The investigation into the August Twilio hack was recently concluded, and the company has found that the same attacker was responsible for a vishing attack that led to a smaller breach in June.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
IoT in the workplace has followed the same adoption path as BYOD, and these devices are constantly streaming out to the cloud. Do you know what they’re sharing? What are the unseen cybersecurity risks?
The LockBit gang is the latest ransomware-as-a-service outfit to push the envelope, this time by offering the criminal underworld's first known bug bounty program.
Fujitsu is investigating a cyber attack that potentially leaked sensitive personal information after its work computers were infected by malware.
A new strategy report from the White House Office of the National Cyber Director (ONCD) is addressing some established issues with internet routing security. The BGP security plan calls for adoption of the Resource Public Key Infrastructure (RPKI).
Study, which has been ongoing for ten years, says there has been no progress in addressing the cybersecurity skills gap and the demand and supply problem of cybersecurity professionals.
Suspected Snake ransomware attack on Honda highlighted the need for network segmentation to prevent impact across a company during an attack.
Data breach on Cash App Investing platform exposed customer information of 8.2 million users in the U.S. after a former employee downloaded customer reports.
A strong recovery and resilience strategy will ensure that crypto and DeFi firms are able to rebound from cyber attacks with minimal disruptions to their operations, mitigating losses for their investors and users.
The official word from Meta, via its main Instagram account, is that an "issue" that allowed third parties to request password resets for "some people" was fixed on January 11 and that users could safely ignore the strange password reset messages. They also reassured users that there is no new data breach.










