• Home
  • News
  • Coins2Day 500
  • Tech
  • Finance
  • Leadership
  • Lifestyle
  • Rankings
  • Multimedia
TechCyber Saturday

Data Sheet—Saturday, November 19, 2016

Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
Robert Hackett
By
Robert Hackett
Robert Hackett
Down Arrow Button Icon
November 19, 2016, 10:20 AM ET

Why are people still such suckers for phishing? At a security event in New York this week, top law enforcement officials shared their concerns and, to my surprise, their biggest pre-occupation was plain old e-mail.

“The most devastating attacks by the most sophisticated attackers almost always begin with the simple act of spear-phishing,” Homeland Security Secretary Jeh Johnson told the crowd, referring to malicious emails that appear to come from a credible source.

He has a point. The John Podesta email debacle began when the politico fell for a fake Gmail message, and those celeb-gate hacking victims likewise got tricked by phishing. So what can we do about it?

Education is one approach. Johnson says his agency sends emails to its own employees with suspicious links for goodies like “free Redskins tickets.” Those who click on the link receive instructions to show up to a spot to collect their tickets—where they instead receive a free lesson on cyber-hygiene.

And of course technology is another way to fight phishing. At the security event, Manhattan District Attorney Cyrus Vance announced that the non-profit Global Cyber Alliance had created a free tool to help organizations install DMARC software to detect fraudulent and spoofed messages.

“Phishing—mundane as it is—is the biggest threat we face and need to tackle,” said Vance, who added that, after terrorism, cyber-security is New York’s top priority.

Meanwhile, the phishing plague means security firms like Proofpoint are doing a roaring trade in helping companies navigate new twists such as “angler phishing” (yes, it’s named after Finding Nemo) that rely on contaminated social media links.

So readers, be careful what you click—though do click on some of the good stuff we have below to get up to date on the latest cyber news. (We’re light on fin-tech items this week but, in light of the Coinbase-IRS news, you bitcoin buyers are probably too busy fretting about an audit).

Jeff Roberts

@jeffjohnroberts

[email protected]

Welcome to the Cyber Saturday edition of Data Sheet, Coins2Day’sdaily tech newsletter. You may reach Coins2Day reporter Robert Hackett via Twitter, Cryptocat, Jabber (see OTR fingerprint on my about.me), PGP encrypted email (see public key on my Keybase.io), Wickr, Signal, or however you (securely) prefer. Feedback welcome.

THREATS

Get your head out of the iClouds. IPhone owners can lock down their device from outside eyes — even those at Apple. But iCloud has always been a different story. Those who enable it (ie most of you) put their data in an online warehouse that ran be raided by the FBI and others. Now, it turns out this data also includes call logs and FaceTime meta-data. (Coins2Day)

This is Poison Tap. It's about as sinister as the name suggests. A hacker famous for his low-cost exploits has built a $5 card-sized device that, when plugged into a computer's USB port, can intercept all its unencrypted web traffic. It works even if the computer is locked with a password. (Ars Technica)

Cheap-o phones call China for free. There's lots of reasons not to rely on $50 Android phones, but here's one more: researchers found many of the devices sold in the US come with a built-in backdoor that transmits your text messages to China every 72 hours. (New York Times)

Name - and shame! - that device: IT Security firm Zscaler helpfully scanned IoT devices in use by its enterprise customers and said which ones are insecure. So take a bow, Chromecast and Roku, you're all good. Wish we could say as much for these popular makers of printers, TVs, DVRs and security cameras. (Zscaler blog)

Give me the good (and bad) news. Well, you can be glad DDoS attacks are not on the rise. What a shame, then, that they're increasing in severity. A new Akamai report cites a record number of "mega attacks" in the last quarter, powered in part by the Mirai botnet. (Coins2Day)

Oh, and if there are any Edward Snowden haters out there, this expletive-bomb headline will make your day.

Share today's Data Sheet with a friend:
http://coins2day.com/newsletter/datasheet/

Looking for previous Data Sheets? Click here.

ACCESS GRANTED

Robert and I got an exclusive tour of New York City's brand new cyber-crime lab, where we saw forensic detectives crack phones and catch crooks.

Coins2Day got a glimpse of Law & Order in the digital age. The lab is Exhibit A in how America’s biggest city is embracing big data analytics and a dash of hacker culture to solve complex crimes...

Visitors turn their attention to the spectacular array of electronics contained within. Circuit boards, hard drives, wires, soldering irons, and phones of every make and model are strewn about eight workstations.

Read more on Coins2Day.com

FORTUNE RECON

Prediction: The Internet Will Get Shut Down Many More Times in 2017by Robert Hackett

Ethereum Survives Hack But It's Still Behind Bitcoinby Jeff John Roberts

Alibaba and Tencent Get Behind China's Strict New Cyber Lawby Reuters

Intel Wants to Make a Full Court Press on Artificial Intelligenceby Jonathan Vanian

Can You Crash an Autonomous Car Ethically?By Andrew Nusca

ONE MORE THING

Wikileaks wigs out and so does the cat. The world of Wikileaks and Julian Assange is a screwy, squirrelly place at the best of times. But lately the wiki-geeks are wigging out over alleged oddities in the hash system that forms part of a "dead man switch" for Assange. Oh and his cat is now wearing a tie, really. (New York mag)

About the Author
Robert Hackett
By Robert Hackett
Instagram iconLinkedIn iconTwitter icon
See full bioRight Arrow Button Icon
Rankings
  • 100 Best Companies
  • Coins2Day 500
  • Global 500
  • Coins2Day 500 Europe
  • Most Powerful Women
  • Future 50
  • World’s Most Admired Companies
  • See All Rankings
Sections
  • Finance
  • Leadership
  • Success
  • Tech
  • Asia
  • Europe
  • Environment
  • Coins2Day Crypto
  • Health
  • Retail
  • Lifestyle
  • Politics
  • Newsletters
  • Magazine
  • Features
  • Commentary
  • Mpw
  • CEO Initiative
  • Conferences
  • Personal Finance
  • Education
Customer Support
  • Frequently Asked Questions
  • Customer Service Portal
  • Privacy Policy
  • Terms Of Use
  • Single Issues For Purchase
  • International Print
Commercial Services
  • Advertising
  • Coins2Day Brand Studio
  • Coins2Day Analytics
  • Coins2Day Conferences
  • Business Development
About Us
  • About Us
  • Editorial Calendar
  • Press Center
  • Work At Coins2Day
  • Diversity And Inclusion
  • Terms And Conditions
  • Site Map

© 2025 Coins2Day Media IP Limited. All Rights Reserved. Use of this site constitutes acceptance of our Terms of Use and Privacy Policy | CA Notice at Collection and Privacy Notice | Do Not Sell/Share My Personal Information
FORTUNE is a trademark of Coins2Day Media IP Limited, registered in the U.S. and other countries. FORTUNE may receive compensation for some links to products and services on this website. Offers may be subject to change without notice.