Name and shame cybersecurity: a gift for cybercriminals?

From: CSO

By

The “name and shame” trend has become popular in cybersecurity: even FBI officials suggest using it. A couple of weeks ago, UK National Cyber Security Centre (NCSC) announced that it will name and shame departments failing to secure their emails (properly implement DMARC). The NCSC plans to incentivize government domain owners to implement email security measures by setting up a dashboard of red, amber and green indicators based on the level of email security in each government domain.

It is not yet clear if the dashboard will be freely accessible to everyone, but if so, cybercriminals should be very grateful for a centralized and up to date dashboard with governmental domains they can use in new spear-phishing and drive-by-download spam campaigns. Obviously, attackers can perfectly do continuous monitoring looking for new targets themselves, but why refuse free gifts?

Read Complete Article

Facebooktwittergoogle_plusredditpinterestlinkedinmail

Leave a Reply

Your email address will not be published.

Please Answer: *