Airbus has confirmed a data breach that exposed confidential business information via a partner airline’s compromised account. Threat actors compromised a Turkish Airlines employee account using the Redline info-stealer malware in August 2023.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Proposed new features and app concepts are reportedly being nixed solely because of fears they will violate Apple’s privacy rules. Examples include scrapped plan to allow voice purchases via Siri.
Ransomware attack on the cloud computing company Rackspace caused email outages for thousands of customers forcing it to transfer customers from its Hosted Exchange service to Microsoft 365.
While 79% of respondents in recent Marsh and Microsoft survey ranked “cyber risk” as a top risk management concern, only 17% of C-suite or board members spend more than a few days per year focusing on it.
We live in an age that values authenticity: being true to who you are and what you value. It is ironic, then, that one of the more recent innovations of the past few years—Large Language Models, or Generative AI—is in the process of undermining authenticity itself.
While VPNs do function well when it comes to tunneling and encrypting data from authorized users, there are a couple of significant catches. Is software defined perimeter (SDP) the answer?
Conti Ransomware Group Voluntarily Shuttered, but Members Expected to Splinter off To Smaller Groups
Security researcher claims that the Conti ransomware attack on Costa Rica was an intentional smokescreen to cover a reorganization into smaller ransomware groups.
A Chinese hacker allegedly belonging to Silk Typhoon, the state-sponsored Chinese hacking group behind the Microsoft Exchange Server attacks of 2021 among other major actions, was picked up in Milan on July 3 on a US arrest warrant.
In mid-July the REvil ransomware group, linked to the Kaseya and JBS incidents among other attacks, appeared to go out of business. It turns out they may have just been taking a refreshing summer break.
In the face of evolving cyber threats, Scout is redefining external threat intelligence by offering expanded visibility and swift data acquisition. This empowers organizations to proactively manage threats, reducing the risk of system damage, reputational harm, and potential financial impact.










