Cybercrime group demands $1.9 million in ransom following a cyber attack at Mount Royal University in Calgary that leaked student and employee data and disrupted operations.
Cyber Security
Cyber criminals, state-sponsored hackers and even the occasional disgruntled employee are constantly looking to gain unauthorized access for a variety of purposes: theft of money, cyber espionage, personal information for sale or for use in scams, and damage to critical infrastructure for just a few of the most common.
So how does an organization mitigate an entire world full of continual cyber attacks? Just as buildings have a number of necessary elements of physical security: access control, cameras, alarms and so on; there are similar key elements of cyber security that are absolutely vital for just about any modern business.
It starts with identifying and closing the most common doors that attackers use. For example, phishing attacks on employees are far and away the most common initial point of entry. The breach of even a low-level employee account can quickly turn into an escalation in access privileges and the ability to reach sensitive information. This is also true of smart devices, which are generally more poorly secured than computers and phones.
International law enforcement operation appears to have significantly disrupted the capabilities of the LockBit ransomware group, one of the biggest internet-based criminal hacking organizations in the world, seizing about 200 of the group's crypto wallets and over 1,000 decryption keys.
A data breach on a third-party cloud-based SaaS application has hit luxury fashion retailers Chanel and Pandora, leaking the personal information of customers.
MITRE, which has its headquarters in the US, has relied on federal funding for decades. Its contract for the development of the CVE program ended on April 16. The contract extension, put in place just before the deadline, grants it at least 11 more months of life.
Our reliance on SaaS across every facet of contemporary business operations has extended accessibility to nearly all enterprise resources. It is critical to properly acknowledge this shift to mitigate the full extent of risk this represents.
Are you continually evaluating high-risk employee behavior for insider threats, and does you include a seemingly simple, but nevertheless high-impact capability: anonymous self- and peer-reporting?
The cybersecurity strategies developed last year are already falling short. With distributed remote workforces now a business norm, companies need to change how they think about security and get their employees to partner with them.
No one would argue that 2018 was a turbulent year for cybercrime and identity theft, and there’s no doubt that we’ll continue to outpace this volume and velocity. How can organizations empower themselves – and their employees – to protect sensitive personal and company data?
CBDCs raise some concerns around data privacy and security that can’t be overlooked: a system where all data is stored in a central location creates one point of failure, leading to concerns around potential data breaches.
The Inferno Drainer malware that plagued the crypto world throughout 2023 ultimately compromised about 130,000 victims and stole about $87 million in total, according to a new report from Group-IB. It was part of a broader movement of "crypto drainer" services that some security experts believe is poised to become the next big thing in cybercrime in 2024.










