it both more exciting and painful.