Hackers timed a supply chain attack to hit when IT workers were off duty. An attack on MSPs making use of Kaseya products is thought to have compromised at least 200 of that company's clients.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
The ALPHV/BlackCat ransomware group has filed an SEC complaint directed at MeridianLink, noting that the data breach took place over a week prior, and claims that new SEC rules require the victim to disclose a material impact within four business days.
Ransomware group claims that it stole 161 GB of data from Coca-Cola, including login credentials and financial data, and offering data for sale at 1.6 bitcoin (about $64,000). Coca-Cola has yet to confirm the data theft.
Report from security firm Analyst1 illustrates how agile ransomware groups have become, to the point that they are backing off and regrouping with new tactics before slow-moving legislation and enforcement can catch up with them.
Holding companies legally accountable, sharing information, and creating shared security standards won’t completely eradicate ransomware attacks. But they will make it considerably harder to carry out those attacks successfully.
The U.S. Treasury Department has handed down the first sanctions to a crypto exchange, hitting Russia-based SUEX.io for facilitating ransomware payments.
A new report from cybersecurity firm Sophos indicates that ransomware recovery costs have shot up in the past year, with the average case approaching $2 million in total expenses.
APAC organizations are 80% more likely than the global average to be the target of a cyber-attack. How do organizations achieve cyber resilience as ransomware attacks shift to RansomOps?
As we edge into 2024, understanding the dynamic landscape of ransomware is crucial for developing effective defense strategies. This article aims to provide an outlook on the current trends and forthcoming ransomware predictions, offering valuable insights for those looking to fortify their cybersecurity posture in the face of these persistent threats.
The only way to keep a company’s defense up-to-date against ransomware attacks is with constant proactive activity from well-engineered cybersecurity teams.










