DeFi platform Qubit finance lost $80 million after hackers leveraged a logical flow to deposit 0 ETH to withdraw 206,809 Binance coins. Platform implored the hackers to return the funds or transform the exploit into a bug bounty.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A zero-day vulnerability that has been with iOS since the first iPhone launched has been identified and patched out by Apple, but with the warning that there is evidence it has been exploited in attack chains for quite some time.
U.S. Cyber Trust Mark, a labeling program intended to make the relative security level of smart devices more apparent to consumers, is based on a NIST standard first put forward in a February 2022 white paper, addressing a longstanding problem with shortcomings in IoT security.
A new "combination file" offered on the dark web that makes connections between Clubhouse and Facebook users is a threat to create a spike in specific attack types, namely phishing and account takeover attempts.
How can an organization prevent unauthorized people from looking over their remote employee's shoulders? By utilizing an identity confirmation solution that combines biometrics, object recognition, and AI, businesses will ensure only approved employees view sensitive data.
Focusing on PCI compliance is a good way to improve risk management, find out what your company can do to reduce incidents, stop cyber threats and prevent regulatory fines.
ODIN Intelligence, a law enforcement technology vendor, has experienced a chain of security incidents as of late including a defaced website (and possibly much worse). Company had already been a magnet for controversy over some of its more privacy-invasive products.
The average cost of data breach has hit an all-time high, up almost 10% from last year to $4.24 million. That average cost increases greatly when remote workers are involved (to $4.96 million).
As the world becomes more digitally integrated, hacker groups will continue to take advantage of the physical blindspot that many companies have to launch attacks against digital infrastructure. A cyberthreat that comes by way of a physical device is known as a “phygital” threat.
Ransomware is the current king of the cybersecurity threat landscape, in part because of willingness to escalate to real-world damage to infrastructure. The DHS Secretary thinks that things are poised to go a step further in that direction in the very near future.










