CISA releases International Plan to strengthen global collaboration on cyber threats related to critical infrastructure

Posted in Commentary with tags on October 31, 2024 by itnerd

Earlier this week, CISA released its The 2025-2026 International Strategic Plan aimed at enhancing global collaboration to address cyber threats to critical infrastructure.

The plan recognizes the intricate and geographically dispersed nature of cyber risks, emphasizing the importance of quickly sharing threat information and risk reduction guidance with international partners.

CISA International Strategic Plan Goals sets out three goals for CISA to achieve over the 2025-2026 period:

  1. Bolster the Resilience of Foreign Infrastructure on which the US Depends – CISA will work with interagency and international partners to identify and understand which international systems and assets are critical and assess how they are vulnerable to create strategies to manage shared risks.
  2. Strengthen Integrated Cyber Defense – CISA plans to collaborate with partners, international organizations, and NGOs to shape global cybersecurity practices and standards, promoting widespread cyber safety and security.
  3. Unify Agency Coordination of International Activities – The CISA Stakeholder Engagement Division will create a governance structure to advise on international issues and clearly outline the agency’s international priorities. This will involve enhancing systematic information sharing across CISA to ensure situational awareness of ongoing and future international activities.

CISA will also focus on enhancing the skills of its workforce to better influence the international landscape including developing training programs for employees overseas and providing guidance on international affairs for all traveling staff.

“In following this plan, CISA will improve coordination with our partners and strengthen international relationships to reduce risk to the globally interconnected and interdependent cyber and physical infrastructure that Americans rely on every day,” CISA Director Jen Easterly commented.

Emily Phelps, Director, Cyware:

“CISA’s 2025-2026 International Strategic Plan underscores the urgency of an interconnected approach to securing critical infrastructure across borders. As cyber threats grow increasingly complex and far-reaching, swift, collaborative information-sharing becomes essential to mitigate risks that could impact not just a single nation but the global landscape. CISA’s commitment to bolstering the resilience of international assets and systems vital to U.S. security reflects a forward-thinking acknowledgement of interdependencies in today’s cyber ecosystem. The focus on strengthening integrated cyber defenses and establishing clearer governance structures is a strategic leap towards a unified, cohesive response to these shared threats. This approach—fostering resilience, enhancing standards, and emphasizing interagency coordination—can set a precedent for global cybersecurity initiatives, reinforcing that collective defense is the linchpin in navigating future cyber challenges.”

A collective approach to defending critical infrastructure is the way to go. And once again I applaud the CISA in terms of leading the way. Hopefully other countries take this just as seriously as the CISA does.

Rogers Net-Zero Targets Approved by SBTi

Posted in Commentary with tags on October 31, 2024 by itnerd

Rogers today announced its net-zero greenhouse gas (GHG) emissions targets have been approved by the globally recognized Science Based Targets initiative (SBTi).

Rogers is the first national carrier in Canada to have approved science-based net-zero targets published by the SBTi. The global organization for corporate climate goals validates submitted targets and action plans to ensure they are in line with the Paris Agreement.  

The company’s action plan will aim to deliver on environmental commitments in four key areas: 

  • Increasing energy efficiencies across its operations and network   
  • Transitioning its fleet to electric and hybrid vehicles    
  • Expanding its renewable energy strategy    
  • Engaging suppliers to set their own science-based targets 

Rogers efforts have already reduced scope 1 and 2 GHG emissions by 33% since 2019. Rogers long-term net-zero targets are to reduce absolute scope 1, 2 and 3 GHG emissions to net-zero by 2050. Near-term targets are to reduce absolute scope 1 and 2 emissions by 50% by 2030 and ensure 80% of its suppliers set their own science-based targets by 2029.

OpenTable and Visa Team Up to Offer Exclusive Dining Access in Canada

Posted in Commentary with tags , on October 31, 2024 by itnerd

Today, OpenTable, a global leader in restaurant tech, and Visa, a world leader in digital payments, announced a collaboration that will offer eligible Visa Infinite Privilege cardholders access to high-demand and sought-after primetime restaurant reservations at restaurants in Toronto, Montreal, Vancouver, Calgary, and surrounding areas, in addition to select cities in the U.S. and Mexico through OpenTable.  

