Canada’s anti-money laundering agency offline after cyberattack

March 6, 2024 at 12:35PM FINTRAC, a Canadian financial intelligence agency, experienced a cyber incident, leading to the precautionary shutdown of corporate systems. The agency confirmed that its sensitive information and operational capabilities are secure. It is collaborating with federal partners to restore operations and prevent future incidents. This incident follows other high-profile cybersecurity challenges … Read more

Anatomy of a BlackCat Attack Through the Eyes of Incident Response

March 6, 2024 at 10:39AM Sygnia’s prompt intervention prevented a potentially devastating ransomware attack on a company’s network by disconnecting it from the internet. The attackers, BlackCat, had penetrated the system through a compromised vendor. While some data was exfiltrated, encryption was thwarted, and the victim’s decisive action and Sygnia’s expertise proved pivotal in mitigating … Read more

New APT Group ‘Lotus Bane’ Behind Recent Attacks on Vietnam’s Financial Entities

March 6, 2024 at 02:15AM A new cyber attack targeting a financial entity in Vietnam was linked to Lotus Bane, an advanced persistent threat group with methods overlapping those of OceanLotus. This suggests possible connections with or inspirations from OceanLotus, though the different target industries indicate potential differences. Financial organizations worldwide have been targeted by … Read more

Name That Edge Toon: How Charming

March 4, 2024 at 11:07AM Be cautious when joining webinars due to the potential for network compromise. Submit your clever cybersecurity-related caption to win a $25 Amazon gift card before the March 27, 2024 deadline. Send ideas to [email protected] or via social media. Congratulations to Matt Tompkins, last month’s winner of “The Great Escape” contest. … Read more

Ransomware ban backers insist thugs must be cut off from payday

March 4, 2024 at 09:38AM Law enforcement’s crackdown on the LockBit ransomware crew has reignited calls for a ban on ransom payments. Ciaran Martin, CEO of the NCSC, emphasized the need for such a ban due to the devastating impact of ransomware. However, concerns about businesses’ ability to recover without payments and the need for … Read more

Phobos Ransomware Aggressively Targeting U.S. Critical Infrastructure

March 4, 2024 at 12:36AM U.S. cybersecurity agencies have issued warnings about Phobos ransomware targeting government and critical infrastructure entities. The ransomware, operated as a service model, has targeted various sectors and has earned millions in ransom. The attackers use various tactics and have been actively targeting entities since May 2019, posing a significant ongoing … Read more

CryptoChameleon Attackers Target Apple, Okta Users With Tech Support Gambit

March 1, 2024 at 01:49PM CryptoChameleon phishing kit is targeting cryptocurrency platforms, government agencies, and single sign-on users. Victims primarily use Apple iOS and Google Android devices. The attacks yield sensitive data beyond usernames and passwords. The sophisticated tactics include personalized outreach and convincing duplication of legitimate pages. Experts advise stronger forms of authentication and … Read more

Keeping one step ahead of cyber security threats

March 1, 2024 at 04:12AM Summary: Cyber security incidents are costly, with an average data breach costing $4.35 million, and cyber attacks rose by 38% last year. To address this, Google Workspace offers a cloud-native architecture with zero-trust principles and AI-powered threat defences. A webinar on March 6 will cover preventing cyber threats, enabling safer … Read more

Infrastructure Cyberattacks, AI-Powered Threats Pummel Africa

March 1, 2024 at 01:05AM African economies faced varied cyber threats in 2023, with Kenya experiencing a 68% rise in ransomware attacks and South Africa seeing a 29% increase in phishing attempts. Cybercriminals are leveraging AI and social engineering tactics, particularly in BEC attacks. Organizations in Africa should invest in cybersecurity expertise to combat evolving … Read more

Ransomware-as-a-Service Spawns Wave of Cyberattacks in Middle East & Africa

February 29, 2024 at 09:32AM Ransomware-as-a-service (RaaS) affiliates are driving a surge in ransomware attacks in the Middle East and Africa. Group-IB’s report shows a 68% increase in data leaks from 205 companies, with financial services as the primary target. Organizations in the region, particularly those with less mature security controls, are vulnerable to operational … Read more