Implementing Identity Continuity With the NIST Cybersecurity Framework

August 2, 2024 at 10:03AM In the modern enterprise, identity plays a critical role similar to electricity in business continuity, especially with cloud-based IDPs. Implementing a robust identity continuity plan, aligned with the NIST Cybersecurity Framework, involves inventorying applications and identities, ensuring continuous identity operations, monitoring, responding to outages, managing incidents, and continuous policy management. … Read more

Unexpected Lessons Learned From the CrowdStrike Event

July 25, 2024 at 02:44PM Many organizations are facing global IT issues due to a defect in CrowdStrike’s Falcon sensor content update, impacting operations across sectors. This event highlights the importance of improving cyberattack response capabilities. Lessons include evaluating detection speed, prioritizing recovery, executing business continuity plans effectively, and addressing supply chain risks to enhance … Read more

CDK Attack: Why Contingency Planning Is Critical for SaaS Customers

June 24, 2024 at 06:03PM CDK is working to restore its dealer management system after a ransomware attack, impacting daily operations at 15,000 automotive dealers. The meeting notes highlight the ongoing impact on daily operations at approximately 15,000 automotive dealers due to CDK’s efforts to restore its dealer management system following a ransomware attack last … Read more

City of Wichita Shuts Down Network Following Ransomware Attack

May 6, 2024 at 05:04AM Wichita, Kansas shut down its computer network after a ransomware attack encrypted data on certain systems. The impacted services were turned off as a containment measure. The city is conducting a thorough review to assess the situation, with first responders and law enforcement notified. Wichita has engaged with specialists to … Read more

How to automate up to 90% of IT offboarding tasks

April 11, 2024 at 10:20AM Offboarding employees is a critical IT process that requires thoroughness. Incomplete offboarding can lead to security incidents and unnecessary resource expenses. With the increase in SaaS applications, it’s challenging to ensure complete access deprovisioning. Nudge Security offers a platform to automate and streamline this offboarding process, saving time and avoiding … Read more

Targus discloses cyberattack after hackers detected on file servers

April 8, 2024 at 09:42PM Targus, a laptop and tablet accessories maker, suffered a cyberattack on April 5th, 2024, leading to a temporary disruption of business operations and unauthorized access to file systems. The company initiated incident response and business continuity protocols with assistance from cybersecurity experts. It has not been confirmed whether corporate data … Read more

Boat Dealer MarineMax Hit by Cyberattack

March 14, 2024 at 12:09PM MarineMax, a leading boat and yacht retailer, experienced a cybersecurity incident prompting business continuity measures and containment efforts. Despite some disruption, the company asserted that its operations have continued without material impact. The incident, possibly a ransomware attack, is under investigation amid compliance with SEC disclosure rules. Stakeholders are awaiting … Read more

Yacht Retailer MarineMax Files ‘Cyber Incident’ with SEC

March 13, 2024 at 04:59PM MarineMax disclosed a “cybersecurity incident” to the SEC, reporting a third-party’s unauthorized access to its information systems. Despite the disruption, the company stated the incident had not materially impacted its operations, with no sensitive data compromised. The investigation is ongoing, and law enforcement has been notified. The company filed a … Read more

Steel giant ThyssenKrupp confirms cyberattack on automotive division

February 26, 2024 at 12:06PM ThyssenKrupp, a prominent steel producer, confirmed a cyberattack on its Automotive division, resulting in IT system shutdowns. The breach did not affect other business units and is under control. The Saarland plant was directly impacted. Despite previous cyber incidents, the perpetrator remains unknown. Normal operations are gradually resuming. From the … Read more

Johnson Controls Ransomware Cleanup Costs Top $27M and Counting

January 31, 2024 at 04:51PM Johnson Controls International (JCI) spent $27 million remediating a September 2023 ransomware attack on its systems, which threatened physical security according to government officials. The attack locked up IT infrastructure and allowed data exfiltration. JCI’s incident management and response plan, along with external cybersecurity specialists, helped restore affected systems. The … Read more