Social Data, a data broker that appears to have been scraping social media sites for information, has exposed 235 million personal profiles in a data leak.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
Through robust communication and targeted employee education, leaders can achieve a balance between introducing new security controls and ensuring employees understand the need for them in the first place.
SaaS vendors are responsible for ensuring the security of their cloud environments, but each customer is responsible for securing their data in those clouds. The best way to secure assets such as business-critical data on the cloud is an account-level backup and recovery tool.
A wanted Swiss hacker accessed a federal No Fly List containing millions of records that was sitting on an unsecured server operated by a regional airline company.
Cyber threats are inevitable in today’s technologically driven world. While businesses are dependent on technology to grow, it’s also important to learn how to protect it from cyber attacks.
Since these are ransomware groups after all, the retirement announcements may well be FUD to cover strategic retreats and rebrands after an extended period of high-level exposure. But at least for the moment some of the world's most significant threats such as Scattered Spider, ShinyHunters, and Lapsus$ appear to be out of the game.
As major ransomware attacks continue to be an almost-weekly news item, companies up for policy renewal are getting an unpleasant surprise. Reinsurance broker Wills Re reports that cyber reinsurance rates are up by as much as 40% across the industry.
Code signing is like a virtual mechanic, ensuring trust across the software supply chain by validating the identities of source code and verifying that it hasn’t been tampered with. Code signing isn’t new, but it has changed.
A rash of car thefts has erupted as some of the Korean car-makers models have a USB-A shaped slot that can be exposed by removing the steering column cover, and this slot grants direct access to the engine.
A third-party data breach involving a U.S. contractor exposed the personal information of over 2 million Aflac cancer and Zurich automobile insurance policyholders in Japan.










