Phishing scam perpetrated by attackers posing as vendors cheated the school district of approximately $2.3 million before the business compromise scheme was discovered about a month later.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Owner of a botnet has leaked the access credentials for more than 515,000 servers and claimed they were changing business models to make use of cloud service providers instead.
Microsoft announced a breach where they uncovered misconfigured security rules in one internal database that exposed 250 million customer service records for almost whole of December.
Companies globally are facing a shortage in cybersecurity talent that could be managed through training with the four Es, i.e. education, efficiency, embracing and engagement, in mind.
Hackers exploited a zero-day vulnerability in antivirus software that caused a data breach at Mitsubishi Electric, exposing technical and sales materials, and personal data of over 8,000 employees.
New NIST Privacy Framework together with its existing Cybersecurity Framework provide a road map on cyber industry security, data handling standards and best practices for organizations.
Ransomware attacks are causing a spike in cyber insurance rates as insurers need to cover ransom amount and recovery costs if hackers fail to make good on unlocking the compromised systems.
UN suffered a major data breach from unpatched SharePoint vulnerability that compromised staff information, commercial contract data, and health insurance data on 42 servers in 3 branches.
LabCorp experienced a second data leak in a year with more damaging information exposed this round that includes medical records and social security numbers.
Love is in the Cloud as millions of people are looking to meet their match online. However, Cupid isn't the only one taking aim at people seeking love on dating apps during this time of year. Catfishers and scammers are on the prowl, taking advantage of those looking for love.










