What is a certificate revocation list (CRL);-what they are, their importance, and why they can get revoked.

Tekmart Infrastructure SecurityTeam/ October 11, 2021/ Batting for Tech in the Covid-19 Times, Cybersecurity risk assessment and management, Datacenter Infrastructure News, Enterprise identity and access management, Expert Advise and Opinion, Hackers and cybercrime prevention, Identity and access management, Industry News and Expert Advice, Security, Tech Definitions, Technical Explanations

Reading Time-approximately: 4 minutesA certificate revocation list (CRL) is a list of digital certificates that have been revoked by the issuing certificate authority (CA) before their actual or assigned expiration date. By Rahul Awati and Michael Cobb This is a type of blocklist that includes certificates that should no longer be trusted and is used by various endpoints, including web browsers, to verify if a certificate

Read More

Whaling attack (whaling phishing);-a tech explanation,how they work, and ways to protect yourself from falling victim to them.

Tekmart Infrastructure SecurityTeam/ September 29, 2021/ Batting for Tech in the Covid-19 Times, Best practices for data center operations, Cybersecurity risk assessment and management, Data center facilities, Data Center Hardware, Datacenter Infrastructure News, Expert Advise and Opinion, Hackers and cybercrime prevention, Industry News and Expert Advice, MSPs and cybersecurity, Security, Tech Definitions, Technical Explanations, whaling attack (whaling phishing)

Reading Time-approximately: 5 minutesA whaling attack, also known as whaling phishing or a whaling phishing attack, is a specific type of phishing attack that targets high-profile employees, such as the chief executive officer or chief financial officer, in order to steal sensitive information from a company. By Ben Lutkevich, Casey Clark,  and Sharon Shea In many whaling phishing attacks, the attacker’s goal is to manipulate the victim into authorizing

Read More

Cybersecurity isn’t just IT’s responsibility. 7 tips for building a strong security culture

Tekmart Infrastructure SecurityTeam/ September 22, 2021/ Best practices for data center operations, Cybersecurity risk assessment and management, Data center facilities, Data Center Hardware, Datacenter Infrastructure News, Expert Advise and Opinion, Hackers and cybercrime prevention, Industry News and Expert Advice, MSPs and cybersecurity, Security

Reading Time-approximately: 4 minutesUse these seven tips to build a security culture where employees and IT work together to keep their organization safe. By  Perry Carpenter Every organization across every industry is worried about information security. Another attack takes place nearly every day — often resulting in the exposure of consumer records or threats of attackers using data to extort money from organizations.

Read More

What is cybersecurity insurance (cybersecurity liability insurance)?-an expert explanation and how to choose one

Tekmart Infrastructure SecurityTeam/ September 20, 2021/ Best practices for data center operations, Cybersecurity risk assessment and management, Data center facilities, Data Center Hardware, Datacenter Infrastructure News, Expert Advise and Opinion, Hackers and cybercrime prevention, Industry News and Expert Advice, IT compliance and governance strategies, MSPs and cybersecurity, Tech Definitions, Technical Explanations, Web application and API security best practices

Reading Time-approximately: 4 minutesCybersecurity insurance, also called cyber liability insurance or cyber insurance, is a contract that an entity can purchase to help reduce the financial risks associated with doing business online. By TechTarget Contributor In exchange for a monthly or quarterly fee, the insurance policy transfers some of the risk to the insurer. Cybersecurity insurance is a new and emerging industry. Companies that purchase cybersecurity insurance

Read More

IT services firms are shouldering undue amount of security risk

Staff Writer/ September 20, 2021/ Best practices for data center operations, Cybersecurity risk assessment and management, Data center facilities, Data Center Hardware, Datacenter Infrastructure News, Expert Advise and Opinion, Hackers and cybercrime prevention, Industry News and Expert Advice, MSPs and cybersecurity, Security

Reading Time-approximately: 7 minutesA steady stream of major security breaches hasn’t persuaded businesses to change their ways. IT services firms, meanwhile, continue to assume an inordinate amount of risk. By  Dave Sobel Dave Sobel is host of the podcast The Business of Tech and co-host of the podcast Killing IT. In addition, he wrote Virtualization: Defined. Sobel is regarded as a leading expert in the delivery of technology

Read More

Growing cause of security incidents attributable to cloud misconfiguration.

