Lapsus$ hackers appeared to be reckless – posting about their activities on Twitter and other social media sites, and reportedly broke into Zoom conference calls at the companies they had just breached to taunt employees.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
The Italian National Cybersecurity Agency and the Postal Police are investigating an alleged ransomware attack on the country's tax agency that potentially leaked 100 GB of data.
Suspected Ransomware Cyber Attack Disrupts Expeditors International’s Logistics Operations Worldwide
Expeditors International of shut down its operating systems worldwide, limiting its logistics operations after a cyber attack suspected to be a ransomware incident.
A suspected Russian cyber attack on Ukraine’s state railway operator Ukrzaliznytsia impacted online systems, disrupting ticketing operations and causing long queues.
A sophisticated vishing attack by the suspected ShinyHunters cybercrime gang has leaked business contact information from the New York-based ad tech company Optimizely.
A new research report from ESET finds that the "GoldenJackal" advanced persistent threat group has the capability to compromise air-gapped systems, and has been deploying it in Europe since at least 2022.
The official word from Meta, via its main Instagram account, is that an "issue" that allowed third parties to request password resets for "some people" was fixed on January 11 and that users could safely ignore the strange password reset messages. They also reassured users that there is no new data breach.
South African Banking Risk Information Centre warned that banks in the country had been experiencing repeated DDoS attacks and ransom notes were delivered to a number of staff email addresses.
The Swedish Authority for Privacy Protection (IMY) is investigating a data breach at major government software supplier Miljödata that has compromised the personal information of 1.5 million people.
Swedish police will be given powers to deploy spyware on devices of suspected criminals. The spyware could turn on cameras, microphones, and access encrypted chat logs or images stored on the device.










