A new report cites insider sources in naming Charter Communications, Consolidated Communications and Windstream among the breached US telecom companies. The sources also state that the Salt Typhoon campaign may have started in late 2023.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
To achieve successful business resilience, companies need to ensure they think modular, adopt a multi-vendor and multi-provider strategy, automate their IT infrastructure and embrace cloud native approaches.
The Chinese hackers were able to dwell for at least several months in 2023 and captured about 5% to 10% of all of the emails sent by the Belgian State Intelligence Service during that time.
Internet of Medical Things (IoMT) brings significant benefits to the delivery of patient healthcare services and internal operations, but healthcare delivery organizations tend to struggle with implementing effective cybersecurity measures.
Honeypots set up by Sophos logged a staggering amount of scripted attacks attempting to pass default credentials. What’s more alarming is the aggressive speed and scale of these attempts with the first attack in less than 60 seconds.
Google's Threat Analysis Group has announced it is providing free USB security keys to a collection of politicians, activists and other high-risk individuals likely to be targeted by nation-state hackers.
Hackers stole up to $30 million in the Crypto.com hack associated with 2FA bypass, forcing the exchange to refund the victims and migrate to a new 2FA infrastructure.
Account information of over 2.6 million Duolingo users was obtained via data scraping of an exposed API, and recently leaked on an underground hacking forum.
A Canvas hack has leaked nearly 280 million records from faculty, staff, and students across 8,809 colleges, online learning platforms, and school districts.
German health insurers' IT services provider Bitmarck's early warning systems detected a cyber attack, forcing it to shut down internal and customer-facing applications, denying health insurers essential IT services.










