The Russian ransomware gang ALPHV/BlackCat has threatened to leak 300 GB of top-secret and classified military documents it stole from a Pentagon contractor.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Market for hack-for-hire services could be expanding significantly with recent unmasking of a Dark Basin group that has been operating in the shadows for years.
Info stealers are increasingly finding their way into corporate environments, possibly as a result of increased blurring of personal and work devices. Report finds that some 400,000 employee logins are available for sale on dark web sites and illicit Telegram channels.
In a high-stakes chess match, the grandmaster doesn’t win by brute force; they win by observing, anticipating, and exploiting small weaknesses in their opponent’s position. Every move is part of a strategy. This is exactly how cybercriminals operate today.
Fraudsters used Nordstrom’s official email system to promote a crypto scam promising to double funds sent to the scammers’ wallet addresses as a St. Patrick’s Day giveaway.
Health authorities warned that Russian hacktivists were actively targeting US hospitals with DDoS attacks in a widespread campaign also targeting other Ukraine's allies.
Because of the significant damage a DDoS attack can cause, many IT teams will put protecting against the threat high on their agenda. However, what many IT teams may be completely unaware of is that there are a wide variety of different types of DDoS attack vectors in a cybercriminals’ arsenal.
Investment scams that involve grooming a target to invest in fraudulent endeavors took off like a rocket in 2022 and led all cyber crime, racking up $3.3 billion in losses on the year.
With so many businesses eager for a full return to the office, the often misunderstood complexities of cybersecurity are an ideal scapegoat for employers desperate to see the end of remote working.
Recent letters sent out by FTC Chairman Andrew N. Ferguson were directed to tech companies and warned against watering down privacy protections or censoring their products due to pressure by foreign governments.










