Cyber Defense Advisors

Month: September 2023

New Revelations from the Snowden Documents

Jake Appelbaum’s PhD thesis contains several new revelations from the classified NSA documents provided to journalists by Edward Snowden. Nothing major, but a few more tidbits. Kind of amazing that that all happened ten years ago. At this point, those documents are more historical than anything else. And it’s unclear who has those archives anymore. […]

Cyber News, Cyber Threat Trends

On the Cybersecurity Jobs Shortage

In April, Cybersecurity Ventures reported on extreme cybersecurity job shortage: Global cybersecurity job vacancies grew by 350 percent, from one million openings in 2013 to 3.5 million in 2021, according to Cybersecurity Ventures. The number of unfilled jobs leveled off in 2022, and remains at 3.5 million in 2023, with more than 750,000 of those […]

Cyber News, Cyber Threat Trends

Detecting AI-Generated Text

There are no reliable ways to distinguish text written by a human from text written by an large language model. OpenAI writes: Do AI detectors work? In short, no. While some (including OpenAI) have released tools that purport to detect AI-generated content, none of these have proven to reliably distinguish between AI-generated and human-generated content. […]

Cyber News, Cyber Threat Trends

The Key Features of SOC 2 Compliance 

The Key Features of SOC 2 Compliance In today’s digital-driven world, data security is of utmost importance. Organizations are increasingly relying on new technologies such as cloud computing and software-as-a-service (SaaS), which expose them to various risks. As a result, customers and stakeholders are demanding assurances from service providers about the security and privacy of […]

SOC 2 Compliance

Common Questions on SOC 2 Compliance 

Common Questions on SOC 2 Compliance As data breaches and cybersecurity threats continue to rise, organizations are increasingly focused on protecting sensitive customer data. One way to showcase their commitment to data security is by obtaining SOC 2 compliance. SOC 2 (Service Organization Control 2) is an auditing standard developed by the American Institute of […]

SOC 2 Compliance

A Brief Overview of SOC 1 and SOC 2 Compliance

A Brief Overview of SOC 1 and SOC 2 Compliance In an era of increasing digital dependence, the security and privacy of sensitive information have become critical concerns for organizations across various industries. To mitigate risks and address customer demands, organizations often seek compliance with industry-standard frameworks. Two such frameworks that are widely recognized in […]

SOC 2 Compliance

A Basic SOC 2 Compliance Checklist

A Basic SOC 2 Compliance Checklist In today’s digital age, the importance of data security and privacy cannot be overstated. Carrying out business operations in a secure environment has become a critical aspect of maintaining customer confidence and complying with industry regulations. Among the many security frameworks available, Service Organization Control 2 (SOC 2) has […]

SOC 2 Compliance

A Basic Explanation of SOC 2 Compliance

A Basic Explanation of SOC 2 Compliance In the digital age, businesses are increasingly relying on third-party service providers to store and process their sensitive data. As a result, ensuring the security, availability, processing integrity, confidentiality, and privacy of this data has become a top priority. SOC 2 compliance is a widely recognized framework that […]

SOC 2 Compliance

Using Hacked LastPass Keys to Steal Cryptocurrency

Remember last November, when hackers broke into the network for LastPass—a password database—and stole password vaults with both encrypted and plaintext data for over 25 million users? Well, they’re now using that data break into crypto wallets and drain them: $35 million and counting, all going into a single wallet. That’s a really profitable hack. […]

Cyber News, Cyber Threat Trends