Zero trust will not stop over 50% of attacks by 2026 because only 10% of large firms will have mature programs, and hackers will expand the attack surface beyond zero trust coverage.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
The Google Fi service was caught up in the T-Mobile data breach of late 2022 that saw an attacker gain access to 37 million records of customer data. Google’s breach is somewhat more concerning, as the company reports that SIM card serial numbers were stolen.
A joint cybersecurity alert warned that hackers breached multiple federal agencies via remote monitoring and management software in a widespread helpdesk-themed phishing campaign.
Ticketmaster executives have been brought in front of a Senate Judiciary Committee and claims now that a bot army were both purchasing tickets and attempting to breach the servers simultaneously.
A cyber attack has compromised UK fashion retailer JD Sports with 10 million records of customer data stolen from online purchases made between November 2018 and October 2020.
A wanted Swiss hacker accessed a federal No Fly List containing millions of records that was sitting on an unsecured server operated by a regional airline company.
The Hive ransomware threat appears to be very much in retreat as the US Department of Justice recently announced the seizure of the group's decryption keys and infrastructure, including its public-facing website, by law enforcement operations.
Hackers exfiltrated not just internal game cheats, but the source code that underpins this system for certain Riot Games titles, including League of Legends. This creates the possibility of new game cheats and exploits being developed.
Not all security awareness training programs achieve desired results. Here are items to consider when setting up your security awareness training program.
A ransomware attack on KFC, Pizza Hut, and Taco Bell parent company Yum! Brands shut down 300 restaurants in the United Kingdom and leaked the company's corporate data.










