An FIA data breach has exposed the sensitive personal information of F1 drivers, including government-issued IDs, after a group of security researchers breached the sporting body’s Driver Categorisation portal.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Insurance giant Fidelity Investments has suffered a third-party breach linked to the US-based subsidiary of Indian tech juggernaut Infosys, impacting nearly 30,000 customers.
Fidelity National Financial disclosed that hackers compromised the data of 1.3 million customers during the November 2023 cyber attack that disrupted operations for a week.
While the tech companies seem to be in full support of passwordless authentication, the tech community remains divided on whether it is really "ready for primetime."
GRIMM researchers discovered three 15-year-old bugs allowing local privilege escalation, while ZDI found another Linux vulnerability could allow remote code execution without authentication.
A strong recovery and resilience strategy will ensure that crypto and DeFi firms are able to rebound from cyber attacks with minimal disruptions to their operations, mitigating losses for their investors and users.
Defending organizations utilize AI-powered email security measures to enhance network protection, detect advanced malware and ransomware, optimize critical data center processes, improve threat response times, and reduce human error. Unfortunately, threat actors have also identified the benefits of AI technology.
Password fatigue is rapidly becoming threat actors’ greatest weapon when it comes to account takeover. The key is removing passwords from the equation altogethe and a new generation of passwordless, phishing-resistant multi-factor authentication is rapidly emerging as enterprises’ answer to password fatigue.
A finalized FTC order directs Marriott and its subsidiary Starwood to implement a robust data security program within 180 days to protect personal information from exposure.
New Jersey-based financial services company Prudential Financial says the February 2024 ALPHAV/BlackCat ransomware data breach impacted 2.5 million individuals.










