Information Security News mailing list archives

Report: Target failed to execute security basics


From: InfoSec News <alerts () infosecnews org>
Date: Fri, 2 Oct 2015 11:02:43 +0000 (UTC)

http://www.networkworld.com/article/2988502/security/report-target-failed-to-execute-security-basics.html

By Tim Greene
Network World
Oct 1, 2015

Verizon consultants probed Target’s network for weaknesses in the immediate aftermath of the company’s 2013 breach and came back with results that point to one overriding – if not dramatic - lesson: be sure to implement basic security best practices.

In a recent KrebsOnSecurity post, Brian Krebs details Verizon’s findings as set down in a Target corporate report.

The findings demonstrate that it really is important to put in place all the mundane security best practices widely talked about, and that without them even the best new security platforms can’t defend against breaches.

Here are six things Target did wrong both before and immediately after the breach that contributed to the theft of information from 40 million credit and debit cards.

[...]

--
Evident.io - Continuous Cloud Security for AWS.
Identify and mitigate risks in 5 minutes or less.
Sign up for a free trial @ https://evident.io/

Current thread: