Security


  • An empty boardroom inside a corporate office, with an aerial view of New York City from the adjacent window
    Image attribution tooltip
    ismagilov via Getty Images
    Image attribution tooltip

    CISOs, C-suite remain at odds over corporate cyber resilience

    More than a year after the SEC revamped cyber disclosure rules, security and IT executives still struggle to articulate enterprise risk strategies.

    By David Jones • Oct. 8, 2024
  • Graphic design image of a laptop with a lock on the screen.
    Image attribution tooltip
    Permission granted by Electric
    Image attribution tooltip
    Sponsored by Electric

    5 cybersecurity best practices for small to midsize businesses

    Discover the security vulnerabilities putting small to midsize businesses at risk.

    Oct. 7, 2024
  • The entrance to a bank center with revolving doors is pictured.
    Image attribution tooltip
    focusstock via Getty Images
    Image attribution tooltip

    Banking tech alliance drafts enterprise AI adoption guidelines

    The Fintech Open Source Foundation, which now includes Nvidia and Moody’s, outlined LLM risks and control measures to guide deployment in the industry.

    By Oct. 4, 2024
  • Illustrated man with fishing hook stealing key
    Image attribution tooltip
    stefanovsky via Getty Images
    Image attribution tooltip

    Phishing remains cloud intrusion tactic of choice for threat groups

    The attack mode accounted for one-third of the cloud-related incidents IBM X-Force responded to across a two-year period.

    By Matt Kapko • Oct. 2, 2024
  • CrowdStrike booth at Black Hat USA 2023 in Las Vegas.
    Image attribution tooltip
    Matt Kapko/CIO Dive
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    CrowdStrike CEO pushes ‘resilient by design’ framework, promising changes

    The cybersecurity vendor is embracing a new business framework after a defective software update led to one of the largest IT outages in history.

    By Matt Kapko • Sept. 26, 2024
  • CrowdStrike SVP Adam Meyers testifies to the House Subcommittee on Cybersecurity and Infrastructure Protection.
    Image attribution tooltip
    Anna Moneymaker / Getty Images via Getty Images
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    CrowdStrike’s mea culpa: 5 takeaways from the Capitol Hill testimony

    CrowdStrike was quick to apologize after a faulty content update triggered a global IT network outage. An executive detailed internal changes designed to prevent it from happening again.

    By Matt Kapko • Sept. 25, 2024
  • Microsoft AI antitrust concerns
    Image attribution tooltip
    jeenah Moon via Getty Images
    Image attribution tooltip

    Microsoft names deputy CISOs, flushes dead accounts as part of internal security overhaul

    The company released a progress report on efforts to revamp its internal security culture and governance.

    By David Jones • Sept. 23, 2024
  • Binary code of ones and zeros
    Image attribution tooltip
    deberrar/Getty Images via Getty Images
    Image attribution tooltip

    Generative AI raises security concerns among IT leaders

    Executives worry their organization lacks the ability to protect applications and workloads, according to a Flexential survey.

    By Sept. 18, 2024
  • A computer in the foreground shows a blue screen with the words "recovery," and in the background people with suitcases walk by in front of large windows overlooking an airport tarmac.
    Image attribution tooltip
    Nathan Howard / Stringer via Getty Images
    Image attribution tooltip

    Microsoft, working with security partners, pledges better deployment, testing collaboration

    Following a summit with U.S. and European partners, the company is working to build additional resiliency features to prevent a repeat of the historic global IT outage linked to CrowdStrike.

    By David Jones • Sept. 13, 2024
  • The Oracle Headquarters on April 24, 2024 in Austin, Texas.
    Image attribution tooltip
    Brandon Bell / Staff via Getty Images
    Image attribution tooltip

    Oracle leans on private cloud to fortify enterprise security, data sovereignty

    “We expect that private clouds will greatly outnumber public clouds,” Oracle Chairman and CTO Larry Ellison said Monday.

    By Sept. 10, 2024
  • An AT&T sign stands atop a building July 9, 2001 in New York City.
    Image attribution tooltip
    Spencer Platt / Staff via Getty Images
    Image attribution tooltip

    AT&T takes Broadcom to court over VMware support services dispute

    The telecommunications company claims it is being bullied into “paying a king’s ransom” for software it does not want or need, according to the complaint.

    By Sept. 5, 2024
  • CrowdStrike booth at RSA Conference in San Francisco.
    Image attribution tooltip
    Matt Kapko/CIO Dive
    Image attribution tooltip

    CrowdStrike takes a revenue hit as global IT outage reckoning lingers

    Sales are taking longer to close and the cybersecurity vendor is offering discounts to stem potential customer losses.

    By Matt Kapko • Aug. 29, 2024
  • Snowflake logo on one of the data cloud company's offices.
    Image attribution tooltip
    Permission granted by Snowflake
    Image attribution tooltip

    After a wave of attacks, Snowflake insists security burden rests with customers

    The cloud-based data warehouse vendor remains “slightly muted” about the attacks on its customers because Snowflake wasn’t breached, CEO Sridhar Ramaswamy said.

