• ARCHITIZER.COM
    Architectural Role Models: 6 Times Architectural Models Outshine Constructed Buildings
    The 13th A+Awards invites firms to submit a range of timely new categories, emphasizing architecture that balances local innovation with global vision. Your projects deserve the spotlight, so start your submission today!It is no secret that architectural design involves countless iterations of turning conceptual ideas into visual representations. These, in turn, eventually reach a point where they can be considered as works of art and architecture themselves. Countless architectural drawings and models have been exhibited in museums across the world, entire books have been created that showcase even the most abstract sketches and finally, renders are nowadays the bread and butter of architects in practice. this years A+Awards recognizes the significance of models and renders on par with architectural design itself, through the Architecture + Models & Rendering category, which celebrates the detailed craftsmanship and communicative power of architectural representation.Start SubmissionStill, the making of physical models has somewhat become extinct. Now, that the world is becoming increasingly digital, physical models are replaced with virtual walkthroughs, animations and even interactive design environments. Contrary to creating digital imagery or even hand drawings, physical model-making requires a lot of time, materials, planning and patience and often begs the question, is it a craft worth preserving? Below are some examples of incredible models built and unbuilt projects, old and new, conceptual and technical all showcasing the artistry, precision and storytelling power of physical model-making, reminding us of its enduring value in architectural representation despite the digital shift.Model + Concept: Tatlins TowerJuanCamacho, Tatlin 2, CC BY 3.0Lets begin with quite an unconventional project: Tatlins Tower is one of the most famous unrealized projects of the 20th century, initially aimed to be made of spiraling pieces of iron, steel and glass and serve as a monument that would challenge the Eiffel Tower. Even though the Tower itself was never built, there have been many models throughout the years, exhibited in Stockholms Museum of Modern Art, Moscows Tretyakov Gallery and the Pompidou Centre, all showcasing the ambition of the design. In 2011, the Royal Academy built another 1:40 scale model for a the Re-Building Tatlins Tower exhibition. The most impressive aspect was the construction process itself, since model-makers had to interpret the only two sources that were available to them: Vladimir Tatlins test models and his notes.Model +Materiality: Grafting New Context for Urban FragmentsBy JWCFinalist, Architecture +Models and Rendering, 12th Annual A+AwardsThis project suggests a new context for a neglected and isolated urban fabric for the city of St. Louis. The design is comprised of a lightweight architectural canopy that expands outwards across the highway and the abandoned ground, hosting an array of programs. The physical model has been meticulously crafted, showcasing not only the complex geometry of the structure but also the immediate context fundamental in the projects inception. Additionally, the physical model vividly conveys the canopys fabric materiality, achieving a level of realism and tactile authenticity that digital modeling would struggle to replicate.Model +Landscape: Residence in SikaminoBy Tense Architecture Network, Sykamino, GreeceThe field is elongated, rural, planted with olive trees. The land is dominant. How could a residence rise out of the ground; how could it be confined to a roof? The residence is its roof. A sixty meters long one. While approaching the plot, it can be perceived as a slightly elevated strip of earthy crust in front of the distant mountains of Euboea. It can be walked on. The roof is born from and returns back to the ground/Apart from its complicated geometry, this residence is seamlessly integrated into the landscape. The Greek Island terrain has always posed a great challenge for architects, whose designs have to constantly consider the rugged grounds and steep slopes. The physical model for the Sikamino residence, made of plaster and cardboard, captures both the unpredictable nature of the local terrain and successfully materialises the interrelation between the ground and the roof.Model +Fabrication: South HeXi Yuzui Financial District Tower (Runmao Tower)By Adrian Smith + Gordon Gill Architecture, Nanjing, ChinaThis 1,640-square-foot-tall tower will anchor a new financial district in Nanjing. Being part (and eventually the winner) of an international design competition, AS+GG put a lot of their effort into creating a physical model that would capture the projects ambition. The solid, polished aluminum, 1:500 scale model of Runmao Tower was engineered entirely in-house by Nick Berchtold. It was fabricated using both three and four axis CNC Machines, with 60 individual milled aluminum components being held together with 55 hidden screws and 48 hidden magnets.Model +Performance: Forest of JoyBy Studio Tip & CRAB Studio View this post on InstagramA post shared by @studiotip_Forest of Joy is a project that responds to the New London Awards open call for a Playable Structure that would be featured at Dulwich Picture Gallery. The design concept involved utilizing a re-use material pallet of industrial loose parts that were collected from all over London. The studios produced a series of child friendly models that were used in a free-play session and co-design workshop at the gallery, which eventually led to a design that encourages play, joy and fantasy. The model-making process was not treated as merely a representational development but rather as a performative process that explores and reiterates the playable sculpture sets.Model +Lighting: McMurty Building for the Department of Art & Art HistoryBy Diller Scofidio + Renfro View this post on InstagramA post shared by Diller Scofidio + Renfro (@diller_scofidio_renfro)This innovative new facility houses Stanfords Department of Art & Art History as well as the Art & Architecture Library and unites, within a 100,000-square-foot space, the making and studying of art under one roof. The model is made by an array of materials transparent and colored plexiglass, etched cardboard and thin wooden strips,evoking a sense of materiality and atmosphere. It is primarily a conceptual model that focuses on the composition of volumes as well as the way they operate with the immediate context.The 13th A+Awards invites firms to submit a range of timely new categories, emphasizing architecture that balances local innovation with global vision. Your projects deserve the spotlight, so start your submission today!Featured Image: South HeXi Yuzui Financial District Tower (Runmao Tower) by Adrian Smith + Gordon Gill Architecture, Nanjing, ChinaThe post Architectural Role Models: 6 Times Architectural Models Outshine Constructed Buildings appeared first on Journal.
    0 Commentaires 0 Parts 132 Vue
  • GAMINGBOLT.COM
    Black Slate Gameplay Video Showcases Gorgeous Visuals and Combat
    While indie developer Motion Blur has been relatively quiet about its upcoming title, Black Slate, since the games announcement back in July 2024, the studio has been showcasing the title at CES 2025, and you can check out below around 3 and a half minutes of gameplay footage.Going by the video, some of the influences of seminal games like Metal Gear Solid are evident, with quite a few of the titles designs seemingly coming right out of the pages of Yoji Shinkawas art book. The video also indicates that the games visual fidelity definitely a high priority oft he studio. There are lavishly-designed rooms with incredible levels of reflections all over the place.The video also gives us a brief look at what we can expect from Black Slate when it comes to gameplay. The game will be a third-person shooter where the player will make use of cover to take down enemies that range from regular soldiers to all-out demons with telekinetic powers.A variety of weapons are also shown off, from the humble assault rifle, to a strange gun that seems to shoot electricity.Black Slate will have players taking on the role of a military legend, according to the games original announcement, and will set out on a mission to uncover the truth about a cataclysmic event, and while theyre at it, also rescue a scientist that might be somehow linked to these events.Alongside Metal Gear Solid, the studio has previously also cited other games as inspiration, including The Last of Us and Uncharted, when it comes to how the games were developed, and how they influenced gameplay mechanics going forward.Black Slate is currently in development on PC, and doesnt yet have a release date. The game is being developed by making use of Unreal Engine 5.
    0 Commentaires 0 Parts 103 Vue
  • VENTUREBEAT.COM
    Colossal raises $200M to de-extinct the woolly mammoth, thylacine and dodo
    Colossal BioSciences has raised $200 million in a new round of funding to bring back extinct species like the woolly mammoth.Read More
    0 Commentaires 0 Parts 120 Vue
  • WWW.GAMESINDUSTRY.BIZ
    Sony donates $5m to support LA wildfire relief | News-in-brief
    Sony donates $5m to support LA wildfire relief | News-in-briefDonation will go towards first responders, community relief, rebuilding efforts, and assistance programs News by Sophie McEvoy Staff Writer Published on Jan. 15, 2025 This is a News-in-brief article, our short format linking to an official source for more information. Read more about this story by following the link below:Sony donates $5m to support LA wildfire relief
    0 Commentaires 0 Parts 109 Vue
  • WWW.GAMEDEVELOPER.COM
    Aonic sinks $10 million into Richie Games developer Mega Fortuna
    Chris Kerr, News EditorJanuary 15, 20251 Min ReadImage via Aonic / Mega FortunaAt a GlanceRichie Games currently has over 10 million monthly active users and has delivered 200 million downloads.Turkish mobile tech company Mega Fortuna has received a $10 million investment from Aonic. The deal includes an option for Aonic to acquire the entire share capital of Mega Fortuna for $70 million.Mega Fortuna was established two years ago and is billed as a mobile gaming discovery and loyally platform. Its flagship product, Richie Games, allows mobile players to earn real-world gift cards as they discover new games.Richie Games currently has over 10 million monthly active users and has delivered 200 million downloads. Mega Fortuna CEO eyhmus lker said the investment round will allow the company to scale its vision."This milestone is a testament to the exceptional talent, dedication, and innovation of the entire Mega Fortuna team," said lker in a press release. "In just two years, we've built Richie Games into a platform that is transforming how players engage with mobile gaming. None of this would have been possible without the incredible teamwork and passion of our people."Aonic has invested in Mega Fortuna around one month after it received 152 million in funding to support its studios and finance more acquisitions.The Swedish video game conglomerate noted that its mobile tech businesses performed "strongly" in 2024, helping the company deliver a consolidated revenue increase of 73 percent.Despite that upswing, Aonic sanctioned layoffs at VR studio nDreams and confirmed 17.5 percent of employees could be made redundant.The company said nDreams needed to adapt in a "challenging VR games market." Those redundancies were announced less than a year after Aonic purchased the UK studio for $110 million in what it described as a "landmark" deal.Read more about:M&AAbout the AuthorChris KerrNews Editor, GameDeveloper.comGame Developer news editor Chris Kerr is an award-winning journalist and reporter with over a decade of experience in the game industry. His byline has appeared in notable print and digital publications including Edge, Stuff, Wireframe, International Business Times, andPocketGamer.biz. Throughout his career, Chris has covered major industry events including GDC, PAX Australia, Gamescom, Paris Games Week, and Develop Brighton. He has featured on the judging panel at The Develop Star Awards on multiple occasions and appeared on BBC Radio 5 Live to discuss breaking news.See more from Chris KerrDaily news, dev blogs, and stories from Game Developer straight to your inboxStay UpdatedYou May Also Like
    0 Commentaires 0 Parts 94 Vue
  • WWW.THEVERGE.COM
    How to bulk save your TikTok videos
    Theres a general sense of doom on the TikTok feeds these days, and no wonder: it looks like the video service may be banned in the US as of January 19th. TikTok creators are offering satirical goodbyes to their Chinese spies and wondering how quickly they can download the several hundred or thousand videos they have up on the service.TikTok itself apparently doesnt like the idea of allowing its creators to bulk download their videos. You can download in TXT or JSON format a certain amount of your data, which, according to the support page, may include but is not limited to your username, watch video history, comment history, and privacy settings. When I tried it, it did not include my videos.You can also share individual videos the same way you can any file but if youve got a library of a couple of hundred or more TikTok videos, thats going to be quite a job. In that case, its a lot better to have a bulk download strategy.To find out how to do that, I went into TikTok and waded through a group of videos offering different methods for downloading your content. I tried several of the methods and found two that worked relatively painlessly: one is easier but not free and the other is a bit complex but completely free. (Both, incidentally, need to be done on a computer rather than a phone.)A caveat before I begin: not being an actual TikTok creator, I only had two published TikTok videos on my account, which I had made as an experiment some time ago. As a result, it didnt take much time for me to download them using either method. If youre a true TikTok creator, expect downloads and conversions to take some time.The easy way: use Repurpose.ioSeveral people recommended an app called Repurpose.io. This is not a free app it costs $35 a month or $349 a year. For a short time, Repurpose.io was offering free downloads from TikTok to Google Drive and Dropbox but had to withdraw the offer due to high demand. However, you still get to download 10 videos for free over 14 days, so you can try it out first.Repurpose.io lets you distribute your content on different platforms: you simply tell it where to upload the videos (besides TikTok, it will pull data from Instagram, YouTube, Zoom, and a number of other services) and where you want it to send them (besides Instagram and other services, you can save them to Dropbox, SoundCloud, Google Drive, and other apps). You can schedule regular transfers, repurpose only future content or all existing content, and even create clips (if, for example, you are sending YouTube videos to TikTok).The Repurpose.io app is not free but does make it easy to transfer your TikTok videos to another platform. Screenshot: Repurpose.ioWhen I tried it, Repurpose.io easily picked up my two TikTok videos and transferred them to my Google Drive in a couple of minutes. While it should take a lot longer if you have, say, several hundred videos, the interface keeps you up to date on which videos have been transferred and how many are left.The paid app allows you to transfer an unlimited number of published videos to up to five different accounts. It could make a lot of sense if you are a dedicated TikTok video creator and are thinking of moving your videos to another service.The interesting way: use the DevTools consoleIf you dont mind playing a little with code, theres a free way to do it as well. A consultant named Joanne Moxam has published a handy step-by-step YouTube video on how to use Chromes browser console to save all your links in one fell swoop, move the data to a spreadsheet, and then use an online tool to bulk download your videos.Below, Ive summarized the steps that Moxam suggests (which I successfully tried). She strongly recommends that you do this by using the Chrome browser.Go to your Profile page (by clicking on your personal icon in the top-right corner).Bring up the browser console by hitting the F12 key. (If youre on a Mac, you may need to use Fn-F12.) Youll see a window open on the right filled with code; if youre not used to that, dont let it bother you you wont have to deal too much with it. Just make sure that the menu at the very top (which will say Elements / Console / Sources) has Console underlined.At the bottom of the console, where there is a single >, paste in the following:let goToBottom = setInterval(() => window.scrollBy(0, 400), 1000);According to Moxam, this scrolls all your videos down to the bottom, making them part of a single window so they can be selected.At the bottom of the console (at right) is a space where you can paste your code. Screenshot: TikTokNote: you may see a warning not to paste code into the console that you dont understand; youll be asked to type allow pasting and hit Enter first. Go ahead; I used both of these codes without an issue.Now enter the second code, which will automatically select and download a CSV file of your links to all the videos in your profile to your computer. Its a bit long: heres a link to Moxams code. The resulting file will be called my_data.csv.Import the CSV file to a spreadsheet.Now you can use the links to do a bulk download of your videos. Moxam recommends a free online service called TOKdownload, which is what I used.Copy the links from the spreadsheet and paste them into the designated field. (Note: since I was only downloading a couple of videos, I had no problems; as Moxam suggests, if youre dealing with large numbers, you may want to download in batches of 50 or so in order to not overwhelm the app.)Click the Download button.The online TOKdownload app can download your videos in MP4 format. Screenshot: TOKdownloadThe app will download and process the links both as the videos and covers. It could take a while.Once its done, youll get buttons to Download All Videos and Download All Covers. Click on the former, and you will get a zip file containing MP4 files of your videos.If youre still unsure of yourself, you can go through Moxams video shes slow and careful in her instructions. And make sure to also check her associated webpage for any updates.Backups are always a good ideaThere are a number of mobile apps available as well that will let you download and save your TikTok videos. If you dont have access to a computer and must use your phone, you may find them useful, but I tried a couple and found them awkward to use, usually limited to one video at a time, and (unless you were willing to pay) ad-heavy.However you do it and even if there should be some kind of last-minute reprieve for TikTok it is always a good idea to back up your online videos, especially if they are either personally significant to you or represent creative work that you will want to hold on to and look back on in the years to come.
    0 Commentaires 0 Parts 92 Vue
  • WWW.IGN.COM
    Space Marine 2 Made Millions for Games Workshop, Now Its on the Hunt for the Next Big Warhammer Video Game
    Warhammer 40,000: Space Marine 2 was a smash hit for developer Saber Interactive and publisher Focus Entertainment, selling 4.5 million copies in just over a month. Indeed, Space Marine 2 has done so well it changes everything for Saber Interactive, Chief Creative Officer Tim Willits told IGN soon after the game came out.But via new financial results we now know just how much money it has made for Games Workshop, the British company behind the tabletop hobby upon which Space Marine 2 is based. Reporting results for the first half of its financial year ending December 1, 2024, Games Workshop CEO Kevin Rountree hailed the success of Space Marine 2, which contributed significant royalty revenue to the business.In fact, licensing revenue from royalty income increased in the period by a whopping 18 million (approx. $21.9 million) to 30.1 million (approx. $36.7 million). Earned income, which is the key figure here, was 26.1 million (approx. $31.8 million), up from 5.9 million (approx. $7.2 million), an increase Games Workshop said was mainly from Space Marine 2. 98% of Games Workshops total licensing revenue came from PC and console games (Space Marine 2 launched on PC, PlayStation 5, and Xbox Series X and S).A win all round, then. As you'd expect, Games Workshop is on the hunt for the next blockbuster Warhammer video game, but Rountree also expressed a degree of caution on potential future video game success, admitting hits like Space Marine 2 are few and far between.Heres the statement:During the period, our licensing partners launched two new video games; Warhammer 40,000: Space Marine 2, a third person shooter for PC and console and Warhammer 40,000: Speed Freeks, a combat racing game. Established games continue to contribute, alongside royalty income earned following the success of Space Marine 2. We recognise that successes like these for Warhammer are not a given in the world of video games. Clearly we are looking for the next one. We remain cautious when forecasting royalty income.So, where could this big Warhammer video game hit come from? It seems inevitable that Saber Interactive will get the chance to continue the Space Marine story with Space Marine 3, and indeed has said it has ideas for a third game.In the shorter term, Bulwark Studios turn-based tactics game Warhammer 40,000: Mechanicus II looks set to scratch a very different itch. There are also rumblings that Creative Assembly is finally giving Warhammer 40,000 the Total War treatment, something fans have hoped for for years.As for Space Marine 2, Saber continues to update the game with cosmetics, new Operations, and new weapons. Season 3 is set for launch this spring.IGN's Twenty Questions - Guess the game!IGN's Twenty Questions - Guess the game!To start:...try asking a question that can be answered with a "Yes" or "No".000/250Wesley is the UK News Editor for IGN. Find him on Twitter at @wyp100. You can reach Wesley at wesley_yinpoole@ign.com or confidentially at wyp100@proton.me.
    0 Commentaires 0 Parts 86 Vue
  • 9TO5MAC.COM
    TikTok may get a 270-day extension before a ban; denies Elon Musk report
    TikTok was set to be banned from the US within a matter of days, but Congress may be about to grant it an extension of 270 days.In related news, Chinese officials have denied a Bloomberg report that Bytedance is considering selling its US operations to X owner Elon Musk The story so farThe saga began back in 2020, when then-president Trump announced that he would ban TikTok from the US unless the app was sold to a US companyby September of that year. The deadlinewas twice extendedbefore it was quietly allowedto lapse with no action.However,Congress picked things upin 2023, with a new law intended to either banTikTokfrom the US, or to force the sale of the app to an American-owned company.Bytedancetook the US government to court, arguing that the threatened ban would be unconstitutional, interfering with a First Amendment right to free speech.That case was heard last month, with thejudges unanimously rejectingthe constitutional argument. The last hope was a bid for a Supreme Court injunction, but that now looks unlikely to be granted.TikTok may get a 270-day extensionA senator is now trying to pass a new law to give the company more time to reach a deal to sell to a US company.Senator Edward J. Markey announced his plan to introduce legislation, the Extend the TikTok Deadline Act, to delay the deadline by which ByteDance must sell TikTok or face a ban by an additional 270 days.He said theres too much at stake to allow the ban to be implemented on Sunday.As the January 19th deadline approaches, TikTok creators and users across the