Primetime reservations at select restaurants in each of these cities will be available to OpenTable diners who book with eligible Visa Infinite Privilege cards through the OpenTable & Visa Dining platform. Restaurants include MICHELIN-starred venues and local favorites in beloved culinary destinations, with the list set to grow to more than 500 restaurants across 34 North American cities by 2025. Visa Infinite Privilege cards, issued in Canada, are eligible at launch. 

Eligible Visa Infinite Privilege cardholders can now take advantage of access to primetime reservations by adding their eligible card to their OpenTable account or opening an account at https://www.opentable.ca/c/en/visadining.  

Participating restaurants in the program and culinary experiences in select cities across North America will be regularly updated as they become available.  

The program’s inaugural establishments in Canada are: 

  • Toronto: Alder, Alo Restaurant, Alobar Yorkville, Aloette, ARDO Restaurant, Bar Isabel, Bar Prima, Blue Bovine Steak + Sushi House, Dailo, DaNico, Don Alfonso 1890, Enigma Yorkville, Giulietta, Lucie, Mimi Chinese, Osteria Giulia, Piano Piano – Colborne – Harbord – Mt. Pleasant and Oakville, Quetzal, Richmond Station, Simpl Things, Sunny’s Chinese, Vela Toronto, Yugen Sushi, Yukashi Japanese Cuisine.
  • Vancouver: Acquafarina, AMA, Autostrada – Vancouver House, Barbara Restaurant – Vancouver, Bravo, Botanist, Capo & The Spritz, Dovetail, Fiorino – Italian Street. Food, Hawksworth Restaurant, Le Crocodile, Mott 32 – Vancouver, Lobby, Nammos Estiatorio, Nightingale, Per Se Social Corner, Selene Aegean Bistro, Song (By Kin Kao), The Acorn.     
  • Calgary and Southern Alberta: änkôr (Canmore), Bar Chouette, Donna Mac, DOPO, Fortuna’s Row, LUPO Italian Ristorante & Patio (Banff), Orchard, Proof, River Café, Rodney’s Oyster House – Calgary.                                                 
  • Montreal: Alma, Anémone, Bar St-Denis, Damas Restaurant, Garde Manger, Hoogan & Beaufort, Île Flottante, Joe Beef, Kitano Shokudo, Le 9e – Restaurant Ile de France, Le Vin Papillon, Les Mômes, Liverpool House, Park Restaurant, Salle Climatisée, Tinc Set. 

Other World Computing Announces Compatibility of OWC USB-C Dual HDMI 4K Display Adapter with Latest Apple iMac with M4

Posted in Commentary with tags on October 31, 2024 by itnerd

 Other World Computing today announced that its OWC USB-C Dual HDMI 4K Display Adapter offers seamless compatibility with Apple’s latest iMac with M4 release. For iMac users seeking dual-display capabilities, this OWC adapter empowers them to easily connect two 4K displays via a single USB-C port – especially useful where native support is limited.

The OWC USB-C Dual HDMI 4K Display Adapter is compatible with Apple’s newest iMac M4, as well as previous models such as the M1 and M3 iMacs, M1-M3 MacBook Air, and 13″ and 14″ MacBook Pros equipped with M-series chips. While Macs with Pro, Max, and Ultra processors natively support multiple displays, this industry-unique OWC adapter unlocks the ability to use dual external displays on Mac models limited to a single monitor, expanding productivity for users across the Apple ecosystem.

OWC USB-C Dual HDMI 4K Display Adapter – Key Features & Benefits

  • Scalable – easily solves the one external display limitation of Apple silicon standard M1, M2, and M3, M4 Macs
  • Expansive – connect up to two 4K displays via a single Thunderbolt or USB-C port on any Mac or Windows PC, or add a second adapter for up to four displays
  • Flexible – choose either Extended or Mirror display modes
  • Convenient – bus-powered via integrated 13-inch USB-C cable for use anywhere
  • Comprehensive – certified pass-through power delivery so you can fully power/charge your Apple silicon M1/M2/M3 MacBook Pro or M1/M2 MacBook Air and run dual displays all through a single port
  • Portable – about the size and weight of a compact smartphone
  • Complete – one easy, affordable solution vs costly hassle of multiple adapters and cables
  • HDMI Pass-Through Support – Allows audio signals to pass through the adapter to the connected displays

The OWC USB-C Dual HDMI 4K Display Adapter is immediately available for $94.99 – learn more and purchase here.

