Surge in ransomware attacks and the complex cybersecurity landscape – complicated by the growing adoption of remote work – are giving cyber insurance companies leverage to hike premiums at alarming rates. Here are three strategies to help you find keep costs affordable and get approved for coverage you need.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
The National Railroad Passenger Corporation is notifying customers of a data breach affecting their Amtrak Guest Rewards accounts. Amtrak believes the threat actor gained access via a credential stuffing attack.
Attackers approach targets for account takeover pretending to be a member of the Meta tech support team, using Facebook profiles that they have created that have a post history that makes it appear as if they are a legitimate employee.
If organizations want to effectively combat the ongoing skills gap war in the cybersecurity field, as well as properly prepare against the next new cyber threat, they will need to become creative in how they become involved with the education of the next generations of cyber professionals.
Newly released Cybersecurity Maturity Model Certification (CMMC) framework will require third-party assessment of mandatory practices and requirements to strengthened cybersecurity infrastructure for the DoD and its more than 300,000 contractors.
User activity monitoring and insider threat detection is evolving to get ahead of the ever increasing threat to user data. Providing advanced analytics, insightful intelligence, and effective response mechanisms, it addresses three critical components of data security in 2019.
Several Android apps using misconfigured cloud services for storage, real-time communication and synchronization exposed sensitive information of over 100 million smartphone users.
Starting in 2024, Android apps that want to be listed on the Google Play Store will need to provide users with greater control over the data they collect. Apps must allow users to delete their account data whenever they choose, and to entirely remove their account from the app.
Security researchers discovered a new Android malware targeting sixty banks in Europe. The banking trojan overlays legitimate apps and mimics user interaction to commit fraud.
Anonymous hacking group leaked a 28 GB data dump containing 35,000 files stolen from the Russia Central Bank in retaliation against the country's invasion of Ukraine.