nation are understandably alarmed. They are uncertain about the future of the platform, their accounts, and the vibrant online communities they have cultivated.These communities cannot be replicated on another app. A ban would dismantle a one-of-a-kind informational and cultural ecosystem, silencing millions in the process.Its not yet known whether Markey has sufficient support for the bill to pass.Chinese officials deny Elon Musk reportBloomberg yesterday reported that the Chinese government is considering an offer from Elon Musk.Chinese officials are evaluating a potential option that involvesElon Muskacquiring the US operations ofTikTokif the company fails to fend off a controversial ban on the short-video app, according to people familiar with the matter []Senior Chinese officials had already begun to debate contingency plans for TikTok as part of an expansive discussion on how to work withDonald Trumps administration, one of which involves Musk.However, The Independent reports that this has been denied.In response to the reports, a TikTok spokesperson said: We cant be expected to comment on pure fiction.Photo byVisualsonUnsplashAdd 9to5Mac to your Google News feed. FTC: We use income earning auto affiliate links. More.Youre reading 9to5Mac experts who break news about Apple and its surrounding ecosystem, day after day. Be sure to check out our homepage for all the latest news, and follow 9to5Mac on Twitter, Facebook, and LinkedIn to stay in the loop. Dont know where to start? Check out our exclusive stories, reviews, how-tos, and subscribe to our YouTube channel
    0 Commentaires 0 Parts 84 Vue
  • THEHACKERNEWS.COM
    North Korean IT Worker Fraud Linked to 2016 Crowdfunding Scam and Fake Domains
    Jan 15, 2025Ravie LakshmananBlockchain / CryptocurrencyCybersecurity researchers have identified infrastructure links between the North Korean threat actors behind the fraudulent IT worker schemes and a 2016 crowdfunding scam.The new evidence suggests that Pyongyang-based threamoret groups may have pulled off illicit money-making scams that predate the use of IT workers, SecureWorks Counter Threat Unit (CTU) said in a report shared with The Hacker News.The IT worker fraud scheme, which came to light in late 2023, involves North Korean actors infiltrating companies in the West and other parts of the world by surreptitiously seeking employment under fake identities to generate revenue for the sanctions-hit nation. It's also tracked under the names Famous Chollima, Nickel Tapestry, UNC5267, and Wagemole.The IT personnel, per South Korea's Ministry of Foreign Affairs (MoFA), have been assessed to be part of the 313th General Bureau, an organization under the Munitions Industry Department of the Workers' Party of Korea.Another notable aspect of these operations is that the IT workers are routinely dispatched to China and Russia to work for front companies such as Yanbian Silverstar and Volasys Silver Star, both of which were previously subjected to sanctioned by the Treasury Department's Office of Foreign Assets Control (OFAC) in September 2018.Both entities have been accused of engaging in and facilitating the exportation of workers from North Korea with the goal of generating revenue for the Hermit Kingdom or the Workers' Party of Korea and obfuscating the workers' true nationality from clients.Sanctions were also imposed against Yanbian Silverstar's North Korean CEO Jong Song Hwa for his role in controlling the "flow of earnings for several teams of developers in China and Russia." In October 2023, the U.S. government announced the seizure of 17 internet domains that impersonated U.S.-based IT services companies so as to defraud businesses in the country and abroad by allowing North Korean IT workers to conceal their true identities and locations when applying online to do freelance work.Among the domains that were confiscated included a website named "silverstarchina[.]com." Secureworks's analysis of historical WHOIS records has revealed that the registrant's street address matches the reported location of Yanbian Silverstar offices located in the Yanbian prefecture and that the same registrant email and street address were used to register other domain names.One of those domains in question is kratosmemory[.]com, which has been previously used in connection with a 2016 IndieGoGo crowdfunding campaign that was later found to be a scam after the backers neither received a product nor a refund from the seller. The campaign had 193 backers and raised funds to the tune of $21,877."The people who donated to this campaign have not gotten anything that was promised to them," one of the comments on the crowdfunding page claims. "They have not received any updates as well. This was a complete scam."The cybersecurity company also noted that the WHOIS registrant information