Japanese electronics company Casio is still reeling from a ransomware attack that disrupted its systems, two weeks after the incident occurred and with no expected recovery timeline.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A Nokia security breach has leaked source code from a third-party software development partner, exposing the company’s sensitive data, including keys and hardcoded credentials.
Fraudsters used Nordstrom’s official email system to promote a crypto scam promising to double funds sent to the scammers’ wallet addresses as a St. Patrick’s Day giveaway.
New UN report discloses how North Korea has financed its WMD program with more than $2 billion from cybercrime against world’s largest financial institutions and cryptocurrency exchanges.
North Korea hackers breached South Korea’s Atomic Energy Research Institute using a VPN vulnerability. IssueMakersLab traced one IP address to state-backed Kimsuky.
The total take for the Lazarus hackers was over 400,000 ETH and stETH valued at about $1.5 billion in total. The public report of the crypto theft triggered a wave of about 580,000 withdrawal requests. Bybit says that it has weathered that bank run.
Lazarus APT targets the employees of blockchain companies with fake job offers, tricking them into downloading trojanized apps that steal security keys and make fraudulent transactions.
The US Treasury Department has linked North Korea's state-sponsored Lazarus hacking group to the $625 million breach of the Ronin network. The crypto theft was the largest to ever happen to a DeFi platform in terms of unrecovered funds.
North Korean Hacker Charged for 2022 Ransomware Attacks on US Hospitals, Data Theft From US Military
A North Korean hacker responsible for a trail of massive damage to hospitals and the US military has been unmasked, as a federal grand jury has indicted Rim Jong Hyok in a 2022 string of thefts of data from the US government and ransomware attacks in the healthcare sector.
A phishing campaign by the North Korean government-linked hacking group Kimsuky is leveraging a malicious Chrome extension to steal Gmail emails from high-value targets.










