A blogpost from LastPass Labs warns of an attempted voice phishing attack on an employee that made use of an audio deepfake of company CEO Karim Toubba. The attacker peppered the LastPass employee with a series of calls, text messages, though the employee recognized it as a scam attempt and no damage was done.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
As might be expected, the scale and scope of the latest Coinrail cyber heist has increased the call for new cryptocurrency regulations for both exchanges and trading, and could go a long way in maintaining investor faith in the modern financial system.
Australia’s Latitude Financial Services is investigating a data breach that impacted two third-party service providers, exposing hundreds of thousands of customer records.
The LabHost phishing service had been active since 2021 and was responsible for the theft of at least 480,000 credit and debit card numbers with 64,000 pin numbers. According to the London Metropolitan Police, university students were among the 37 suspects recently rounded up in a law enforcement operation that took down the LabHost phishing service.
Joint international law enforcement effort involving about a dozen countries has taken down Ragnar Locker ransomware gang's dark web site, with an announcement that at least one arrest had been made.
On June 2, Anthropic confirmed that it will be adding 150 new organizations across some 15 countries to the "Project Glasswing" access to Mythos AI Preview and that ENISA will be among these.
Finastra, a fintech service provider for 45 of the 50 largest banks in the world, has sent out data breach notifications to customers tied to postings on criminal underground outlet BreachForums that offered a total of 400 GB of zipped data.
Leading U.S. satellite TV provider Dish Network confirmed that the ongoing widespread disruptions is the result of a ransomware attack that was yet to be resolved.
Internal documents indicate Microsoft entirely has its hands full addressing the security vulnerabilities rated "critical" and "important" that Mythos Preview has surfaced, with additional hundreds more rated "moderate" or lower forced into a deferred maintenance status until some undetermined future date.
People of an entire country were put at risk with Ecuador data breach of 20 million user information. The breach has accelerated a data privacy law that has been under consideration for months.









