German fuel suppliers have been hit by a cyber attack threatens fuel supply. Nature of attack has yet to be identified, but the extent of the disruption would indicate ransomware or a malicious malware attack that wiped files.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Manufacturers are introducing remote operations capacity for OT systems, allowing employees, contractors, and trusted third parties to operate on-site infrastructure from anywhere in the world. While the benefits are multifaceted, the risks to critical infrastructure are real.
Ethereum DeFi system Polygon has announced that it patched a critical vulnerability that stood to put some $24 billion of its MATIC coins at risk. The company kept the issue quiet for weeks as it worked to patch it out.
WhatsApp accounts could be deactivated simply by sending a request from any email address, so long as the attacker knew the associated phone number. Going forward, the account deactivation process now involves a follow-up message that requests verification of ownership of the associated phone number.
A bad year for the security of cross-chain bridges continues as Nomad has been hit by a crypto hack that drained about $190 million in its stored funds.
New report from Elliptic finds a major spike in cross-chain crypto laundering to $7 billion in the past year. North Korea's state-backed Lazarus group is a major driver, responsible for about 13% ($900 million) alone.
Hackers were impersonating cybersecurity companies by sending phishing emails asking the target to callback to resolve potential network compromise. Victims are then guided to install remote administration tools.
Leading forklift manufacturer Crown Equipment has confirmed that the prolonged disruption resulted from a cyber attack by an international cybercriminal organization.
A new study from Chainalysis finds that crypto crimes are proving more lucrative than ever for organized criminal gangs, but that illicit activity overall only saw a slight raise from its record low levels in 2021.
Kroll reports that the data breach was traced to a SIM swap attack on the phone of one of its employees, and that "limited" and "non-sensitive" claimant data was exposed. FTX account holders are already receiving phishing emails.










