Stanford University Department of Public Safety is investigating an alleged data breach by the Akira ransomware gang that stole 430 GB of data, including private information and confidential documents.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Citing the dangers of “sideloading”, Apple and Google defend themselves by saying their app store policies are necessary to protect their users. But while sideloading can be very risky, it can be done securely through the use of time-tested and effective cybersecurity technologies.
AI-based information risk assessment is allowing companies to mitigate potential security risks and even predict future attacks with greater speed and accuracy than they could ever achieve through manual processes.
South African Banking Risk Information Centre warned that banks in the country had been experiencing repeated DDoS attacks and ransom notes were delivered to a number of staff email addresses.
A cyber attack that continues to impact the Stryker medtech group's business operations as of this writing has been linked to a pro-Palestine hacking group thought to be supported by the Iranian government.
150 non-emergency procedures were canceled along with about 3,000 appointments as a Barcelona hospital fell victim to a ransomware attack that crippled communications and slowed operations.
The investigation into the August Twilio hack was recently concluded, and the company has found that the same attacker was responsible for a vishing attack that led to a smaller breach in June.
EEA’s PSD2 regulation aims to protect consumers against fraud by securing the digital payments for Card Not Present (CNP) transactions. Study shows that merchants have seen some higher loss from failed and abandoned transactions than that from fraudsters.
New dangerous mutation of DoppelPaymer ransomware doesn't just lock up data, but also threatens to post the victim's data to a public leaks site if the ransom isn't paid.
Dell Technologies is notifying customers of a preventable data breach that exposed their personal information via a poorly protected application programming interface (API). The notification follows a recent BreachForum post by a threat actor auctioning the stolen data, allegedly belonging to 49 million customers.










