Marriott International has approved a $52 million FTC settlement to conclude an investigation into over half a decade of data breaches that rocked the hotel franchise.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
A data breach affecting debt collection agency FBCS has impacted over 230,000 Comcast Customers, long after the telecom giant terminated the recovery firm’s services.
The Internet Archive has been under heavy attack in the past week, suffering both a major data breach and a series of potent DDoS attacks that have taken it offline.
A cyber attack struck American Water, the largest US publicly traded water utility, forcing the facility to shut down some systems, including the MyWater customer portal.
A new research report from ESET finds that the "GoldenJackal" advanced persistent threat group has the capability to compromise air-gapped systems, and has been deploying it in Europe since at least 2022.
Numbers drawn from Allianz internal customer data show a 17% increase in the value of cyber claims and a 14% increase in frequency during this period. The central driver is class action lawsuits connected to data and privacy breaches.
French news agency AFP has suffered a cyber attack affecting its content delivery systems, hot on the heels of a sustained Russian onslaught on the country's critical infrastructure.
Chinese hackers may have had illicit access to a federal surveillance system for months before being discovered and rousted. The access was apparently gained by compromising US telecoms Verizon and AT&T.
The CRI guidance does not really focus on whether or not to make ransomware payments, instead stressing that victims should make early contact with law enforcement (regardless of their ultimate decision) and that they have many options to explore.
Microsoft and the U.S. Department of Justice have seized over 100 domains used by Kremlin-backed Russian hackers Star Blizzard for cyber espionage against the West.










