The ransomware threat landscape continues to evolve and the spreading mechanism has changed, shifting from simple phishing attacks, spam and drive-by-downloads to more sophisticated techniques. These advanced techniques in ransomware has proven successful in massive global attacks for 2017. What's coming in 2018?
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A data breach affecting American medical imaging provider SimonMed Imaging has leaked the personal information of 1.2 million people. SimonMed learned of the data breach on January 7 after a third-party vendor reported malicious activity on its network.
An SEC filing has revealed that GoDaddy suffered a data breach that impacts some 1.2 million of its current and former managed hosting customers. Wordpress users may have had their email addresses exposed.
Google Threat Intelligence Group has warned about sophisticated cyber attacks on critical infrastructure by the Scattered Spider ransomware gang via VMware.
Here is a six-step strategy to passing compliance audits seamlessly and set your business on the path to sustainable and successful ongoing auditing preservation.
Google Threat Intelligence Group has tracked threat actor UNC6395 stealing OAuth tokens via Salesloft Drift integrations in a massive Salesforce data theft campaign.
15 year-old flaw in a default python module introduces supply chain vulnerability to over 350,000 open source projects and the applications that use them, including SDKs, AI/ML, security, management, and developer tools.
New Zealand’s Stock Exchange was crippled by a DDoS cyber attack, lasting four days and forcing the government to activate the National Security System requiring government agencies to work together.
Denmark Weathered Wave of Cyber Attacks on Energy Infrastructure in May, Industry Non-profit Reveals
Denmark's energy infrastructure was bombarded by cyber attacks in May of this year. Report says 16 energy infrastructure companies were targeted and 11 were compromised immediately, the other five only apparently dodging a breach because the attackers were sloppy in their technique.
Industry 5.0 can be summarized as calling for redesigning industry around a human centric approach. It's clear that digital technologies will play an important role and trust is crucial for any industrial data flows.










