search
Search...
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Illustration of a server stack with a magnifying glass zooming on two servers.
2021 Data Breach Forensic Predictions and What Happened in 2020: Part 2
Forensics

New cybersecurity threats were popping up rapidly going into 2020. We analyzed the trends and made predictions for the rest of the year

Minimalist office desk with a computer, chair, pencil holder, clock, and a check-in sign.
Securing Healthcare Mobile Devices
HIPAA

Patient data is in jeopardy when mobile devices aren't secure.

Jen Stone
Jen Stone: Principal Security Analyst
PCI Audit

Jen Stone is a Principal Security Analyst for SecurityMetrics. In her 4 years at SecurityMetrics, she has completed over 100 security assessments that include PCI, HIPAA, CIC CSC (SANS Top 20) and 23 NYCRR 500.

Brad Caldwell, CEO of SecurityMetrics
SecurityMetrics COVID-19 Coronavirus Update
Data Security

With the upheaval and uncertainty many are experiencing around the world during the COVID-19 pandemic, we are more committed than ever to our mission.

Stack of three white report documents with blue outlines titled 'REPORT CVE Disclosure'.
CVE-2020-5497 - MITREid Connect Cross-site Scripting
Data Security

MITREid Connect Cross-site Scripting Vulnerability: CVE-2020-5497 Here's the situation: I was performing a penetration test that integrated with MITREid Connect for authorization.

Matt Halbleib
Matt Halbleib: Director of Assessments
Data Security

Matt Halbleib holds QSA (Qualified Security Assessor), PA-QSA (Payment Application Qualified Security Assessor), and CISSP (Certified Information Systems Security Professional) security certifications and as a qualified assessor for the Payment Card Industry, has completed over 100 PCI DSS, PA-DSS and P2PE security assessments.

Computer screen with a variety of icons with text next to it that reads 'HIPAA Violations Ruin Careers.'
How a HIPAA Violation May Have Ruined a Football Star's Career
HIPAA

Hopefully this incident helps both healthcare to remember the fragility of patient data protection.

Computer screen showing SecurityMetrics Health Network Portal with overview dashboard and risk summary.
No Spreadsheets Needed: Manage HIPAA Compliance in SecurityMetrics’ Health Network Portal
HIPAA Partner

Health organizations have been hit hard—the healthcare industry experienced 23.7% of total data breaches.

Illustration of a small blue shop with a window, door with awning, and a sign labeled SHOP.
Top 5 PCI Blog Posts for SMBs
SMB

PCI for SMBs: as an SMB owner, your business size and card processing environment will ultimately determine which SAQ you need to follow.

Text stating PCI Council releases PCI DSS 3.2.1 next to a blue spiral-bound notebook.
PCI Council Releases PCI DSS 3.2.1: What You Need to Know
PCI Trends

The Payment Card Industry Security Standards Council (PCI SSC) recently announced the release of the PCI DSS 3.2.1.

Text saying WPA2 SECURITY FLAW with a broken Wi-Fi signal icon on blue background.
WPA2 Security Flaw “KRACK” Puts Wi-Fi Devices at Risk
Data Security

On October 16, 2017, the WPA2 Security Flaw “KRACK” vulnerability was made public.