Hisense C2 Ultra Smart Mini Projector, Designed for Xbox, Now Available in Canada 

Posted in Commentary with tags on October 31, 2024 by itnerd

The ultimate 4K laser projector, designed specifically for use with Xbox, has been launched in Canada.  

The Hisense C2 Ultra is a smart mini projector that marries performance with convenience. Boasting a screen size between 65 inches and 300 inches and a picture in stunning 4K UHD, the C2 Ultra transforms any space into a cinematic experience. The unique Gimbal design allows effortless 360° horizontal and 135° vertical adjustment for flexible viewing, and it is packed with smart TV features that will keep movie buffs, TV bingers, sports fanatics and avid gamers enthralled.  

But the C2 Ultra is for more than just gamers. It is loaded with features that make it perfectly suited for movies, TV shows and sports as well.  

  • Unparalleled Picture — With a picture delivered by a triple-laser light source that produces 3000 ANSI Lumens brightness, 4K and 4K Upscaling, Optical Zoom and 2000:1 native contrast, experience a bright, vivid and colourful viewing experience with deeper blacks, brighter whites and vibrant colours. 4K Upscaling enhances lower-resolution content with sharpness and detail, (It’s remarkable how much more each pixel can achieve!) The Optical Zoom feature ensures the image stays in 4K detail no matter how much you zoom in our out. The C2 Ultra also supports IMAX Enhanced and Dolby Vision so you can watch movies the way the filmmakers intended them to be seen.  
  • Cinematic Sound — With built-in JBL speakers, subwoofer and DTS Virtual:X, the sound perfectly matches the action on screen. The dedicated subwoofer adds deep bass, making the audio feel more balanced and immersive for a more lifelike, truly cinematic experience. 
  • Hassle-Free Operation — The C2 Ultra puts the smart in smart projector. Seamless auto keystone correction automatically adjusts the image for clear, sharp, and perfectly aligned projections, eliminating the need for manual tweaks to enjoy the ultimate viewing. Experience precision like never before with the C2 Ultra’s 3D ToF (Time of Flight) technology, which emits light pulses and measures the time they take to return, instantly adjusting the image for perfect depth and alignment. Seamless Auto Focus adapts to changes in distance or screen size to ensure a consistently sharp and clear image, delivering an optimal viewing experience. Enjoy uninterrupted clarity at all times. It will also detect and avoid objects that obstruct the screen during projection, and guarantees the picture stays perfectly aligned within the screen, regardless of the screen size. The C2 Ultra also detects your wall colour and adjusts the projection for a flawless viewing experience. It can coordinate colours with up to seven different shades, ensuring the image remains crystal clear, even on non-white walls. 
  • Smart Features — While a mini projector, the C2 Ultra boasts many features found on panel smart TVs. Powered by Hisense’s proprietary VIDAA OS, access an extensive library of streaming content from platforms like Netflix, Disney+ and Prime Video, along with other smart features like hands-free voice control —simply converse with your projector without a remote! Ask it to play music, catch up on the news, or check the weather.  

For more information, please visit hisense-canada.com

New Mandarin Chinese Phishing Kit: UK, US, ES, AU, JPN Victims Across Public, Postal, Banking Sectors

Posted in Commentary with tags on October 31, 2024 by itnerd

Netcraft has published its latest research into a phishing kit used in campaigns targeting the UK, US, Spain, Australia, and Japan from September 2024.

Over 1,500 related IP addresses and phishing domains have been identified, targeting victims with fake charges related to motorists, government payments, and postal scams.

The kit, which uses a branded mascot and interactive features added for entertainment, has identified over 2,000 phishing websites.

Netcraft discovered organizations targeted across the public sector and the postal, digital services, and banking sectors.

Threat actors using the kit to deploy phishing websites often rely on Cloudflare’s anti-bot and hosting obfuscation capabilities to prevent detection.

The kit uses Mandarin Chinese throughout and provides users with an admin panel to configure and manage phishing campaigns.

You can read the details here.

