Everest cybercriminals offer corporate insiders cold, hard cash for remote access

October 12, 2023 at 09:57AM The Everest ransomware group is seeking to recruit corporate insiders to gain access to corporate networks directly. The group is offering a percentage of the profits from successful attacks to those who assist in the initial intrusion, promising transparency and confidentiality. Everest is specifically targeting organizations in the US, Canada, … Read more

US construction giant unearths concrete evidence of cyberattack

October 12, 2023 at 07:00AM Simpson Manufacturing Company has experienced a cyberattack that has caused disruptions to its IT infrastructure and applications. The company has taken steps to contain the attack and is working on responding to and addressing the issue. It is currently unclear if the attack involved ransomware. The construction industry is increasingly … Read more

BianLian extortion group claims recent Air Canada breach

October 11, 2023 at 05:08PM The BianLian extortion group claims to have stolen 210GB of data from Air Canada, including technical and operational information, employee personal data, vendor and supplier information, and confidential documents. The group has shared screenshots of the stolen data as proof. Air Canada has acknowledged the threats but has not confirmed … Read more

Addressing a Breach Starts With Getting Everyone on the Same Page

October 11, 2023 at 01:01PM Cyberattacks are on the rise, with a 38% increase in global incidents last year. Businesses need to focus on prevention and mitigation, which requires having plans in place. These plans include a business continuity plan, a crisis communications plan, and an incident response plan. It is crucial to align and … Read more

October 10, 2023 at 12:16PM – North Korea’s State-Sponsored APTs Organize & Align

October 10, 2023 at 12:16PM North Korean APT groups have increased collaboration and coordination during the COVID-19 pandemic. The lines are blurring between individual groups, making it difficult to determine responsibility for specific threat activities. North Korean actors are diversifying attacks, sharing tools and code, and targeting the supply chain. Collaboration between defenders, governments, and … Read more

October 10, 2023 at 04:33AM – Ransomware attacks register record speeds thanks to success of infosec industry

October 10, 2023 at 04:33AM A study conducted by Secureworks revealed that cyber attackers are now deploying ransomware within 24 hours of gaining initial access to a victim’s environment. In nearly two-thirds of cases, ransomware was deployed within a day, and in over 10% of incidents, it was deployed within five hours. This marks a … Read more

October 9, 2023 at 10:26PM – Electric Power System Cybersecurity Vulnerabilities

October 9, 2023 at 10:26PM The electric power industry is facing increasing cyber threats due to digitalization and the interconnectedness of IT and OT systems. A webinar by Trend Micro discussed these challenges and provided solutions, including improving employee security awareness, job rotation between IT and OT departments, and automation of incident response. The webinar … Read more

October 9, 2023 at 05:35PM – ALPHV ransomware gang claims attack on Florida circuit court

October 9, 2023 at 05:35PM The ALPHV (BlackCat) ransomware gang recently attacked state courts in Northwest Florida. Personal details of employees, including judges, were acquired. The gang claims to have a network map of the court’s systems and threatens to leak stolen data online if their demands are not met. The court has not confirmed … Read more