    By Matt Kapko • Aug. 22, 2024
  • Palo Alto Networks
    Image attribution tooltip
    Matt Kapko/CIO Dive
    Image attribution tooltip

    Palo Alto Networks CEO touts leads from CrowdStrike fallout

    In the wake of the massive IT outage, some CrowdStrike customers have entered talks with Palo Alto Networks in search of a new provider.

    By David Jones • Aug. 20, 2024
  • Cyberhackers-Ransomware
    Image attribution tooltip
    (Gorodenkoff) via Getty Images
    Image attribution tooltip

    Companies aren’t as cyber resilient as they think

    Most companies fall short on business continuity as malicious threat activity continues to rise, a Cohesity study found.

    By David Jones • Aug. 19, 2024
  • CIO Dive Editor Roberto Torres discusses cybersecurity strategy with the City of Santa Monica CIO Feroz Merchhiya during a CIO Dive virtual event on August 14, 2024.
    Image attribution tooltip

    Permission granted by Industry Dive.

    Image attribution tooltip

    3 CIO lessons for maximizing cybersecurity investments

    Securing resources has gotten easier, said Feroz Merchhiya, City of Santa Monica CIO. But that hasn't diminished tech leaders' role in showing the value.

    By Aug. 16, 2024
  • 3D Art
    Image attribution tooltip

    AdobeStock/mozZz

    Image attribution tooltip
    Sponsored by Adaptiva

    Answering the big post-outage question: “Are we all patching wrong?”

    Adaptiva CEO Deepak Kumar answers pressing patching questions in light of the recent global outage.

    Aug. 13, 2024
  • a row of Delta planes on an airport tarmac
    Image attribution tooltip
    Andrew Harnik via Getty Images
    Image attribution tooltip

    Delta expects $380M revenue hit due to CrowdStrike outage

    The company said it canceled 7,000 flights in five days due to the IT outage, according to a Thursday securities filing.

    By Updated Aug. 8, 2024
  • A blue Windows error message caused by the CrowdStrike software update is displayed on a screen in a bus shelter on July 22, 2024 in Washington, DC. Four days after CrowdStrike issued a faulty software upgrade that impacted an estimated 8.5 million Microsoft devices around the world.
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    CrowdStrike blames mismatch in Falcon sensor update for global IT outage

    The security company, in its root cause analysis report, said it is using lessons from the crash to make larger changes. Analysts predict further challenges.

    By David Jones • Aug. 7, 2024
  • People walk past the Microsoft store on Fifth Avenue on July 19, 2024 in New York City.
    Image attribution tooltip
    Adam Gray / Stringer via Getty Images
    Image attribution tooltip

    Microsoft spends billions on infrastructure to relieve Azure capacity constraints

    The hyperscaler is working with third-party data centers to satisfy AI demand, CFO Amy Hood said Tuesday.

    By July 31, 2024
  • An American Airlines plane takes off from the Miami International Airport on July 20, 2023 in Miami, Florida.
    Image attribution tooltip
    Joe Raedle / Staff via Getty Images
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    American Airlines credits IT teams with quick recovery from CrowdStrike disruption

    “Within an hour of the outage, we assembled the right operating teams and IT experts to develop and execute a plan to get our systems back online,” COO David Seymour said Thursday.

    By July 25, 2024
  • A United Airlines plane takes off from San Francisco International Airport in front of the San Francisco skyline on March 13, 2023 in San Francisco, California.
    Image attribution tooltip
    Justin Sullivan via Getty Images
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    United completes manual reboot as aviation industry reels from CrowdStrike outages

    The airline’s IT teams fixed more than 26,000 computers and devices at 365 airports globally, according to CEO Scott Kirby.

    By July 23, 2024
  • A screen showing a technical error message in an airport hallway
    Image attribution tooltip
    Jack Taylor via Getty Images
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    Top takeaways from the CrowdStrike outage for IT teams

    "This may be the biggest stress test that I've ever seen for direct, first-line IT support teams," Gartner's Jon Amato said. 

    By Updated July 23, 2024
  • A family stands at a Delta Air Lines ticketing counter trying to rebook a flight after a CrowdStrike software update caused thousands of cancelations.
    Image attribution tooltip
    Jessica McGowan / Stringer via Getty Images
    Image attribution tooltip
    CrowdStrike outage: Fallout and recovery

    Delta’s CrowdStrike recovery stymied by crew-tracking systems failure

    The carrier lagged behind other airlines in its efforts to restore operations, canceling thousands of flights over the weekend.

    By July 22, 2024
  • A blue screen with an unhappy face is depicted on a screen in the background behind glass and in front of a person looking down.
    Image attribution tooltip
    Anthony Kwan / Stringer via Getty Images
    Image attribution tooltip

    CrowdStrike software update at the root of a massive global IT outage

    A defective software update led to major disruptions in aviation, banking and other industries Friday as Microsoft 365 services were impacted worldwide.

    By David Jones , Updated July 19, 2024