This Week’s [in]Security – Issue 153

08 Mar 2020.

Welcome to This Week’s [in]Security. Trending: Corona virus updates - individual guidance, spread, responses, security. PCI and COVID19. PCI SPOC update RFC. New breach guidance. Breach news on planes, trains, electric automobiles, spacecraft, phones, schools, and cruise lines. 200M property records. 25GB security data. PEI hit by breach-ware. Failure to test leads to breach. Geofence suspect. Facial recognition. Student privacy. Ex-marketer privacy advocate. Copyright vs GDPR. Cyber-law casebook. NIST updates. Software ingredients lists. CPU Vulnerabilities. Password reuse and credential stuffing. Failure to patch. The big Let's Encrypt revoke. Quantum enhanced weakness. SIM swapping threat. 1.2M Microsoft enterprise non-MFA accounts compromised. Homographs: tricky lookalike Domain Names. New ransomware. Election security. Crypto AG update. Mumps. Security dilemmas. And more.

Now here's this week’s selection of news, opinions, and research. Quickly skim annotated links organized by topic: compliance and payment security, breaches, regulation, bugs, privacy, hacking/malware, other security & risk, and more. We hope you enjoy and find them useful.

New - Emerging Issues and Trending Stories

This special section is dedicated to emerging issues and trending stories that cross multiple of our regular news categories.

PCI Compliance and Payments

News and announcements relating to Payment Security, PCI, Card Brands, Payments, Payment Malware and Fraud.

Breaches / Ransomware / Leaks

Covering breaches, leaks, data exposures, ransomware (as potential breach), and their fallout.

Privacy

Articles about privacy related news, risks, and trends.

Laws & Regulations / Standards

News about laws, regulations, and standards affecting security, privacy,  technology, and public interest.

Defense / Techniques / Solutions

Covering developments and opportunities that may help improve security.

Bugs / Design Flaws / Vulnerabilities / Research

Articles about newly discovered vulnerabilities and research.

Hacking / Malware / Cybercrime / Exploitation

News covering active trends and events.

Other Security / Risk

Articles covering other types of risks.

Off-Topic / Science & Tech / Lighter Side

A variety of scientific, technical, historical, and more light-hearted news.