For most organizations, especially small and mid-market businesses, tracking who is behind an attack delivers far less value than understanding what attackers are doing and how to defend against it.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
IntelBroker claims to have broken into General Electric (GE) and stolen sensitive military files belonging to DARPA. GE has yet to confirm the data theft, only saying that it is still investigating the incident.
A threat actor linked to Babuk and Groove ransomware gangs leaked login credentials of 500,000 Fortinet VPN accounts to promote a new underground hacking forum.
Security researchers have discovered a network of over 3,000 GitHub accounts involved in an extensive malware distribution campaign.
Director of National Intelligence John Ratcliffe has issued a statement that Iranian and Russian actors have US voter data and are using it to engage in election interference.
Threat Actors Lurked on a Government Agency Network for 6 Months Before Deploying LockBit Ransomware
A novice hacker lingered on a government agency network for five months before transferring control to an experienced threat actor who deployed LockBit ransomware.
Threat group commits financial theft by hiding inside the victims’ networks for months while studying their financial systems and injecting fraudulent transactions into regular activity.
For security teams and, by extension, the business, time directly relates to money. Having a threat hunting team or, at the very least, a dedicated threat hunter in your IT operation is the best way to balance risk vs. cost.
Nokia's Threat Intelligence Report noted an increase in IoT attacks stemming from poor security practices, the use of automated tools by attackers, and Internet visibility of devices.
While the frequency, intensity, and sophistication of DDoS attacks continues to rise, enterprises do have one factor on their side: the loud, distributed nature of DDoS attacks.










