Europol, Latvian, and Lithuanian police arrested 108 suspects involved in an international investment scam operation in 3 call centers located in Riga and Vilnius. Operation makes €3 million in profit per month.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
How do security measures stack up against the total cost of data breaches? A new Ponemon study offers some useful data on the savings from security automation and incident response.
State-sponsored hackers from Russia, China, Iran, and North Korea are exploiting Windows shortcut files to execute malicious commands for cyber espionage.
The US Cyber Command is expecting the TrickBot botnet to be involved in election interference attempts, and is actively running persistent operations against it along with Microsoft.
Security researchers discovered 33 vulnerabilities in millions of devices using four popular open-source libraries. The bugs allow attacks, including remote code execution and DDoS.
Cybercriminals know that a network, application process, or security control will function similarly and feature the same arrangements of hackable assets in every environment they encounter. To flip this script, security teams need to make IT environments hostile to threat actors and turn static environments into dynamic ones.
Alexa bug allows hackers to access users' voice history, personal, and banking information. The vulnerability also allows hackers to install or uninstall Alexa skills on compromised accounts.
File transfer services play crucial roles in securing business and government operations, but companies must be aware of the inherent risks and adopt mitigations to safeguard against those risks.
Microsoft has banned the developer accounts of high-profile open-source projects, leaving them unable to publish software updates, exposing Windows users to various cyber threats.
The new guidance actually focuses on three main areas of AI data security: data drift and potentially poisoned data, and also risks in the data supply chain. The guidance builds upon the NSA’s existing Deploying AI Systems Securely publication, but adds much more detail specific to addressing potential vulnerabilities.










