fbpx
Frame-14

Privacy Ninja

        • DATA PROTECTION

        • CYBERSECURITY

        • Penetration Testing

          Secure your network against various threat points. VA starts at only S$1,000, while VAPT starts at S$4,000. With Price Beat Guarantee!

        • API Penetration Testing
        • Enhance your digital security posture with our approach that identifies and addresses vulnerabilities within your API framework, ensuring robust protection against cyber threats targeting your digital interfaces.

        • On-Prem & Cloud Network Penetration Testing
        • Boost your network’s resilience with our assessment that uncovers security gaps, so you can strengthen your defences against sophisticated cyber threats targeting your network

        • Web Penetration Testing
        • Fortify your web presence with our specialised web app penetration testing service, designed to uncover and address vulnerabilities, ensuring your website stands resilient against online threats

        • Mobile Penetration Testing
        • Strengthen your mobile ecosystem’s resilience with our in-depth penetration testing service. From applications to underlying systems, we meticulously probe for vulnerabilities

        • Cyber Hygiene Training
        • Empower your team with essential cybersecurity knowledge, covering the latest vulnerabilities, best practices, and proactive defence strategies

        • Thick Client Penetration Testing
        • Elevate your application’s security with our thorough thick client penetration testing service. From standalone desktop applications to complex client-server systems, we meticulously probe for vulnerabilities to fortify your software against potential cyber threats.

        • Source Code Review
        • Ensure the integrity and security of your codebase with our comprehensive service, meticulously analysing code quality, identifying vulnerabilities, and optimising performance for various types of applications, scripts, plugins, and more

        • Email Spoofing Prevention
        • Check if your organisation’s email is vulnerable to hackers and put a stop to it. Receive your free test today!

        • Email Phishing Excercise
        • Strengthen your defense against email threats via simulated attacks that test and educate your team on spotting malicious emails, reducing breach risks and boosting security.

        • Cyber Essentials Bundle
        • Equip your organisation with essential cyber protection through our packages, featuring quarterly breached accounts monitoring, email phishing campaigns, cyber hygiene training, and more. LAUNCHING SOON.

US Judiciary Adds Safeguards After Potential Breach In SolarWinds Hack

US Judiciary Adds Safeguards After Potential Breach In SolarWinds Hack

The Administrative Office of the U.S. Courts is investigating a potential compromise of the federal courts’ case management and electronic case files system which stores millions of highly sensitive and confidential judiciary records.

US Judiciary is also working on immediately adding extra safeguards and security procedures to protect the highly sensitive court documents (HSDs) filed with the courts.

“The AO is working with the Department of Homeland Security on a security audit relating to vulnerabilities in the Judiciary’s Case Management/Electronic Case Files system (CM/ECF) that greatly risk compromising highly sensitive non-public documents stored on CM/ECF, particularly sealed filings,” the Judiciary said.

“An apparent compromise of the confidentiality of the CM/ECF system due to these discovered vulnerabilities currently is under investigation. Due to the nature of the attacks, the review of this matter and its impact is ongoing.”

Also Read: 10 Practical Benefits of Managed IT Services

Newly filed confidential documents will only be stored on a “secure stand-alone computer system” and will not be uploaded to CM/ECF.

The newly enacted safeguards following the start of this ongoing investigation are designed to guard the public trust and the integrity of the operation and administration of the federal Judiciary’s courts.

The AO has also suspended all national and local use of the SolarWinds Orion platform in mid-December following a DHS-CISA emergency directive requiring all federal civilian agencies to disconnect or power down SolarWinds software on their networks.

On Wednesday, the US Department of Justice (DOJ) also said that the SolarWinds hackers may have gained access to roughly 3% of the department’s Office 365 mail accounts.

US DOJ currently employs over 115,000 people which translates to around 3450 Office 365 mailboxes potentially breached in this attack.

joint FBI, CISA, NSA, and ODNI statement also said on Tuesday that a Russian-backed hacking group is likely behind the SolarWinds supply-chain attack. The federal agencies also added that only 10 US government agencies have been targeted in additional hacking activity after the initial breach.

Also Read: What Legislation Exists in Singapore Regarding Data Protection and Security?

“We fully appreciate the practical implications of taking these steps and the administrative burden they will place on courts, yet any such burdens are outweighed by the need to preserve the confidentiality of sealed filings that are at risk of compromise,” James C. Duff, Secretary of the US Judicial Conference said.

0 Comments

KEEP IN TOUCH

Subscribe to our mailing list to get free tips on Data Protection and Data Privacy updates weekly!

Personal Data Protection

REPORTING DATA BREACH TO PDPC?

We have assisted numerous companies to prepare proper and accurate reports to PDPC to minimise financial penalties.
×

Hello!

Click one of our contacts below to chat on WhatsApp

× Chat with us