The U.S. National Cybersecurity Center of Excellence (NCCoE) and the National Institute of Standards and Technology (NIST) have released a new guide that observes methods of making email more secure.

The guide, titled DNS-Based Email Security, examines the Domain Name System Security Extensions (DNSSEC) specifications and DNS-Based Authentication of Named Entities (DANE) protocol.

The guide highlights the constant challenges encountered by server-based email security mechanisms, which are vulnerable to attacks through fraudulent or invalid digital certificates.

The guidance also mentions that server-based security systems provide a false sense of security with terrible consequences that “frequently involve unauthorized parties being able to read or modify supposedly security information, or to use email as a vector for inserting malware into the system in order to gain access to enterprise systems or information.”

Many feel that this report is long overdue. Tom Kellerman, CEO of Strategic Cyber Ventures, claims, “Eighty percent of cyber-attack are leverage via spearphishing which takes advantages of authentication and encryption that is deployed in email communications.” He also added that regulators should mandate NIST’s recommendation to ensure safety and security in America’s cyberspace.

And that’s not even mentioning the vast amount of attention email security has received in the last few months. From the breaches at the Democratic Confessional Campaign Committee (DCC) the Democratic National Committee (DNC) emails, and the 11.5 million leaked document from the Panamanian law firm Mossack Fonseca.

 

Read this article on SCMagazine

 

 

NNT Suite of Products

change tracker gen7r2 logo

Combine industry leading Device Hardening, File Integrity Monitoring, Change Control, Configuration Management & Compliance Management into one easy to use solution that can scale to the most demanding environments!

fastcloud logo

Automatically evaluate and verify the authenticity of file changes in real-time with NNT FAST™ (File Approved-Safe Technology) Integrity Assurance.

log tracker logo logo

Comprehensive and easy to use security information & event log management with intelligent & self-learning correlation technology to highlight potentially harmful activity in seconds.

vulnerability tracker logo

Continuously scan and identify vulnerabilities with unparalleled accuracy and efficiency, protecting your IT assets on premises, in the cloud and mobile endpoints.

USA Offices
New Net Technologies LLC
Naples
Suite #10115, 9128 Strada Place
Naples, Florida, 34108
Atlanta
1175 Peachtree St NE
Atlanta, Georgia, 30361.
Portland
4145 SW Watson, Suite 350
Beaverton, Oregon, 97005.

Tel: (844) 898-8358
email [email protected]
UK Office
New Net Technologies Ltd
Rivers Lodge, West Common
Harpenden, Hertfordshire
AL5 2JD

Tel: 01582 287310
email [email protected]
CIS benchmarking SEWP Cybersecurity 500Sans Institute Now Certified
Copyright 2019, New Net Technologies LLC. All rights reserved. 
NNT and Change Tracker are registered trademarks of New Net Technologies LLC.
All other product, company names and trademarks are the property of their respective owners.