Talkin’ About Infosec News – 3/8/2023

Summary

This article is a recap of "Talkin' Bout Infosec News" from March 6, 2023, hosted by Black Hills Information Security. It covers various cybersecurity news topics, including a discussion about the LastPass data breach where an employee's home computer was compromised, leading to the theft of corporate vault data.

IFF Assessment

FOE

The article discusses a significant data breach involving LastPass, which is bad news for defenders as it highlights a successful attack vector and data compromise.

Defender Context

Defenders should pay close attention to supply chain and third-party risks, as demonstrated by the LastPass incident where an employee's compromised home computer led to a corporate breach. This highlights the importance of robust endpoint security, employee training, and access controls for all systems, including remote work environments.

Read Full Story →