TRM Labs and Flashpoint Join Forces to Enhance Visibility into Cyberattacks Involving Cryptocurrencies

Posted in Commentary with tags on October 30, 2024 by itnerd

TRM Labs, the global leader in blockchain intelligence, and Flashpoint, the leader and largest private provider of threat intelligence, have joined forces to integrate their capabilities and give customers unprecedented visibility into cybercriminal activity on blockchain networks.

Disrupting criminal networks is increasingly vital to keep the crypto ecosystem safe from illicit actors and allow it to grow for lawful users. TRM Labs’ Illicit Crypto Economy Report reveals that criminals are handling over $34 billion in cryptocurrency. However, with governments and law enforcement agencies leveraging advanced threat and blockchain intelligence, these figures are beginning to decline as they disrupt and prosecute bad actors using crypto for criminal transactions.

TRM Labs makes it easier for investigators to uncover connections between disparate data sources by reducing the need for manual intelligence checks across multiple platforms. With this partnership, TRM Labs has integrated Flashpoint’s data directly into its blockchain intelligence platform. Investigators that use TRM Labs will now benefit from an enriched repository of threat intelligence data within TRM Forensics, including comprehensive details on threat actors, malicious content, illicit forum conversations, and current and historical information from the dark web and social media sources, with the ability to explore deeper insights through a Flashpoint license.

This partnership bolsters TRM Labs’ existing portfolio of proprietary threat intelligence that includes Chainabuse, the largest scam and fraud victim reporting platform in the blockchain intelligence industry. Chainabuse empowers anyone in the crypto economy to report scams, hacks, or other fraudulent activity as they encounter it. The free tool enables crypto users, victims of financial crimes, and crypto businesses to take an active role in making the crypto ecosystem a safer place to operate.

For more information about this partnership and how it can help enhance investigative outcomes, please visit TRM Labs at https://trmlabs.com.

Horizon3.ai Named to the 2025 Fortune Cyber 60 For The Second Consecutive Year

Posted in Commentary with tags on October 30, 2024 by itnerd

Horizon3.ai, a leader in autonomous security solutions, is honored to announce its second consecutive inclusion in the Fortune Cyber 60, presented by Lightspeed. This recognition underscores the company’s continued innovation and influence in the cybersecurity industry. The Fortune Cyber 60 acknowledges the top venture-backed startups delivering enterprise-grade cybersecurity solutions, with Horizon3.ai remaining the only provider of a fully autonomous penetration testing and threat detection platform, NodeZero™.

At the heart of Horizon3.ai’s success is the NodeZero Autonomous Security Platform, which enables organizations to continuously identify, remediate, and validate exploitable vulnerabilities. By using real-world attackers’ tactics, techniques, and procedures (TTPs), NodeZero offers the most comprehensive view of exploitable attack paths, empowering organizations to strengthen their defenses. The platform integrates threat detection, autonomous pentesting, third-party risk management, and governance, risk, and compliance insights, providing organizations with the tools they need to maintain a resilient cybersecurity posture.

So far in 2024, Horizon3.ai has introduced several groundbreaking capabilities that further solidified its position as a pioneer in offensive cybersecurity. These advancements include:

  • NodeZero Tripwires™ – Deploys proactive deception mechanisms that detect attacker activity early, diverting them to decoys and exposing their tactics.
  • Cloud Penetration Testing – Automated vulnerability detection in cloud environments like AWS and Azure, securing critical cloud assets.
  • Rapid Response Service – Provides real-time intelligence on new vulnerabilities, enabling swift responses to zero-day and N-day threats.
  • Phishing Impact Testing – Simulates potential damage from compromised credentials, offering a realistic assessment of organizational risk.

Horizon3.ai’s inclusion in the Fortune Cyber 60 underscores its impressive growth, marked by a 15x revenue increase over the past three years, a customer base of over 2,000, more than 80,000 tests conducted within production networks, and over 1.3 million impacts resulting from discovered exploitable attack paths in real-world environments. Organizations spanning 60+ industries across 30 countries rely on NodeZero to verify and fortify their security continuously.

HP Equips Partners for the AI Era with New Amplify AI Program

Posted in Commentary with tags on October 30, 2024 by itnerd

Today HP announced a new HP Amplify program for partners, HP Amplify AI. HP Amplify AI is a customizable program designed to boost partner capabilities in achieving positive AI outcomes offering AI guidance, tools, resources, training, and certification. Other enhancements unveiled today include new AI-powered tools, availability of refreshed HP Future Ready AI MasterClass content in multiple languages, and global expansion of the HP Business Partner Program.
  
