Compliance does not equal cybersecurity, warns Chris Reffkin, Chief Security and Risk Officer at Fortra. It’s crucial to focus on real-world effectiveness of security controls instead of just passing audits. Third-party auditors and compliance checklists can offer a false sense of security. Instead, security should be a continuous, adaptable process, with a focus on technical solutions and human factors. Cyberinsurance carriers, security standards and independent consultants can help bridge the gap between compliance and actual security.

RustDoor and Koi Stealer for macOS Used by North Korea-Linked Threat Actor to Target the Cryptocurrency Sector
Malware targeting macOS systems is on the rise, with cybercriminals primarily focusing on stealing information and mining cryptocurrency. Over the past year, North Korean nation-state