Chinese APT group Weaver Ant breached and maintained a foothold on a large Asian telco network for four years using compromised Zyxel CPE routers for cyber espionage.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Leading forklift manufacturer Crown Equipment has confirmed that the prolonged disruption resulted from a cyber attack by an international cybercriminal organization.
Your people are your organization’s greatest asset, but their digital identities are also your most significant risk areas. No other facet of your IT environment is more frequently attacked. A compromised identity is the easiest way into your digital infrastructure and a gold mine for hackers.
Already suffering from significant damage caused by a recent Conti ransomware attack, Costa Rica has taken another blow as Hive ransomware has infected a portion of its public health system.
Biden administration executive order looks to make immediate improvement to the nation's cyber defenses, with the headline item being new reporting requirements for federal government vendors that experience cybersecurity breaches.
Verizon's data breach report for 2021 frames the degree to which the pandemic has influenced cyber criminal activity, with the focus shifting strongly toward work-at-home infrastructure.
Credit rating agency Experian's Netherlands branch has been assessed a €2.7 million (about $3.2 million) GDPR fine for improper collection of personal data, which was drawn from multiple public and private sources that data subjects were not necessarily aware of.
Phishing scam perpetrated by attackers posing as vendors cheated the school district of approximately $2.3 million before the business compromise scheme was discovered about a month later.
With specific guidance from an amended HITECH Act to include a comprehensive cyber policy, the healthcare industry will better secure patients’ data.
A six-year surveillance operation tied to state-sponsored Iranian hackers appears to have scooped up personal documents and tracked the phone location data of dissidents.










