Apple boasts of stopping some $1.5 billion in attempted app fraud in 2020 and removing one million malicious apps, but complaints of app-based scams are still quite common.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Apple generally does not release security updates in between iOS version updates. This practice may be changing, however, as AI hacking drives faster development of tools and quicker identification and exploitation of known vulnerabilities.
One of the few significant holes in Apple's end user security is set to be addressed, as Cupertino has announced plans to introduce end-to-end encryption to iCloud backups. A feature Apple has delayed due primarily to pressure from US federal law enforcement agencies.
Ponemon and WhiteSource report on application security indicates that most large enterprise-scale organizations feel that their portfolio of applications has become more vulnerable recently.
Behavioral economics offers valuable insights into why humans fall for phishing and social engineering attacks. Bad actors in the world of cybersecurity prey upon these human tendencies to drive actions that put organizations at risk.
When planning, designing, and delivering cyber security awareness training, it is critical to consider the perspectives, needs, skill levels, and experiences of users. Gaining and maintaining its support among teams is an ongoing and collaborative effort.
Apria healthcare data breach has exposed the personal, medical, and financial information of up to 1.8 million individuals. The cyber intrusions occurred from April 5 to May 7, 2019, and from August 27 to October 10, 2021.
The "OPERA1ER" APT group is known for targeted spear phishing emails, but is unique in targeting less economically developed nations in Africa, Asia and Latin America.
Cybersecurity agencies in U.K. and U.S. warn of APT groups targeting cyberattacks at entities involved in COVID-19 response efforts to gather intelligence and commit espionage.
A ransomware attack on Ardent Health Services, a network of 30 hospitals that spans six states, disrupted emergency rooms and caused some patient diversions for at least two days in addition to taking down various systems.










