Australia has been experiencing unusually serious problems with data breaches for nearly a year now. HWL Ebsworth, one of the country's most prominent law firms, appears to have had a huge amount of client information stolen by ALPHV/BlackCat.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Research on underground forums found that cybercriminals made careers selling network access for up to five figures instead of exploiting the networks themselves.
Authorities in the U.S. and Australia have warned that the BianLian ransomware gang has abandoned the double extortion model for purely data extortion attacks. More groups are likely to follow suit and forego the hassle of developing and managing the encryption and decryption process in favor of a less complicated attack,
Dartmouth College has reported a data breach from Oracle’s E-Business Suite applications, leaking the sensitive personal information of approximately 35,000 people.
Your identity is something valuable and identity theft in the digital world can have real life consequences. Protection is a shared responsibility.
High-profile cyber attack that struck British budget airline EasyJet may have been carried out by Chinese hackers who have stolen email addresses and travel details of millions of passengers.
Cit0Day leaked more than 23,000 hacked databases containing over 13 billion records. The data was shared on the MEGA file hosting site, Telegram channels, and underground hacking forums.
As applications grow more complex, attackers will increasingly seek to exploit vulnerabilities in business logic to bypass traditional security measures and gain unauthorized access. To address this threat, organizations must rethink their current security strategies for protecting applications and APIs, and the data they’re accessing.
Russian hackers stole 50 million passwords from popular online services such as PayPal, Amazon, Roblox, Steam and crypto wallets by deploying infostealer malware on users’ devices.
DeFi platform Qubit finance lost $80 million after hackers leveraged a logical flow to deposit 0 ETH to withdraw 206,809 Binance coins. Platform implored the hackers to return the funds or transform the exploit into a bug bounty.










