Close
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
Read Down
Sign in
Close
Welcome!Log into your account
Forgot your password?
Read Down
Password recovery
Recover your password
Close
Search
Logo
Logo
  • Latest News
  • Artificial Intelligence
  • Video
  • Big Data and Analytics
  • Cloud
  • Networking
  • Cybersecurity
  • Applications
  • IT Management
  • Storage
  • Sponsored
  • Mobile
  • Small Business
  • Development
  • Database
  • Servers
  • Android
  • Apple
  • Innovation
  • Blogs
  • PC Hardware
  • Reviews
  • Search Engines
  • Virtualization
More
    Home Cybersecurity
    • Cybersecurity

    Microsoft Ending Lawsuit After Change to DOJ Gag Order Policy

    By
    eWEEK Staff
    -
    October 26, 2017
    Share
    Facebook
    Twitter
    Linkedin

      eWEEK content and product recommendations are editorially independent. We may make money when you click on links to our partners. Learn More.

      Today’s topics include Microsoft’s decision to drop a lawsuit seeking to curb the U.S. Department of Justice’s secrecy orders, Arm’s introduction of a new IoT security platform at TechCon 2017; the “Bad Rabbit” ransomware spreading across the Ukraine and Russia; and how cyber-criminals are using compromised RDPs to anonymize their attacks.

      Microsoft is dismissing an April 2016 lawsuit against the U.S. Department of Justice seeking to curb the U.S. government’s issuing of secrecy orders, or gag orders.

      Microsoft decided to drop the lawsuit after the Justice Department enacted a binding policy reducing secrecy orders and prohibiting ones without an end date.

      Gag orders prohibit cloud and online services providers from telling customers when law enforcement agencies have obtained their data using a statute in the Electronic Communications Privacy Act.

      Microsoft also argued that the ECPA statute violates their First Amendment right to free speech and customers’ Fourth Amendment right to know if the government seizes or searches their property.

      Microsoft president and chief legal officer Brad Smith said, “[The amended policy] is an unequivocal win for our customers, and we’re pleased the DOJ has taken these steps to protect the constitutional rights of all Americans.”

      Since its $32 billion acquisition last year by SoftBank, Arm has focused more tightly on IoT, launching its Mbed IoT platform and operating system for internet-connected devices three years ago.

      On Oct. 24 at TechCon 2017, Arm introduced a framework for developing secure connected devices called the Platform Security Architecture that they hope the industry will adopt to help drive the scalability of IoT.

      PSA includes IoT threat models and security analytics capabilities, hardware and firmware requirements. The company unveiled on-die threat mitigation technology as well as an extension to Mbed Cloud- called Mbed Edge- to help designers, developers and businesses secure devices that sit between the end devices and the cloud.

      A new ransomware attack known as “Bad Rabbit” began to spread on Oct. 24 primarily in the Ukraine and Russia, with limited reports in Turkey, Bulgaria and Germany.

      The Ukranian version of CERT issued an advisory warning of the potential of widespread ransomware attacks. Among the infrastructure attacked in Ukraine is the Kiev Metro as well as the Odessa airport.

      The name “Bad Rabbit” comes from the title of the ransomware page that exploited users are directed to after being infected by the ransomware.

      The initial ransom the attackers have asked for is 0.05 Bitcoin, worth approximately $283 dollars, with the threat that the ransom will increase if not paid.

      “It seems to be delivered via malicious URL as fake flash update and then using EternalBlue and Mimikatz for lateral movement and further spreading,” wrote security consultant Xaviar Merten.

      More than 35,000 servers that host remote desktops for companies have been compromised by an Eastern European group that is selling access to the computers for less than $15 each.

      The compromised remote desktop protocol servers allow the dark-web group to offer anonymization services and access to any information on the servers, which most often belong to healthcare companies, educational institutions and government agencies.

      Olivia Rowley, intelligence analyst at Flashpoint told eWEEK: “Cyber-extortionist[s] … [have] likely utilized RDPs in order to steal personally identifiable information and other sensitive data.” RDP systems are often connected to back-end retail systems, allowing attackers access to credit and debit-card details.

      Companies should conduct regular audits and scans of their own networks for the protocol and require strong passwords for any RDP server accessible from the Internet.

      Get the Free Newsletter!

      Subscribe to Daily Tech Insider for top news, trends & analysis

      MOST POPULAR ARTICLES

      Artificial Intelligence

      9 Best AI 3D Generators You Need...

      Sam Rinko - June 25, 2024 0
      AI 3D Generators are powerful tools for many different industries. Discover the best AI 3D Generators, and learn which is best for your specific use case.
      Read more
      Cloud

      RingCentral Expands Its Collaboration Platform

      Zeus Kerravala - November 22, 2023 0
      RingCentral adds AI-enabled contact center and hybrid event products to its suite of collaboration services.
      Read more
      Artificial Intelligence

      8 Best AI Data Analytics Software &...

      Aminu Abdullahi - January 18, 2024 0
      Learn the top AI data analytics software to use. Compare AI data analytics solutions & features to make the best choice for your business.
      Read more
      Latest News

      Zeus Kerravala on Networking: Multicloud, 5G, and...

      James Maguire - December 16, 2022 0
      I spoke with Zeus Kerravala, industry analyst at ZK Research, about the rapid changes in enterprise networking, as tech advances and digital transformation prompt...
      Read more
      Video

      Datadog President Amit Agarwal on Trends in...

      James Maguire - November 11, 2022 0
      I spoke with Amit Agarwal, President of Datadog, about infrastructure observability, from current trends to key challenges to the future of this rapidly growing...
      Read more
      Logo

      eWeek has the latest technology news and analysis, buying guides, and product reviews for IT professionals and technology buyers. The site’s focus is on innovative solutions and covering in-depth technical content. eWeek stays on the cutting edge of technology news and IT trends through interviews and expert analysis. Gain insight from top innovators and thought leaders in the fields of IT, business, enterprise software, startups, and more.

      Facebook
      Linkedin
      RSS
      Twitter
      Youtube

      Advertisers

      Advertise with TechnologyAdvice on eWeek and our other IT-focused platforms.

      Advertise with Us

      Menu

      • About eWeek
      • Subscribe to our Newsletter
      • Latest News

      Our Brands

      • Privacy Policy
      • Terms
      • About
      • Contact
      • Advertise
      • Sitemap
      • California – Do Not Sell My Information

      Property of TechnologyAdvice.
      © 2024 TechnologyAdvice. All Rights Reserved

      Advertiser Disclosure: Some of the products that appear on this site are from companies from which TechnologyAdvice receives compensation. This compensation may impact how and where products appear on this site including, for example, the order in which they appear. TechnologyAdvice does not include all companies or all types of products available in the marketplace.

      ×