for kratosmemory[.]com was updated around mid-2016 to reflect a different persona named Dan Moulding, which matches the IndieGoGo user profile for the Kratos scam."This 2016 campaign was a low-effort, small monetary-return endeavor compared to the more elaborate North Korean IT worker schemes active as of this publication," Secureworks said. "However, it showcases an earlier example of North Korean threat actors experimenting with various money-making schemes."The development comes as Japan, South Korea, and the U.S. issued a joint warning to the blockchain technology industry regarding the persistent targeting of various entities in the sector by Democratic People's Republic of Korea (DPRK) cyber actors to conduct cryptocurrency heists."The advanced persistent threat groups affiliated with the DPRK, including the Lazarus Group, [...] continue to demonstrate a pattern of malicious behavior in cyberspace by conducting numerous cybercrime campaigns to steal cryptocurrency and targeting exchanges, digital asset custodians, and individual users," the governments said.Some of the companies targeted in 2024 included DMM Bitcoin, Upbit, Rain Management, WazirX, and Radiant Capital, leading to the theft of more than $659 million in cryptocurrency. The announcement marks the first official confirmation that North Korea was behind the hack of WazirX, India's largest cryptocurrency exchange."This is a critical moment. We urge swift international action and support to recover the stolen assets," WazirX founder Nischal Shetty posted on X. "Rest assured, we will leave no stone unturned in our pursuit of justice."Last month, blockchain intelligence firm Chainalysis also revealed that threat actors affiliated with North Korea have stolen $1.34 billion across 47 cryptocurrency hacks in 2024, up from $660.50 million across 20 incidents in 2023.Found this article interesting? Follow us on Twitter and LinkedIn to read more exclusive content we post.SHARE
    0 Commentaires 0 Parts 88 Vue
  • WWW.INFORMATIONWEEK.COM
    How CISOs Can Build a Disaster Recovery Skillset
    You hear this mantra in cybersecurity over and over again: Its not if, its when. Data breaches, ransomware attacks, and all manner of incidents abound, it seems like disaster lurks around every corner. The prevalence of these incidents has shifted the CISOs emphasis from prevention to resilience. Yes, even the most prepared enterprises can still get hit. What matters is how they bounce back.Todays CISO role has disaster recovery baked into the job description. How can they cultivate that skillset and use it to guide their organizations through the fallout of a major cybersecurity incident?Defining Critical Disaster Recovery SkillsDisaster recovery has become an essential part of the CISO role. In cybersecurity, we live in the world of incidents, whether it's someone clicking on a phish or someone plugging in a USB drive, or someone who's conducted fraud against your company, Ross Young, CISO in residence atventure capital fund Team8, tells InformationWeek.Incident response and disaster recovery go hand in hand. Some of the best CISOs are some of the best understanders of disaster recovery efforts and apply those in their own security response plans, says Matt Hillary, CISO at compliance automation platform Drata.Effective disaster recovery requires both technical skills and human skills.Related:On the technical side, CISOs must understand how each part of the technology stack is used in their organizations and how that technology impacts the CIA triad: confidentiality, integrity, and availability.A lot of that technical work is going to be driven down to the engineering level. Ideally, the CISO will have done the right work to bring in the right talent and drive the technical remediation, says Marshall Erwin, CISO at Fastly, a cloud computing services company.CISOs also need to be able to put themselves in the mindset of attackers to understand their goals and what they could be doing once inside the network. You can say, Team, here's where we need to be looking, here's where we need to point our lens and our forensic skills to identify what an attacker did to be able to make sure that we kicked them out and have cleaned up our internal network, says Erwin.But human skills are equally important. CISOs need to be able to communicate effectively across multiple teams and with C-suite peers to lead an effective response.What you feel you need to do from a security investigative perspective might be the opposite from [what] business resilience folks want to take, says Mandy Andress, CISO at Elastic, an AI search company. How do you navigate, communicate, and find the compromises.Related:A lot of that work is best done in advance of an actual incident. CISOs can add their voice to disaster recovery plans to ensure the