A data breach has leaked sensitive medical records of over 15 million French citizens after hackers breached a centralized health information management system used by various health facilities.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Phishing attacks known as CEO Fraud or Business Email Compromise are affecting the bottom line of companies and are devastating because the spoof emails have all the appearances of being real, and the victims voluntarily hand over the money.
GRU-affiliated Russian hackers targeted 20 Ukrainian critical infrastructure facilities in March 2024, Ukraine’s Computer Emergency Response Team (CERT-UA) has disclosed.
The CFIUS has broad authority to suspend, modify, or prohibit a transaction from closing in order to address national security concerns. CFIUS filings have risen in the wake of FIRRMA which widened the scope of CFIUS compliance to include certain minority investments, specifically in the field of emerging and critical technologies.
In what is described as the first known supply chain attack caused by another supply chain attack, the recent breach of 3CX was caused by an employee downloading a compromised piece of trading software.
Numerous recent sources have been indicating a resurgence for ransomware in 2023, and perhaps the best evidence yet comes from a new Chainalysis report: for the first time ever, global ransomware payments topped over $1 billion in cryptocurrency.
Chainalysis finds that state-backed North Korean hackers are more reliant than ever on illicit crypto exchanges in Russia to move money. North Korean hackers are thought to have stolen $3.54 billion in cryptocurrency over the last seven and a half years.
A massive data leak stemming from a cyber attack on a third-party subcontractor has affected Swiss banks UBS and Pictet, as well as over a dozen other multinational companies, potentially including auditing firm KPMG.
Compliance requirements do not always reflect the complexities of new cloud systems or indicate where problems with traditional security approaches do not work as well for cloud security.
UnitedHealth Group has released further details about the devastating Change Healthcare attack that caused widespread damage throughout the US, taking large chunks of revenue from some care providers and in some cases keeping patients from needed medication. The group has confirmed that it made a ransom payment to restore service.










