Leveraging the Hancitor malware, the ransomware gang earned $43.9 m after compromising 49 critical infrastructure entities in finance, government, healthcare, manufacturing, and IT.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Ransomware gangs search for non-public financial information that could affect stock prices during mergers and acquisitions and threaten to publish it to coerce the victim to pay.
It has been discovered that the FBI quietly held on to the Kaseya decryption key for three weeks prior to making it available to the public in a bid to "disrupt" the attack.
A joint cybersecurity advisory by the FBI, CISA, and HHS warns about Medusa ransomware targeting more than 500 critical infrastructure organizations by April 2026.
A joint cybersecurity advisory by federal agencies warns healthcare organizations of targeted ALPHV/BlackCat ransomware attacks in retaliation against the FBI’s botched seizure.
U.S. federal agencies issued a joint cybersecurity advisory over cyber threats targeting water facilities and wastewater treatment plants threatening water safety and availability.
The FBI calculated the cost of BEC attacks to be $43 billion, with a 65% increase between 2019 and 2021. Banks in Thailand, Hong Kong, China, and Singapore were the primary recipients of illicit funds.
Fake crypto apps have grown to be a significant problem in the United States, with the FBI reporting a flurry of activity since October 2021. The agency has logged at least 244 victims during this period.
The FBI warned that hackers are using search engine ads for phishing and spreading malware to unsuspecting users by impersonating legitimate businesses and services.
The FBI says hackers who scraped credit card data by injecting malicious PHP code on an online checkout page were targeting U.S. businesses since September 2020.










