At least one major credit card fraud gang has switched focus to building out fake dating and customer support websites since 2019, tricking payment processors into granting them access, and running charges against stolen credit cards.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Scammers have taken to social media networks as their favorite spot for phishing attacks as there are billions of registered users with a vast majority of them practicing little to no account security.
In the rapidly evolving world of cybersecurity, distinguishing between vulnerabilities, cyber threats, and cyber risks is not just a technicality—it's a necessity. As threats grow more sophisticated, the distinction between these concepts becomes crucial for businesses aiming to mature their security posture.
LockBit ransomware will undoubtedly be copied and used by other threat actors in the near term, putting the group's business at risk. But the leak of the ransomware builder also gives security researchers valuable insights.
Google's dark web monitoring tool, which allows users to track personal data involved in data breaches, is becoming free for everybody and will be integrated into the Google app.
Distributed applications across multi-cloud and edge environments are emerging quickly, what are the three key issues that need to be addressed in order to secure them?
Microsoft 365 Defender researcher team discovered a privilege escalation vulnerability dubbed Nimbuspwn allowing an attacker to gain root privileges and deploy malicious payloads.
CISA has disclosed that more than 100 water systems across multiple U.S. states were affected by a coordinated cyber attack unofficially attributed to Iranian hackers.
Qantas has announced a new compensation policy that reduces executive bonuses for the CEO and their team when damaging cybersecurity incidents take place. The recent data breach will cost Qantas CEO Vanessa Hudson AUD 250,000 of her expected total annual compensation of AUD 6.3 million.
Anonymous hacking group leaked a 28 GB data dump containing 35,000 files stolen from the Russia Central Bank in retaliation against the country's invasion of Ukraine.










