The ransomware attack on AirAsia took place on November 11 and 12, with samples of the stolen personal data being leaked to the group's dark web site about a week later. The posted samples contain employee personal information as well as passenger booking information.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Email is the most used digital communication method in the world. Email is also still a hacker's favorite route to attacking a target, because most users don't bother with email security.
Trend has begun to emerge for cybersecurity incident-related shareholder derivative lawsuits – attorneys are increasingly now filing claims specifically based on failures surrounding duty of oversight.
Documents related to Pfizer-BioNTech COVID-19 vaccine data stolen from European Medicines Agency's server were leaked online. EMA said participants' personal data was not exposed.
U.S. pharmaceutical giant Cencora has disclosed that the February 2024 data breach leaked sensitive patient data, including diagnoses and medications. At least 15 pharmaceutical companies have informed over 500,000 individuals that their information was leaked.
A cyber attack on one of the oldest newspapers in the United States has damaged editorial services and advertising to such a degree that it is "unclear" when normal operations will be restored.
With the prevalence of phishing and watering hole attacks, companies in Singapore are advised to adopt AI learning models in their cyber defense to keep up with malicious codes.
California State Comptroller’s office leaked details of 9,000 people after a Microsoft 365 email account of an Unclaimed Property Division employee was hacked in a phishing attack.
The attack on the OpenSea NFT marketplace does not appear to be a code issue or vulnerability, the phishing attacks apparently involved unknown threat actors approaching individual users and tricking them into signing a malicious payload.
2020 has demonstrated several times over that no target is beneath the world's cyber criminals; this time it's a coordinated phishing attack on the global vaccine supply chain.










