Krispy Kreme has disclosed that the December 2024 disruption to its online ordering systems resulted from a cyber attack later claimed by the Play ransomware group.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
AI agents will change how SOCs work, but they won’t save a broken data foundation. If your telemetry is siloed, your schemas are inconsistent, or your context is missing, you’ll automate noise, not insight.
Healthcare web application attacks increased by 51% since the introduction of COVID-19 vaccines. Cross-site scripting (XSS) and SQL injections were the most detected by volume.
Data leak occurred when a sensitive document was mistakenly shared in connection to a freedom of information request, and takes place amidst a backdrop of increased tensions and fears of terrorism that have been growing since early 2023.
Hive ransomware, one of the biggest ransomware-as-a-service (RaaS) strains circulating since 2021, has at this point brought in $100 million in ransom payments and the total victim count is at least 1,300 organizations.
Microsoft has experienced another security lapse after inadvertently exposing employee credentials for accessing internal databases and systems via an unsecured Azure cloud server, which was accessible over the public Internet without a password for nearly a month after discovery.
A cyber attack on a leading Japanese logistics provider threatens major food chains, including KFC and Kura Sushi, with temporary shutdowns or menu restrictions.
Italian supercar maker Ferrari disclosed a data breach impacting an unknown amount of customer data after a hacker demanded ransom, a request that the company turned down.
Three common problems regularly hold back cybersecurity strategies – not testing enough, not resolving or disclosing known vulnerabilities, and not having proper security programs in place to measure testing effectiveness.
Have you ever wondered how exactly threat actors spend their days? A recent Huntress investigation into a machine operated by a threat actor, who had installed a Huntress agent, gave an inside look into just that.










