An international law enforcement effort that involved multiple agencies from the United States and Europe has taken out a significant chunk of the dark web, putting 179 vendors out of business.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A federal court filing system experienced a sweeping security breach that leaked sensitive non-public case documents, including the identities of witnesses and defendants.
Recent survey on 200 banks worldwide found 4 in 5 of them had experienced at least one SWIFT fraud attempt since 2016, and the problem appears to be growing.
Advancements such as Infrastructure as Code, DevSecOps and Security as Code are making a difference in the world where the most life-critical organizations release new code hourly.
A ransomware attack on a third-party service provider has impacted numerous Swiss government departments, potentially leaking sensitive personally identifiable information.
A system outage stemming from an apparent ransomware attack disrupted clinical operations at Kettering Health, forcing the healthcare network to cancel and reschedule elective operations.
The Google Fi service was caught up in the T-Mobile data breach of late 2022 that saw an attacker gain access to 37 million records of customer data. Google’s breach is somewhat more concerning, as the company reports that SIM card serial numbers were stolen.
T-Mobile appears to have suffered a devastating data breach as a reported 100 million records have appeared for sale on a dark web forum. The customer data is about as sensitive as possible, containing accurate Social Security and driver's license numbers.
T-Mobile has begun notifying 37 million prepaid and post subscribers whose personal information was accessed by unauthorized bad actors in an unsecured API data breach.
T-Mobile has seemingly had annual data breaches since 2018, but the new FCC settlement addresses just those that took place in the post-Covid period (and that involved the largest total count of customer records).










