Security News
In the past, most BEC emails have been written in English - meaning that defense systems can be tuned to recognise flag words and phrases written in this internationally recognized language. We have observed a rise in the number of BEC emails in recent months.
Now, a wave of well-funded email security startups are emerging to take another stab at securing the entry point for almost all major cyber attacks. Email security specialists Armorblox on Thursday announced a new $30 million venture capital funding round, joining a growing list of well-heeled startups taking a stab addressing one of cybersecurity's most difficult problems: keeping malicious hackers out of corporate mailboxes.
According to a Tuesday report by Cofense, which analyzed millions of emails related to various attacks, 57 percent were phishing emails aiming to steal victim usernames and passwords. The remainder of malicious emails were utilized in business email compromise attacks or for malware delivery.
Researchers are warning of recent phishing attacks targeting at least 10,000 Microsoft email users, pretending to be from popular mail couriers - including FedEx and DHL Express. Both scams have targeted Microsoft email users and aim to swipe their work email account credentials.
An ever-evolving and rampant form of cybercrime that targets emails as the potential medium to conduct fraud is known as Business Email Compromise. This is why industry experts are coming up with email authentication protocols like DMARC to offer a high level of protection against impersonation.
Microsoft is adding support for sending emails via alias email addresses from the Outlook for Windows email client. "Send email from a proxy email address or account alias rather than your primary email address," Microsoft says on the planned feature's Microsoft 365 roadmap entry.
Banks worry about business email compromise Spending more/significantly more on security is a 3-year trend. 86% of respondents from banks perceive business email compromise / authorized fraud to be the greatest risk to their business over the next 1-2 years.
Our recent research found that 93% of organizations have experienced an email data breach in the last 12 months, at an average rate of one incident every 12 working hours. With organizations continuing to operate in a fully remote or hybrid model due to the COVID-19 pandemic, employees remain highly reliant on email as a way to share sensitive data.
Russian Dutch-domiciled search engine, ride-hailing and email service provider Yandex on Friday disclosed a data breach that compromised 4,887 email accounts of its users. The company blamed the incident on an unnamed employee who had been providing unauthorized access to the users' mailboxes for personal gain.
Yandex - one of Europe's largest internet companies - is warning of a data breach that compromised 4,887 email accounts. The company found that a Yandex employee had been providing unauthorized access to users' mailboxes "For personal gain." This employee was one of three system administrators, who had the access privileges to provide technical support for mailboxes, said Yandex.