Cloud-based data management subsidiary of Toyota exposed the information of 2.15 million customers in a decade-long data leak. The Toyota Connected service reminds owners to service their vehicles and links the car to entertainment services, and can assist during emergencies by calling for help and locating a car that’s been stolen.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Toyota subsidiary has recently lost $37 million in a BEC scam. Unlike many companies, the large fund transfer did not seem to raise any initial alarms and warnings.
Cyber attack on Toyota's electronics and plastic parts supplier Kojima Industries shut down 28 production lines across 14 plants in Japan, exposing production supply chain vulnerabilities.
Toys “R” Us Canada, a subsidiary of the American toy giant, has confirmed a data breach after threat actors leaked the stolen customer information on the dark web.
Traditional form of security awareness training rarely achieves what it’s set out to do. Instead, valuable time is taken out of employees’ days to complete training that positions them as the problem, thereby reinforcing a negative stigma and undermining the entire process.
More cyber-attackers are employing some level of credential theft over other types of cyber threats. Recent data proves that credential protection, especially passwords, are essential to data security.
Travelex experienced a malware attack which forced the company to take its website offline and suspend some services for at least two days, creating problems for travelers and business partners.
Many organizations go through great lengths to set up effective security operations incident response plans but do they test them to assess effectiveness and make continuous improvements?
Recent Tripwire survey reported 93% of cybersecurity professionals are concerned over ICS security and how potential cyber attacks could shut down operations or lead to customer-impacting downtime.
Victims that interacted with the fake KeePass ads would get a maliciously modified version of the password manager called "KeeLoader" designed to exfiltrate passwords and provide a backdoor for further malware delivery and ransomware attacks.