security perspective is in place before an attacker gets inside.In the heat of a cybersecurity disaster, CISOs also have a responsibility to their team. They need skills to get them through the incident response process.It seems like every incident I've ever seen, it always happens on a Saturday when everybody's at their kids baseball game or something else. It's the most inconvenient time possible. How do you keep the positive moral? says Young.Remaining calm and decisive in the midst of a stressful situation that can last days, weeks, or even months is necessary and not without its challenges. I think there is a lot of bravado sometimes in the security community, says Hillary. I don't know if it's a mask or if it's something else that leads us to not being as human as we need to be. And so just to continue to be humble, teachable, and learn throughout that incident.Cultivating Disaster Recovery SkillsWhile people may have different career paths that lead them to the CISO role, theyve most likely worked through cybersecurity incidents along the way.Related:Incidents are frequent enough that you're going to have that experience at some point in your career and develop that expertise organically, says Erwin.While trial by fire is an excellent teacher, there are other ways that CISOs can shore up their disaster response and recovery toolboxes. Industry conferences, for example, can offer valuable training.When I was the CISO of Caterpillar Financial, I went to FS-ISAC [Financial Services-Information Sharing and Analysis Center], and they had a CISO conference where they did tabletop exercises simulating an insider threat, Young shares.CISOs can lead their own tabletop exercises at their enterprises to better understand the holes in their incident response plans and areas where they need to strengthen their own skills.Other leaders within an organization can be valuable resources for CISOs looking to cultivate these skills. One of my closest peers that I usually go to is someone who's over on the infrastructure team, says Hillary. Any kind of disaster impact or availability incident that they experience on their end, they have a plan for, they have a really good, well-exercised muscle within the organization to recover.CISOs can also look outside of their organizations for ways to sharpen their skills. Hillary shares that he always looks at other breaches and outages. I usually ask myself two questions. How do I know that this same vector isn't being used against my company right now? How do I know this same incident that this other company is experiencing can't happen to us? he says. So, it helps drive a lot of preventative measures.Navigating DisasterIn a world of third-party risk, human error, and motivated threat actors, even the best prepared CISOs cannot always shield their enterprises from all cybersecurity incidents. When disaster strikes, how can they put their skills to work?It is an opportunity for the CISO to step in and lead, says Erwin. That's the most critical thing a CISO is going to do in those incidents, and if the CISO isn't capable doing that or doesn't show up and shape the response, well, that's an indication of a problem.CISOs, naturally, want to guide their enterprises through a cybersecurity incident. But disaster recovery skills also apply to their own careers.I don't see a world where CISOs don't get some blame when an incident happens, says Young.There is plenty of concern over personal liability in this role. CISOs must consider the possibility of being replaced in the wake of an incident and potentially being held personally responsible.Do you have parachute packages like CEOs do in their corporate agreements for employability when they're hired? Young asks. I also see this big push of not only CISOs on the D&O insurance, but they're also starting to acquire private liability insurance for themselves directly.Andress shares that she is seeing CISOs be replaced less often. More often it's a recognition of underinvestment. And so, what I see more of is an increasing investment in the security program after an event or incident occurs, she says.After each incident, CISOs have the opportunity to learn about the strengths and weaknesses in the enterprises security and incident response plan, as well as in their own skillsets.For Andress, one of the biggest lessons has been to focus on the people involved in incident response. Everyone's looking at the technology. Everyone's looking at communication plans, but there're people working a lot of hours. How do we make sure that they're taking breaks? Getting rest. Getting fed, she says. If you want to have a strong and successful response making sure that you're focusing on not just the technology and the process aspects but really focusing on the people as well.
    0 Commentaires 0 Parts 86 Vue