Tekmart Infrastructure SecurityTeam/ August 8, 2021/ ‘New Normal’ courtesy of Covid-19, Batting for Tech in the Covid-19 Times, Cloud architecture design and planning, Cloud computing, Cloud computing for business, Data Center Hardware Terminology, Datacenter Infrastructure News, Expert Advise and Opinion, Hackers and cybercrime prevention, Industry News and Expert Advice, MSPs and cybersecurity, Network Infrastructure, Security, Timeless Articles

Reading Time-approximately: 2 minutesRapid cloud adoption during the pandemic has increased the attack surface and heightened the risk of misconfiguring services, leaving organisations more vulnerable to cyber attacks. By Sebastian Klovig Skelton Every organisation deploying Amazon Web Services (AWS) has experienced at least one security incident in its public cloud environment over the past year, with businesses’ rapid move to the cloud making

Read More

Watering hole attacks; what these are, how they work and how to prevent becoming a victim.

Tekmart Infrastructure SecurityTeam/ June 28, 2021/ ‘New Normal’ courtesy of Covid-19, Batting for Tech in the Covid-19 Times, Best practices for data center operations, Data center facilities, Data Center Hardware, Data security, Datacentre disaster recovery and security, Hackers and cybercrime prevention, IT infrastructure management and planning, Network visibility

Reading Time-approximately: 3 minutesA watering hole attack is a security exploit in which the attacker seeks to compromise a specific group of end users by infecting websites that members of the group are known to visit. ByGavin Wright and Madelyn Bacon The goal is to infect a targeted user’s computer and gain access to the network at the target’s workplace. The term watering hole

Read More

Prevent man-in-the-middle attacks on apps, CI/CD toolchains

Tekmart Infrastructure SecurityTeam/ June 9, 2021/ Batting for Tech in the Covid-19 Times, Data Center Hardware, Datacenter Infrastructure News, Expert Advise and Opinion, Hackers and cybercrime prevention, Industry News and Expert Advice, Tech Definitions, Technical Explanations

Reading Time-approximately: 4 minutesMan-in-the-middle attacks pose a serious threat to both CI/CD tools and the apps those tools support. Learn how these attacks typically occur — and how to stop them — to do DevOps securely. By Will Kelly Distributed apps and CI/CD toolchains result in an IT environment that is open to endless network crossings. Every connection is a chance for a

Read More

What is “meet-in-the-middle attack” hacking attacks ?-a tech explanation

Tekmart Infrastructure SecurityTeam/ June 9, 2021/ Batting for Tech in the Covid-19 Times, Best practices for data center operations, Data center facilities, Data Center Hardware, Data security, Datacentre disaster recovery and security, Hackers and cybercrime prevention, IT infrastructure management and planning, Tech Definitions, Technical Explanations

Reading Time-approximately: 3 minutesMeet-in-the-middle is a known plaintext attack that can greatly reduce the number of brute-force permutations required to decrypt text that has been encrypted by more than one key. Such an attack makes it much easier for an intruder to gain access to data. By TechTarget Contributor A meet-in-the-middle attack targets block cipher cryptographic functions. The intruder applies brute-force techniques to both the

Read More

What is email spoofing?

Staff Writer/ June 7, 2021/ Datacenter Infrastructure News, Email and messaging threats, Expert Advise and Opinion, Hackers and cybercrime prevention, Tech Definitions, Technical Explanations

Reading Time-approximately: 4 minutesEmail spoofing is a form of cyber attack in which a hacker sends an email that has been manipulated to seem as if it originated from a trusted source.  By Peter Loshin Email spoofing is a popular tactic used in phishing and spam campaigns because people are more likely to open an email when they think it has been sent by a known sender.

Read More