Security News

Cybersecurity in crisis: Are we ready for what’s coming?
2024-11-04 04:30

In this Help Net Security video, James Edgar, CISO at Corpay, reveals insights into cybersecurity health, concerns, challenges, and other considerations for building a solid defense program. Key...

Ransomware crisis deepens as attacks and payouts rise
2024-09-02 04:00

During the second quarter, new ransomware groups, including PLAY, Medusa, RansomHub, INC Ransom, BlackSuit, and some additional lesser-known factions, led a series of attacks that eclipsed the...

StickmanCyber Report: A Look Inside Australia’s Cybersecurity Skills Crisis
2024-08-13 18:26

A new report has found that Australia's available pool of cybersecurity skills is smaller than realised. The report, Australia's Cybersecurity and Technical Skills Gap, an analysis by security provider StickmanCyber and based on an analysis of ABS census and labour force data, revealed a shortage of 10,000 technical roles throughout the country.

Cybercrooks spell trouble with typosquatting domains amid CrowdStrike crisis
2024-07-23 15:15

Thousands of typosquatting domains are now registered to exploit the desperation of IT admins still struggling to recover from last week's CrowdStrike outage, researchers say. The incident wasn't isolated and CrowdStrike was forced to issue a public memo on the same day warning against opportunistic cybercriminals exploiting the situation.

Qilin: We knew our Synnovis attack would cause a healthcare crisis at London hospitals
2024-06-20 10:29

Interview The ransomware gang responsible for the current healthcare crisis at London hospitals says it has no regrets about the attack, which was entirely deliberate, it told The Register in an interview. SOCRadar said last week how Qilin is known for targeting the healthcare and education sectors not because of politics but because of the reliance they have on uptime and the sensitivity of the data they hold.

Global ransomware crisis worsens
2024-05-09 04:30

Ransomware and extortion incidents surged by 67% in 2023, according to NTT Security Holdings' 2024 Global Threat Intelligence Report. After a down year in 2022, ransomware and extortion incidents increased in 2023.

Cybersecurity crisis in schools
2024-02-26 04:00

Primary school systems handle sensitive data concerning minors, while higher education institutions must safeguard intellectual property data, making them prime targets for cyberattacks, according to Trustwave. Strong cybersecurity measures protect student data and enable teachers to do their jobs effectively without fear of disruptions or data breaches.

Should IT and Security Teams Play a Role in Crisis Communications?
2024-02-21 15:39

CISOs have clear communications role during cyber security incidents. "In the event of a major cyber security incident, the CISO should be prepared to step into a crisis management role. They should understand how to bring clarity to the situation and communicate effectively with internal and external stakeholders," according to the ASD. More Australia coverage How IT and security leaders should prepare to manage crisis communications.

Orgs are having a major identity crisis while crims reap the rewards
2024-02-21 08:15

Identity-related threats pose an increasing risk to those protecting networks because attackers - ranging from financially motivated crime gangs and nation-state backed crews - increasingly prefer to log in using stolen credentials instead of exploiting vulnerabilities or social engineering. In two separate reports published on Wednesday, IBM X-Force and security biz CrowdStrike found a huge surge in cyber attacks using valid credentials and other techniques spoofing legitimate users.

Romanian hospital ransomware crisis attributed to third-party breach
2024-02-14 15:48

The Romanian national cybersecurity agency has pinned the outbreak of ransomware cases across the country's hospitals to an incident at a service provider. All hospitals caught up in the ransomware scourge are thought to have been breached via the HIS. Per legal reporting obligations in Romania, service providers must inform the DNSC and national CSIRT of incidents that significantly impact the continuity of essential services.