Empowering Partners to Drive AI Adoption and Sales
 
With worldwide AI spending expected to reach 632 billion by 2028, partners are exploring opportunities to drive AI adoption both within their own businesses and to help their customers increase productivity by focusing on high-value work. With a history of innovation, strategic partnerships with leading software and hardware providers, and a legacy of trust spanning over eight decades, HP is uniquely positioned to lead in the era of artificial intelligence.
 
To support partners in their increasingly AI-centric advisory role to customers, HP is launching HP Amplify AI, a persona-based program that is tailored to enhance partners’ unique capabilities and drive AI outcomes. Launching on November 1, 2024, this new program will include HP Amplify AI HUB, a centralized resource for AI training, certification, and tools, offering role-based opportunities to help partners sell AI devices and solutions more effectively.
 
On top of a comprehensive suite of assets, eligible partners can benefit from coaching and practical use cases that illustrate how AI PCs can improve productivity and drive positive outcomes for customers. Partners can gain certification opportunities and recognition for HP AI proficiency and AI-powered sales tools to track their progress. By developing the necessary AI credentials, partners can support customers on their AI journey and future-proof their businesses with AI-powered products and solutions. The initial rollout of HP Amplify AI will begin worldwide on November 1, 2024.

Additionally, as refresh cycles present a significant opportunity for partners and customers to prepare for future AI advancements, HP is also delivering targeted sales resources to foster the adoption of HP AI products and solutions while driving business growth for partners and their customers.
 
Improving Partner Experiences and Productivity
 
Creating better outcomes and experiences starts with driving operational productivity. This quarter, HP is rolling out an AI Chatbot to answer queries and guide partners through the HP Partner Portal, making it easier to find information quickly. In addition, HP is improving collaboration with faster pricing turnaround times using the AI-powered Configured Price Quote (CPQ) platform, available in 108 countries.
 
In May, HP released the HP Future Ready AI MasterClass AI training and certification program to help HP employees and HP Amplify partners gain a competitive edge. The program offers tailored role-based online training for sales representatives, account managers and technical consultants. Over the past six months, more than 12,000 users have enrolled in the AI MasterClass, surpassing expectations. In response to increased adoption, HP has rolled out refreshed content available in new languages allowing users globally to augment their expertise and capabilities to stay ahead in the rapidly changing AI landscape.
 
Engaging a Broader Ecosystem
 
The award-winning HP Amplify program drives partner development through a simplified global structure, rewarding performance, collaboration, and capabilities. To provide a clear path to membership, HP has expanded the HP Business Partner Program globally by taking on a larger community of non-HP Amplify partners and boosting SMB growth via Distributors.
 
The HP Business Partner Program offers partner accreditation, brand visibility, and streamlined processes for superior customer experiences. Participants will benefit from quick onboarding, and a consistent global digital experience with instant pricing, product details, training materials, and sales and marketing resources.
 

Unmasking the Truth Behind Free Apps

Posted in Commentary with tags on October 30, 2024 by itnerd

Safety Detectives have examined some of the most popular apps and the permissions the apps request. Through this research, they aim to raise awareness about the hidden costs associated with free apps and the importance of data security and privacy in the digital age. 

According to their research: 

  • 98% of global mobile app revenue came from free apps. Taken together, these numbers highlight the fact that many apps generate revenue through means other than direct sales. 
  • More than 75% of social networking apps they reviewed request sensitive information, like physical address and financial information, indicating that their focus on collecting user data prioritizes monetization over enhancing core functionalities. 
  • Over 90% of the apps claim to comply with data protection measures, but gaps in data sharing and security can still expose users to significant risks, including unauthorized profiling, privacy breaches, and regulatory non-compliance. 

Why it matters: 

The findings reveal concerning trends in app permissions and data practices that have significant implications for user privacy and control. Social networking apps, in particular, often request unnecessary sensitive information that is not essential for their operation, indicating a focus on data collection for monetization purposes. 

You can access their detailed report here: https://www.safetydetectives.com/blog/free-apps-permissions-study/