SBS CyberSecurity - In The Wild 224

 

SBS Newsletter header

 

In The Wild - CyberSecurity Newsletter

Welcome to the 224th   issue of In The Wild, SBS' weekly CyberSecurity newsletter. The objective of this newsletter is to share threat intelligence, news articles that are relevant, new and updated guidance, and other information to help you make better cybersecurity decisions.

Below, you will find some of the latest-and-greatest news stories, articles, videos, and links from the past week in cybersecurity. Some of the following stories have been shared by consultants, others by the SBS Institute, and others yet simply been found in the far corners of the internet. We hope you find the following stories relevant, interesting, and – most of all – useful. Enjoy.

Follow SBS CyberSecurity on Social Media for more articles, stories, news, and resources!

         

{Hacker Hour} Successful Tabletop Testing Strategies

SBS Educational Resources

Date: Wednesday, May 26

Time: 2:00 - 3:00 PM CT

Join SBS as we discuss the benefits of consistent tabletop testing and effective testing strategies. We will also share a step-by-step meeting structure you can take back to streamline your next tabletop test.

Read Here »  

Ransomware Attacks Are Spiking. Is Your Company Prepared?

Harvard Business Review

With the migration to remote work over the last year, cyberattacks have increased exponentially. We saw more attacks of every kind, but the headline for 2020 was ransom attacks, which were up 150% over the previous year. The amount paid by victims of these attacks increased more than 300% in 2020.

Read Here »  

CNA Paid $40 Million in Ransom After March Cyber Attack

Insurance Journal

CNA Financial Corp., among the largest insurance companies in the U.S., paid $40 million in late March to regain control of its network after a ransomware attack, according to people with knowledge of the attack.

Read Here »  

18 is the New 20: CIS Controls v8 is Here!

Center for Internet Security

The Center for Internet Security (CIS) officially launched CIS Controls v8, which was enhanced to keep up with evolving technology (modern systems and software), evolving threats, and even the evolving workplace. The pandemic changed a lot of things, and it also prompted changes in the CIS Controls. The newest version of the Controls now includes cloud and mobile technologies.

Read Here »  

Do you know which SBS Institute Certification Programs are coming up? Check out the Certification Calendar and share with your clients. Find Out Here! »

This is how long hackers will hide in your network before deploying ransomware or being spotted

ZDNet

Any time is too long, but hackers are finding ways to wander through networks unseen for longer than you might expect

Read Here »  

Cyber insurance premiums rise as ransomware, hacks continue, GAO finds.

CyberScoop

A growing number of cybersecurity incidents has led many insurers to raise premiums and some to limit coverage in especially risky areas, such as health care and education, according to new findings from a U.S. government watchdog.

Read Here »  

Hackers scan for vulnerable devices minutes after bug disclosure

BleepingComputer

Every hour, a threat actor starts a new scan on the public web for vulnerable systems, moving at a quicker pace than global enterprises when trying to identify serious vulnerabilities on their networks.

Read Here »  

Navy SEALs Use a Technique Called ‘Box Breathing’ To Relieve Stress and So Can You

Well + Good

Even as hope appears on the horizon with respect to the COVID-19 pandemic now that vaccine rollout is ramping up, Americans remain besieged by unprecedented anxiety.

Read Here »

10 Other Interesting Links From This Week

There were too many fantastic reads from this past weeks' worth of cybersecurity and technology news, so here are a few additional quick-hit links for your reading pleasure:

*     Krebs on Security: How to Tell a Job Offer from an ID Theft Trap

*     Krebs on Security: Recycle Your Phone, Sure, But Maybe Not Your Number

*     Krebs on Security: Try This One Weird Trick Russian Hackers Hate

*     SecurityIntelligence: Taking Time Off? What Your Out of Office Message Tells Attackers

*     TechRepublic: Returning to work- Executives discuss office reentry plans, challenges and the future

*     MyTechDecisions: How To Prevent Critical Infrastructure Business Disruption From Ransomware Attacks

*     TechNewsWorld: New Report Profiles Ransomware Cybergangs

*     Washington Post: U.S. government denies disrupting Russian ransomware ring that hacked Colonial Pipeline

*     Bloomberg: Colonial Pipeline Accused of Negligence in Proposed Class Action

*     BleepingComputer: DarkSide affiliates claim gang's bitcoin deposit on hacker forum

Comments

Popular posts from this blog

US-CERT - AR18-352A: Quasar Open-Source Remote Administration Tool

KnowBe4 - Scam Of The Week: "When Users Add Their Names to a Wall of Shame"