The Chinese hackers, a state-backed team referred to as "Salt Typhoon," were spotted stealing data from ISPs and planting backdoors and other capabilities meant for use in future cyber attacks.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
CISA is warning high-risk chemical facilities of potential data theft after a threat actor breached the agency's Chemical Security Assessment Tool (CSAT) via Ivanti Connect security flaws.
When planning, designing, and delivering cyber security awareness training, it is critical to consider the perspectives, needs, skill levels, and experiences of users. Gaining and maintaining its support among teams is an ongoing and collaborative effort.
The Akira ransomware gang earned approximately $42 million in ransoms after breaching over 250 victims across three continents between March 2023, when the group emerged, and January 2024.
It’s tempting to draw a connection between cybersecurity skills shortage and data breaches. But the reality is much more complex and data breaches may be a symptom of a larger problem.
Another vulnerability that can expose master passwords in KeePass has surfaced, after one was discovered to start the year. The new security exploit involves traces of the password being left in system memory, and potentially reassembled if the memory is dumped.
As the world becomes more complex non-traditional approaches to ensuring data security and protection must be evaluated. In this article Wei Chieh, the founder of SWARMNETICS draws a parallel between how we treat open source software and the Asian organisational attitude toward White Hat hackers (or ‘independent security researchers’) as assets that might help to stem the tide of security breaches that Asian companies face today.
Balancing the requirements and intricacies of both remote and on-site working can be challenging. Here are some considerations and recommended strategies for securing the hybrid enterprise.
Movies are not that far off from reality if you consider how these 6 films help you understand data privacy and hacking in a world of technology imagined by directors and story writers.
New study suggests that a combination of broken and poorly configured SIEM rules are providing organizations with a far lower level of threat coverage than they believe they have.










