Last week, Microsoft announced MC182605 in their admin Message Center. It describes a long awaited and needed email security feature. Microsoft Outlook mobile apps will soon have built-in support for S/MIME (Secure Multipurpose Internal Mail Extensions). The feature is currently in development, and now expected to start rolling out after...
Earlier this week, the US Government’s Cyber and Infrastructure Security Agency (CISA), a division of the Department of Homeland Security (DHS), issued AR19-133A. This analysis report describes some of the common security holes exposed by a “mix of configurations that lowered their overall security posture.” Here are the main points...
Let’s face it: Law firms have historically been behind the curve when it comes to adopting new technologies. Many are just now realizing the tremendous benefits of electronic document management (EDM) systems. When it comes to storing and retrieving case information compared to the old filing cabinet, there is no...
The landmark 1996 Health Information Portability and Accountability Act (HIPAA) is back in the news. The Trump administration is exploring the possibility of easing some of these requirements. HIPAA mandates could unnecessarily impede the sharing of health information between care providers and patient’s family members. Discussions to Ease Sharing Regulations...
With more businesses looking to automate and streamline as many of their business processes as possible, it’s no surprise that digital signatures are quickly replacing traditional ink and paper. Digital signatures offer myriad advantages over a hand-written signatures. But, the main business drivers are increased efficiency and automation. As more...
We are well into the second half of the year already, and 2018 is turning out to be wildly different from the past year. The dominant story in 2017 was definitely ransomware, especially those employing cryptography to lock individuals and organizations from their systems and important files unless a hefty...
News of a potentially serious S/MIME and PGP vulnerability was released today. The proposed attack works by modifying an encrypted email in a very specific way, either while in transit, or in the victim’s email account. The victim’s email client then decrypts the message and attempts to load an external link...
We’re now entering the final “25 Days of GDPR” countdown; and by May 25th your organization must be compliant with all of the General Data Protections Regulations (“the GDPR”) or face stiff penalties for non-compliance. Although the regulation is technically only applicable to data of EU residents, because of the...
The landscape of email security is set to radically change in the next few years. The entire industry of email encryption and DLP was driven almost exclusively by privacy regulations enacted in the late 90’s and early 2000’s. It’s hard to believe we are almost 20 years removed, but are...
UPDATE 1/22/2018: Due to instabilities found in some Intel based servers operating with microcode patches, multiple vendors including VMware and Redhat Enterprise Linux have reverted their microcode patches. As a result, many servers will still be vulnerable to one version of the Spectre attack (CVE-2017-5715), even after updating their hypervisors...