NHS gets new guidance on public benefits of data sharing

The NHS’s national data guardian for health and social care, Nicola Byrne, has today issued fresh guidance addressing the question of what is meant by “public benefit” and how health and social... Read more »

Ethical hackers flex their muscles in 2022

Ethical hackers working through HackerOne programmes discovered more than 65,000 software vulnerabilities in 2022 – 21% up on 2021 – and over 120,000 customer vulnerabilities, with reports for vulnerability types introduced by... Read more »

Microsoft fixes two zero-days in final Patch Tuesday of 2022

Microsoft has rounded off 2022 with a typically light Patch Tuesday for December, with a total of 52 patches addressing six critical vulnerabilities and two zero-days of lesser severity. The two zero-day... Read more »

New cyber approaches ease Registers of Scotland’s AWS migration

Registers of Scotland, or RoS, is one of the longest established public records services in Britain and Ireland, with land data held in its Register of Sasines – sasine being an ancient... Read more »

Security Think Tank: How much digital trust can you place on zero-trust?

The year 2022 has been unabating in the number of high-profile breaches and cyber criminal gangs, on top of nation-state actors, participating in geopolitical conflicts. Companies across industries, including those in energy,... Read more »

EU issues draft data adequacy decision in favour of US

The European Union (EU) – United States (US) Data Privacy Framework has taken a step closer to reality after the European Commission (EC) issued a draft data adequacy decision – ruling that... Read more »

The nature of the CISO role will be in flux in 2023

The role of the chief information security officer (CISO) is in a state of flux, with changing dynamics such as increasing levels of risk and threat, more stringent regulation and compliance, making... Read more »

ISO 27001

What is ISO 27001? ISO 27001, formally known as ISO/IEC 27001:2022, is an information security standard created by the International Organization for Standardization (ISO), which provides a framework and guidelines for establishing,... Read more »

Finnish government launches information security voucher scheme

Finland has launched a voucher-based scheme to help companies embrace best practice systems to reinforce their IT network and information security defences. The Information Security Voucher (ISV) scheme was rolled out on... Read more »

More Uber data exposed in possible supply chain attack

A new data breach of Uber employee email addresses, internal documents and information relating to its IT estate – specifically its mobile device management (MDM) platform – may have originated via a... Read more »